Skip to content

Noma Security

AI security posture management (AI-SPM) platform for continuous discovery, risk prioritization and attack simulation across enterprise AI systems.

Visit Website ↗
63/100Incremental Innovator

Overview

Noma Security’s platform continuously discovers AI assets (models, pipelines, datasets, agents) across an organization, profiles their security posture, prioritizes risk, and runs real-time attack simulations against them, aiming to give security teams visibility comparable to cloud security posture management (CSPM) but purpose-built for AI/ML environments.

Founded in 2023 by CEO Niv Braun and CTO Alon Tron — both veterans of Israel’s Unit 8200 intelligence corps — Noma came out of stealth in October 2024 and grew quickly, raising a $100M Series B in July 2025 led by Evolution Equity Partners (with Ballistic Ventures, Glilot Capital, Databricks Ventures and others participating), bringing total funding to roughly $132M in under two years. The company reports around 146 employees.

Innovation Matrix Assessment

Innovation Velocity 7/10

Went from stealth (Oct 2024) to a $100M Series B (July 2025) and ~146 employees in under a year, a fast build-out even by this category's standards.

Operational Value 6/10

AI-SPM style discovery and posture scoring gives teams an inventory of AI risk, though this is an earlier-stage visibility layer rather than proven runtime prevention.

Market Momentum 8/10

$132M raised in under two years, including a strategic investment from Databricks Ventures, is a strong and well-documented funding signal.

Category Disruption 6/10

Extends the CSPM concept to AI assets — a genuinely useful adaptation, but structurally closer to repackaging an existing posture-management pattern than an entirely new control type.

Real-World Efficacy 4/10

Only about two years old with no independent, third-party efficacy validation found; conservative score reflects the category's overall lack of published proof at this stage.

Enduring Relevance 7/10

AI asset inventory and posture visibility is a foundational need as AI/agent sprawl grows inside enterprises.

Why CISOs Should Care

Gives security teams a single inventory of AI assets and their risk posture across a fast-growing, often-shadow AI footprint, similar to what CSPM did for cloud sprawl.

What Makes It Different

Applies a posture-management (discover, profile, prioritize) methodology specifically to AI/ML assets and pipelines rather than treating AI risk as an extension of generic cloud or data security.

The Matrix Verdict

63/100 — INCREMENTAL INNOVATOR

Incremental Innovator with strong momentum: the funding and founder pedigree are real and well-documented, but efficacy is unproven and the core approach (posture management) is an adaptation of an existing security pattern rather than a wholly new one.

Editorial Note: Claims vs. Verified Findings

Funding totals and headcount are corroborated by multiple independent trackers (Calcalist, PitchBook, Tracxn). Product efficacy claims (e.g., around real-time attack simulation accuracy) are UNVERIFIED vendor claims not independently tested here.

Sources