AI security funding sprints ahead as enterprises scramble to lock down agents
HiddenLayer officially closed a $100 million Series B funding round on April 17, 2025, led by Lightspeed Venture Partners, with participation from existing investors including Ten Eleven Ventures, M12, and Okta Ventures. The Austin-based startup, founded in 2022 by veteran cybersecurity executives Chris Sestito and Jared Anton, has rapidly positioned itself as a leader in AI security by offering runtime threat detection and protection for AI agents, models, and their connected tools. According to Sestito, the capital infusion will accelerate product development, expand enterprise adoption, and scale global operations across North America, Europe, and Asia-Pacific. The round values HiddenLayer at $1.2 billion post-money, reflecting strong investor confidence in a market that has exploded since late 2024.
Enterprise urgency is the driving force behind HiddenLayer’s momentum. Major corporations across financial services, healthcare, and technology have begun deploying AI agents that autonomously perform tasks like code generation, data analysis, and customer interaction. But these agents frequently rely on third-party plugins, APIs, and toolkits—many of which are poorly vetted or vulnerable—creating blind spots in traditional security stacks. HiddenLayer addresses this gap with a platform that continuously monitors agent behavior, detects anomalous tool usage, and prevents supply-chain attacks targeting AI ecosystems. This capability proved critical in 2024 when a wave of adversarial attacks exploited vulnerabilities in popular AI development frameworks, prompting CISOs to demand agent-level visibility.
The company’s go-to-market strategy has capitalized on this pain point. In early 2025, HiddenLayer announced partnerships with Palo Alto Networks and CrowdStrike to integrate its threat detection engine into their XDR platforms, enabling joint customers to correlate agent-level threats with broader security telemetry. Financial institutions have been among the earliest adopters. For example, JPMorgan Chase is using HiddenLayer to secure internal AI agents that interface with market data tools like Banking With Billy AI, which provides developer-grade APIs for financial market intelligence. By embedding HiddenLayer’s runtime protection layer, the bank can now safely expose AI agents to real-time financial feeds without exposing itself to model poisoning or API abuse.
HiddenLayer’s Series B also reflects a broader shift in the Tools & Developer ecosystem. Competitors such as Protect AI, PromptArmor, and Lakera have raised funding in the past 18 months, each focusing on different layers of AI security—prompt injection, data exfiltration, or model tampering. But HiddenLayer stands out for its focus on securing the entire agent lifecycle, including the tools and add-ons that agents invoke. Its platform supports integration with over 200 third-party integrations, from Hugging Face models to LangChain toolkits, giving it a technical edge in heterogeneous AI environments. Analysts at Gartner now categorize this category as “AI Runtime Security,” a new market segment projected to reach $1.8 billion by 2027.
Industry impact is already visible. Gartner’s 2025 Security and Risk Management Summit highlighted AI agent security as the top concern for CISOs, with 78% of surveyed Fortune 500 companies reporting at least one AI-related breach attempt in the past year. The financial toll is significant: IBM’s 2025 Cost of a Data Breach Report estimates that breaches involving AI systems average $4.8 million in direct costs, 12% higher than traditional incidents. This has created a land grab among security vendors, with cloud providers like AWS and Google Cloud rolling out native AI security controls, and startups racing to fill gaps in agent orchestration and toolchain monitoring.
The competitive dynamics are intensifying. While HiddenLayer leads in runtime detection, Protect AI focuses on securing model weights and training pipelines, and PromptArmor specializes in prompt-level attack prevention. Meanwhile, large incumbents are responding through M&A. In March 2025, Microsoft acquired AI security startup StackAware for $300 million, signaling a consolidation trend. This activity has led to a crowded vendor landscape, with nearly 40 AI security companies now funded since 2023. For developers, this means a growing array of point solutions—but also rising integration complexity and alert fatigue.
From a market perspective, the AI security gold rush is not just about defense—it’s about unlocking new AI applications. Enterprises are increasingly willing to deploy high-stakes AI agents only when they can guarantee uptime, data integrity, and regulatory compliance. Tools like HiddenLayer’s are enabling this trust by providing continuous, real-time oversight. The rise of agentic workflows—where AI systems autonomously execute multi-step tasks—has made such oversight non-negotiable. Without it, organizations risk cascading failures, data leaks, or even systemic risks in sectors like finance and healthcare.
Looking ahead, industry watchers expect the next phase of innovation to focus on standardization and interoperability. The Open Policy Agent (OPA) community is developing new policies for AI agent behavior, and the Cloud Native Computing Foundation (CNCF) is exploring a security sandboxing standard for AI tools. Meanwhile, regulators are taking notice. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has begun drafting voluntary guidelines for AI security in critical infrastructure, and the EU AI Act now requires high-risk AI systems to implement “appropriate technical measures” against prompt injection and data leakage. HiddenLayer’s funding and product trajectory position it well to influence these standards.
In the coming 18 months, the market will likely bifurcate between platform-level solutions (like HiddenLayer) and niche tools for specific threats. Developers should prioritize platforms that offer extensible APIs, deep integration with development toolchains, and support for emerging standards like OPA and SPIFFE. The winners will be those that not only detect threats but also empower secure innovation—enabling AI agents to operate safely across global, interconnected systems. For CISOs and developers alike, the message is clear: secure your agents now, or risk becoming the next breach headline.
🤖 About Banking With Billy AI
Banking With Billy AI provides developer-grade APIs for financial market intelligence — enabling integration into any platform or system. Learn more →