ARMO
Tel Aviv-based cloud-native security vendor and creator of Kubescape, a CNCF open-source Kubernetes security scanner, offering a commercial platform layering runtime detection, KSPM and reachability-aware vulnerability management on top of the open-source project.
Visit Website ↗ + Add to CompareOverview
ARMO is a cloud-native security vendor founded in 2019 and headquartered in Tel Aviv, Israel, best known as the creator and primary maintainer of Kubescape, an open-source Kubernetes security scanner that became a Cloud Native Computing Foundation (CNCF) sandbox project. Kubescape scans Kubernetes manifests, Helm charts, live clusters and worker nodes for misconfigurations and known vulnerabilities against frameworks including NSA-CISA hardening guidance and MITRE ATT&CK, and has amassed several million downloads and thousands of GitHub stars as one of the more widely adopted open-source Kubernetes security tools.
The company’s commercial offering, the ARMO Platform, extends Kubescape’s open-source scanning with cloud application detection and response (CADR), Kubernetes security posture management (KSPM), cloud security posture management (CSPM), and vulnerability management that incorporates runtime reachability analysis, i.e., prioritizing vulnerabilities that are actually exploitable in a running workload rather than flagging every CVE in an image. This open-core model, monetizing an enterprise layer on top of a widely used free tool, is ARMO’s primary go-to-market and adoption funnel.
ARMO has raised approximately $34.5 million in total funding, including a $30 million round led by Tiger Global with participation from Hyperwise Ventures, Pitango First and Peled Ventures, and counts customers including Verizon, Nokia, Dell and Broadcom. For CISOs and platform teams running Kubernetes at scale, ARMO’s open-source-led adoption path and reachability-based vulnerability prioritization address real alert-fatigue and misconfiguration problems; its challenge is standing out in an increasingly crowded cloud-native/CNAPP security market where several larger vendors offer overlapping Kubernetes security capabilities.
Innovation Matrix Assessment
Kubescape has grown from an open-source launch to a CNCF sandbox project with reported 100,000+ deployments and 15 million monthly scans, while the commercial ARMO Platform layered in CADR, KSPM and reachability-based vulnerability management, indicating consistent product expansion since 2019.
Reported ~$7.3M revenue on a team of roughly 44-66 people (per third-party estimates) with enterprise customers including Verizon, Nokia and Dell, indicating a real, if still mid-scale, commercial operation built on an open-source adoption funnel.
The company's last disclosed funding round was a $30M Series A in April 2022; no subsequent funding round was found in available sources as of this profile, suggesting momentum has plateaued on the fundraising side even as usage metrics (downloads, scans) continue to be cited as growing.
Open-sourcing the core scanner (Kubescape) as a CNCF project to drive bottom-up developer adoption, then monetizing an enterprise layer with runtime reachability analysis, is a differentiated go-to-market and technical approach relative to closed-source CNAPP competitors.
Kubescape's adoption metrics (GitHub stars, downloads, CNCF sandbox status) are independently observable via the open-source project itself; the ARMO Platform's specific efficacy claims (90% reduced vulnerability exposure, 23% compliance improvement) are company-reported without independent benchmarking found.
Kubernetes misconfiguration and runtime risk remain a persistent, high-visibility enterprise security problem, and reachability-based vulnerability prioritization directly addresses widely reported CVE alert fatigue, keeping ARMO's positioning current.
Why CISOs Should Care
Platform and security teams already using or evaluating Kubescape get a low-friction path from a trusted open-source scanner to an enterprise platform, with reachability analysis that cuts through vulnerability alert noise by prioritizing what is actually exploitable at runtime.
What Makes It Different
Built its commercial platform on top of a widely adopted CNCF open-source project it created and still maintains, giving it a developer-trust and adoption advantage that closed-source CNAPP competitors must build through sales and marketing instead.
The Matrix Verdict
60/100 — INCREMENTAL INNOVATOR
A credible, open-source-led cloud-native security vendor with real developer adoption behind Kubescape and a coherent reachability-based enterprise upsell; its fundraising has not kept pace with its usage growth, and it competes in an increasingly crowded CNAPP field.
Editorial Note: Claims vs. Verified Findings
Total funding ($34.5M) and the $30M Series A (Tiger Global, Hyperwise Ventures, Pitango First, Peled Ventures) are corroborated across TechCrunch, Calcalist and the company's own announcement. Revenue and headcount figures ($7.3M revenue, 44-66 employees) come from third-party estimate aggregators (Latka, ZoomInfo) rather than company-disclosed financials and should be treated as approximate.
Sources
Alternatives to ARMO
Wiz
Agentless, graph-based cloud security platform that maps multi-cloud risk end-to-end, now owned by Google after a record $32B…
Chainguard
Provides hardened, minimal, continuously-rebuilt container images and software packages to eliminate vulnerabilities before they reach production.
Microsoft Defender for Cloud
Microsoft's built-in cloud-native application protection platform, unifying CSPM, workload protection, and DevOps security natively across Azure, AWS, and…
Sysdig
The company behind Falco, the CNCF's runtime security standard, offering an eBPF/kernel-level CNAPP built on live syscall-based threat…
Obsidian Security
Obsidian Security provides a SaaS security posture management (SSPM) platform that detects identity-centric threats and misconfigurations across enterprise…
Upwind Security
Fast-growing, venture-backed CNAPP startup combining agentless scanning with eBPF runtime sensors for real-time cloud and AI workload risk…