Startups

Akeyless secures a cash infusion to help companies manage their passwords, certificates and keys

Comment

Coder's hands on keyboard over code.
Image Credits: Sergey Shulgin / Getty Images

Back in 2018, Refael Angel, a former security software engineer at Intuit, had an idea for a new approach to protect encryption keys — the random string of bits created to scramble and unscramble data — on the cloud. He met with Shai Onn and then Oded Hareven, with whom Angel had worked five years earlier, to look for signs of product-market fit. After finding it, the three co-founders together built a service for managing passwords, API keys and digital certificates, which evolved into a fully fledged business — Akeyless — over the course of the next several years.

Today, Akeyless is thriving, Angel tells me — despite fierce competition from incumbents like Hashicorp Vault, AWS Secrets Manager and Google Cloud’s Secret Manager. Akeyless has customers across the retail, fintech, insurance and gaming sectors, among others, including Wix and Outbrain. And the company’s revenue has increased 350% over the past year.

“The pandemic and resulting workforce trends, such as work-from-home initiatives, have only increased the need for employees to access corporate IT resources remotely and have accelerated the adoption of cloud technologies and increased the number of secrets needed,” Shai told TechCrunch in an email interview. In software development, “secrets” refer to credentials like passwords and access tokens. “Similarly, the economic downturn and tech slowdown stand to only further encourage organizations to seek software-as-a-service-based solutions that offer faster deployment, low to zero maintenance, global auto-scalability, lower total cost of ownership and higher adoption rates.“

To lay the groundwork for future growth, Akeyless today closed a $65 million Series B round — $45.5 million in equity and $19.5 million in debt — led by NGP Capital with participation from Team8 Capital and Jerusalem Venture Partners. Bringing Akeyless’s total funding to date to $80 million, the new capital gives the company at least two and a half years of runway and will be put toward various sales, marketing, customer service and product development initiatives, Hareven said via email.

“This will allow us to navigate the current economic climate and continue to provide our much-needed solution to the market,” he added.

Akeyless’s co-founders attribute the startup’s success in part to the comprehensiveness of its product offerings. Akeyless both encrypts and signs the certificates, credentials and keys that organizations use to provide access to their systems, apps and data. The platform performs cryptographic operations using fragments of an encryption key that reside across different regions and cloud providers. The fragments are never combined — not even during the encryption and decryption process, Hareven claims — and one of the fragments is created on the customer side to ensure Akeyless has zero knowledge of the keys.

Akeyless
An abstracted view of the Akeyless secrets management dashboard. Image Credits: Akeyless

The core problem Akeyless attempts to tackle is what Hareven refers to as “secret sprawl.” As a company’s IT environment expands, so does the amount of passwords, API keys and certificates that the company uses to enable authentication between processes, services and databases, he notes. Those passwords and keys are found in code, configuration files and automation tools, introducing risk that could result in data breaches.

According to a 2021 survey from code security platform GitGuardian, three code commits out of 1,000 expose at least one secret. GitGuardian estimates that app security engineers on average have to handle over 3,400 secrets occurrences. And in a separate report from Forrester published in the same year, developers revealed that 57% of their employers experienced a security incident related to exposed secrets within the past two years.

Akeyless’s solution is centralizing secrets through plug-ins for existing IT, dev, and security tools and capabilities like disaster recovery, Hareven continued. Secrets stored by the platform are made accessible in all of a company’s environments.

“While modern secret management solutions address the security challenges of [development] environments, many organizations are still forced to rely on siloed and disconnected tools for securing secrets in legacy environments,” Hareven said. “Our customers are expressing a need for the convergence of legacy tools to reduce risks and improve compliance across all environments and use cases.”

Akeyless certainly occupies a large and profitable sector — Grand View Research predicts that the market for password management software will be worth up to $2.05 billion by 2025. But it’ll have to fend off rivals like Doppler, which recently raised $20 million for its platform to help companies manage their app secrets. Another challenge will be convincing holdouts to embrace secrets management as a discipline; according to one report, only 10% of organizations were using secrets management solutions as of 2019.

If Akeyless’s co-founders have concerns, they didn’t show it. To the contrary, Hareven pointed to the team’s track record in cybersecurity — Onn’s previous security venture, Fireglass, was acquired by Symantec for $250 million — and noted that Akeyless is expanding, with plans to double its 80-person workforce by the end of next year.

Hareven didn’t mention during our conversation, but Akeyless is also likely to benefit from the continued broader VC interest in cybersecurity. Venture capital investments in security startups eclipsed $13 billion this year, according to PitchBook data, up from $11.47 billion in 2020.

“The fact that we are a software-as-a-service provider and free of the ‘on-premise technical debt’ of versioning and support makes our economics much more efficient, allowing us to respond faster to market needs and rapidly innovate,” Hareven said.

More TechCrunch

ZeroPoint claims to have solved compression problems with hyper-fast, low-level memory compression that requires no real changes to the rest of the computing system.

ZeroPoint’s nanosecond-scale memory compression could tame power-hungry AI infrastructure

In 2021, Roi Ravhon, Asaf Liveanu and Yizhar Gilboa came together to found Finout, an enterprise-focused toolset to help manage and optimize cloud costs. (We covered the company’s launch out…

Finout lands cash to grow its cloud spend management platform

On the heels of raising $102 million earlier this year, Bugcrowd is making good on its promise to use some of that funding to make acquisitions to strengthen its security…

Bugcrowd, the crowdsourced white-hat hacker platform, acquires Informer to ramp up its security chops

Google is preparing to build what will be the first subsea fibre optic cable connecting the continents of Africa and Australia. The news comes as the major cloud hyperscalers battle…

Google to build first subsea fibre optic cable connecting Africa with Australia

The Kia EV3 — the new all-electric compact SUV revealed Thursday — illustrates a growing appetite among global automakers to bring generative AI into their vehicles.  The automaker said the…

The new Kia EV3 will have an AI assistant with ChatGPT DNA

Bing, Microsoft’s search engine, isn’t working properly right now. At first, we noticed it wasn’t possible to perform a web search at all. Now it seems search results are loading…

Bing’s API is down, taking Microsoft Copilot, DuckDuckGo and ChatGPT’s web search feature down too

If you thought autonomous driving was just for cars, think again. The so-called ‘autonomous navigation’ market — where ships steer themselves guided by AI, resulting in fuel and time savings…

Autonomous shipping startup Orca AI tops up with $23M led by OCV Partners and MizMaa Ventures

The best known mycoprotein is probably Quorn, a meat substitute that’s fast approaching its 40th birthday. But Finnish biotech startup Enifer is cooking up something even older: Its proprietary single-cell…

Meet the Finnish biotech startup bringing a long lost mycoprotein to your plate

Silo, a Bay Area food supply chain startup, has hit a rough patch. TechCrunch has learned that the company on Tuesday laid off roughly 30% of its staff, or north…

Food supply chain software maker Silo lays off ~30% of staff amid M&A discussions

Featured Article

Meta’s new AI council is composed entirely of white men

Meanwhile, women and people of color are disproportionately impacted by irresponsible AI.

15 hours ago
Meta’s new AI council is composed entirely of white men

If you’ve ever wanted to apply to Y Combinator, here’s some inside scoop on how the iconic accelerator goes about choosing companies.

Garry Tan has revealed his ‘secret sauce’ for getting into Y Combinator

Indian ride-hailing startup BluSmart has started operating in Dubai, TechCrunch has exclusively learned and confirmed with its executive. The move to Dubai, which has been rumored for months, could help…

India’s BluSmart is testing its ride-hailing service in Dubai

Under the envisioned framework, both candidate and issue ads would be required to include an on-air and filed disclosure that AI-generated content was used.

FCC proposes all AI-generated content in political ads must be disclosed

Want to make a founder’s day, week, month, and possibly career? Refer them to Startup Battlefield 200 at Disrupt 2024! Applications close June 10 at 11:59 p.m. PT. TechCrunch’s Startup…

Refer a founder to Startup Battlefield 200 at Disrupt 2024

Social networking startup and X competitor Bluesky is officially launching DMs (direct messages), the company announced on Wednesday. Later, Bluesky plans to “fully support end-to-end encrypted messaging down the line,”…

Bluesky now has DMs

The perception in Silicon Valley is that every investor would love to be in business with Peter Thiel. But the venture capital fundraising environment has become so difficult that even…

Peter Thiel-founded Valar Ventures raised a $300 million fund, half the size of its last one

Featured Article

Spyware found on US hotel check-in computers

Several hotel check-in computers are running a remote access app, which is leaking screenshots of guest information to the internet.

18 hours ago
Spyware found on US hotel check-in computers

Gavet has had a rocky tenure at Techstars and her leadership was the subject of much controversy.

Techstars CEO Maëlle Gavet is out

The struggle isn’t universal, however.

Connected fitness is adrift post-pandemic

Featured Article

A comprehensive list of 2024 tech layoffs

The tech layoff wave is still going strong in 2024. Following significant workforce reductions in 2022 and 2023, this year has already seen 60,000 job cuts across 254 companies, according to independent layoffs tracker Layoffs.fyi. Companies like Tesla, Amazon, Google, TikTok, Snap and Microsoft have conducted sizable layoffs in the first months of 2024. Smaller-sized…

20 hours ago
A comprehensive list of 2024 tech layoffs

HoundDog actually looks at the code a developer is writing, using both traditional pattern matching and large language models to find potential issues.

HoundDog.ai helps developers prevent personal information from leaking

The changes are designed to enhance the consumer experience of using Google Pay and make it a more competitive option against other payment methods.

Google Pay will now display card perks, BNPL options and more

Few figures in the tech industry have earned the storied reputation of Vinod Khosla, founder and partner at Khosla Ventures. For over 40 years, he has been at the center…

Vinod Khosla is coming to Disrupt to discuss how AI might change the future

AI has already started replacing voice agents’ jobs. Now, companies are exploring ways to replace the existing computer-generated voice models with synthetic versions of human voices. Truecaller, the widely known…

Truecaller partners with Microsoft to let its AI respond to calls in your own voice

Meta is updating its Ray-Ban smart glasses with new hands-free functionality, the company announced on Wednesday. Most notably, users can now share an image from their smart glasses directly to…

Meta’s Ray-Ban smart glasses now let you share images directly to your Instagram Story

Spotify launched its own font, the company announced on Wednesday. The music streaming service hopes that its new typeface, “Spotify Mix,” will help Spotify distinguish its own unique visual identity. …

Why Spotify is launching its own font, Spotify Mix

In 2008, Marty Kagan, who’d previously worked at Cisco and Akamai, co-founded Cedexis, a (now-Cisco-owned) firm developing observability tech for content delivery networks. Fellow Cisco veteran Hasan Alayli joined Kagan…

Hydrolix seeks to make storing log data faster and cheaper

A dodgy email containing a link that looks “legit” but is actually malicious remains one of the most dangerous, yet successful, tricks in a cybercriminal’s handbook. Now, an AI startup…

Bolster, creator of the CheckPhish phishing tracker, raises $14M led by Microsoft’s M12

If you’ve been looking forward to seeing Boeing’s Starliner capsule carry two astronauts to the International Space Station for the first time, you’ll have to wait a bit longer. The…

Boeing, NASA indefinitely delay crewed Starliner launch