AI-native application security platform for code-to-runtime risk management
Cycode built an application security platform that correlates signals across code analysis, runtime monitoring, and supply chain security using a proprietary Context Intelligence Graph. The tech stack (Kafka, PostgreSQL, ArangoDB, GraphQL, Kubernetes) reflects a distributed, graph-heavy architecture suited to ingesting and correlating security signals at scale. Hiring has decelerated sharply—only one role posted in the last 30 days—while support and customer success dominate open positions, signaling a shift from feature velocity toward retention and expansion.
Cycode delivers application security for development teams, bridging the gap between code scanning and runtime protection. The platform ingests signals from proprietary scanners, third-party integrations, and a graph-based reasoning engine to prioritize security risks by business context rather than alert volume. The company operates across the US, Israel, and Argentina, serving mid-market and enterprise customers building AI-assisted and traditionally-written software. Current focus areas include customer onboarding, renewal, and navigating compliance and time-to-market pressures in regulated industries.
Cycode uses C#, Python, Go, and Node.js for application code; MongoDB, PostgreSQL, and ArangoDB for data; Kafka for event streaming; Kubernetes for orchestration; and New Relic and Grafana for observability.
Cycode has between 51 and 200 employees, headquartered in New York, NY and founded in 2019.
Other companies in the same industry, closest in size