Hilt
Early-stage San Francisco startup building kernel-level monitoring to catch insider data breaches that look like normal, permitted activity.
Visit Website ↗ + Add to Compare Claim This CompanyOverview
Hilt is building a data security and insider-threat platform that operates at the operating-system kernel level to watch how data actually moves within an organization, rather than relying solely on access logs or permission records. Its premise is that many damaging data breaches do not look anomalous at the access-control layer because the user or process involved has legitimate credentials; the platform instead tries to flag abnormal data movement patterns even when the underlying access was fully authorized.
Founded in San Francisco, Hilt is led by CEO William Cielen, with some reporting naming Alex Genest and Zin Bitar as additional co-founders. The company raised a $500,000 pre-seed round led by Pear VC in October 2025, followed by a $4.2 million seed round in October 2026 led by Array Ventures, with Verdict Capital, Base10 Partners, Brickyard, Liquid 2 Ventures, and others participating, bringing total funding to roughly $4.7 million.
At this early stage, Hilt has not disclosed named customers or independent test results. Its differentiator is architectural — kernel-level visibility into data movement rather than endpoint-agent or network-layer monitoring — but as a pre-revenue-stage company, that approach remains unproven at scale against the more established data-loss-prevention and insider-risk vendors it will ultimately compete with.
Innovation Matrix Assessment
Still pre-revenue roughly a year after its pre-seed round, with no disclosed product milestones beyond the seed raise itself.
Targets a genuine blind spot — breaches that look like authorized activity — which, if the technology works as described, would meaningfully help SOC and data-security teams.
Only $4.7M raised across pre-seed and seed, with no disclosed customers; momentum evidence is limited to the funding announcement itself.
Kernel-level data-movement monitoring is a distinctive technical angle, but insider-threat and DLP is a mature, crowded category with several well-established incumbents.
No named customers, case studies, or independent testing exist yet; all claims currently come from the company's own seed-round narrative.
Insider threats and data exfiltration that abuse legitimate access remain a persistent, hard problem that will stay relevant regardless of this company's individual trajectory.
Why CISOs Should Care
Aims to catch data breaches that use fully authorized access and therefore don't trip traditional access-control or permission-based alerts.
What Makes It Different
Monitors data movement at the operating-system kernel level rather than through endpoint agents, network taps, or access-log analysis alone.
The Matrix Verdict
43/100 — EMERGING / UNRANKED
Hilt lands in the Emerging/Unranked tier: an interesting technical premise and a real market need, but with funding, customer, and efficacy evidence still far too thin at this early stage to score higher.
Editorial Note: Claims vs. Verified Findings
Funding rounds and founder names are corroborated across multiple funding-news aggregators, though some conflict on co-founder names and current headquarters; no independent product testing or customer evidence exists yet, so this profile should be treated as describing an early, unproven-at-scale company.
Sources
Alternatives to Hilt
Fireblocks
The category-defining institutional digital-asset custody platform, combining MPC and hardware chip isolation to move roughly $2 trillion in…
Cyera
AI-powered, agentless data security platform combining DSPM, DLP, and AI-activity monitoring, and one of the fastest-funded startups in…
Cyberhaven
Data detection and response platform that tracks data lineage to detect and prevent data exfiltration and insider risk.
Varonis
Data-centric security platform that monitors file, email, and cloud activity to detect insider threats and ransomware before data…
Halcyon
Ransomware-focused cyber resilience platform combining endpoint prevention, automated recovery, and data exfiltration protection.
SandboxAQ
Alphabet spinout building AQtive Guard, a cryptographic management platform helping enterprises inventory, assess and migrate to quantum-safe encryption.