Dossier · Private startup · 4 independent sources
isVerified
Last updated: Sep 7, 2026
isVerified is an Israeli cybersecurity startup building a zero-trust voice layer for executive and institutional communications. Its iOS and Android product combines enrolled voice biometrics, real-time synthetic-speech detection, and a hardened VoIP channel to reduce the risk of AI-enabled vishing and voice impersonation.
Visit WebsiteCompany Overview
**Product and the concrete problem it solves.** isVerified targets a gap that sits between conventional identity controls and the human decision itself: employees often trust a familiar voice even when the caller’s identity and audio are unverifiable. The company’s public product is a mobile communications application for enterprise and public-sector workers. A protected user activates the app through an organization-specific link, enrolls a voiceprint, and places or receives calls through the isVerified environment. The system is intended to verify the speaker continuously and analyze the audio for synthetic or manipulated speech, terminating a call when its analysis detects a deepfake. That is a specific response to vishing, executive impersonation, fraudulent payment instructions, and social engineering that can bypass email security, endpoint controls, and multi-factor authentication because the attack arrives through an apparently ordinary phone conversation. The company emphasizes that it can be deployed on existing mobile devices without new hardware, VPN migration, or extensive infrastructure changes, which is important because a voice-control product that requires users to change their entire telephony workflow will struggle to reach the people most exposed to targeted impersonation.
**Core technology and how it actually works.** The architecture described publicly has four linked components rather than a generic deepfake classifier. First, the organization provisions a protected mobile application and binds it to a controlled environment using an activation link. Second, each user creates a secure voiceprint for authentication; the company says the biometric is used only for authentication and is protected by enterprise security controls. Third, during a call, isVerified compares the speaker with the enrolled identity while simultaneously examining the audio stream for indicators of AI-generated or manipulated speech. Fourth, a detected deepfake can trigger automatic call termination. The company also describes a hardened VoIP channel intended to reduce interception, compatibility with iOS and Android, mobile-device-management support for Jamf and Intune, SSO readiness for Okta and Azure AD, and SIEM alert forwarding through an API. Independent coverage reported that the detection analysis runs locally on the user’s device, a potentially meaningful privacy and latency property, although the precise division between on-device biometric matching, local audio inference, and service-side administration is not published. The public material does not disclose model architecture, training corpus, equal-error rates, language coverage, robustness against replay attacks, performance under packet loss, or how the system handles legitimate speakers with illness, stress, aging, code-switching, or poor connectivity.
**Market, customers, and go-to-market.** isVerified is pursuing a focused B2B market in which the buyer is responsible for high-consequence communications: enterprises, government and city entities, financial institutions, legal practices, healthcare networks, and aerospace or defense contractors. The official site presents anonymous testimonials attributed to a CISO at an international legal practice, a CIO at a Fortune 100 financial group, a VP of global risk and compliance at an aerospace and defense contractor, and a general counsel at a healthcare network. These endorsements establish the target personas and use-case framing, but they do not identify customers, contract values, paid deployment counts, or renewal behavior. Startup Nation Finder describes the company as serving global markets through a business-to-business model and identifies the product as released and available to customers. The go-to-market path is relatively legible: sell to security, risk, compliance, executive-protection, and IT teams; distribute through mobile-device-management and identity environments; and potentially work with managed security service providers and value-added resellers. The January 2026 coverage reported that the company’s channel program was aimed at MSSPs and VARs across North America, Europe, Asia-Pacific, and Australia-New Zealand. That channel motion could expand reach, but it also introduces implementation, support, and evidence requirements that are difficult for a small company to satisfy.
**Traction, financing, and third-party validation.** isVerified emerged from stealth in January 2026 with public iOS and Android applications and a narrowly defined voice-security thesis. Startup Nation Finder records the company as founded in January 2025, headquartered in Tel Aviv-Yafo, operating with 11–50 employees, and at a pre-funding stage; its machine-readable profile lists total funding as undisclosed and no financing rounds. The Israeli Companies Registrar reference surfaced by public company-data services identifies ISVERIFIED LTD as an active Israeli private company incorporated on June 10, 2025, with Roi Carthy listed in the company relationship data. That combination is useful evidence that this is a current Israeli ecosystem entry rather than merely a product page, while also showing that financing and legal-entity information are not fully synchronized across public sources. Biometric Update identifies the company as having emerged from Hudson Rock, a cybercrime-intelligence business co-founded by Alon Gal, and names Roi Carthy as founder and CEO; the same report says the platform was developed for high-risk executive, board, legal, and finance communications. SecurityBrief independently describes a year of development focused on vishing and confirms that the firm publicly attributes the product to proprietary synthetic-voice detection methods. The validation remains early: there are no disclosed financing figures, public benchmarks, named paying customers, certifications, major procurement announcements, or independent efficacy studies in the reviewed sources.
**Founders and team background.** The publicly identified founder is Roi Carthy, who is listed as founder and CEO in independent coverage and as a founder in Startup Nation Finder. Biometric Update connects Carthy to Hudson Rock and describes isVerified as emerging from a cybercrime-intelligence environment; this is strategically relevant because the founding context is close to real-world fraud, stolen credentials, illicit marketplaces, and the operational threat research needed to understand how voice impersonation is used. Public materials deliberately disclose little about the wider team. The company’s website says its personnel include veterans of elite intelligence units, national-security agencies, and major technology companies, but it does not publish names or service histories. That discretion may be sensible for a security vendor working on executive and institutional communications, yet it limits diligence. A buyer or strategic partner would need to verify the engineering leadership, biometric and speech-science expertise, mobile-platform experience, privacy counsel, and ability to run enterprise support. The 11–50 employee estimate from Startup Nation Finder indicates a small operating footprint, but it is a range rather than a current payroll disclosure. The team’s central test is not only whether it can build a detector, but whether it can sustain secure mobile releases, adversarial testing, incident response, model updates, and customer assurance without turning a high-trust product into a single-founder dependency.
**Competitive dynamics.** isVerified competes across several layers. Voice-biometric vendors such as Nuance and Verint offer speaker recognition and authentication for contact centers and enterprise workflows; deepfake and synthetic-media specialists such as Reality Defender, Pindrop, and Resemble AI address audio authenticity, fraud, or content provenance; secure communications platforms such as Signal and Wickr emphasize confidentiality and identity but do not present the same continuous synthetic-voice control; and large identity, fraud, and collaboration vendors can embed voice-risk checks into broader suites. The incumbent alternative is procedural rather than technical: callback verification, dual approval for payments, code words, out-of-band confirmation, and executive-protection protocols are cheap and understandable, even if they depend on human compliance. isVerified’s claimed edge is the combination of voice identity, deepfake analysis, and a familiar mobile calling workflow in one enterprise-controlled channel. That can be more actionable than a post-call risk score, but it creates a high bar: detection must be accurate enough to avoid severing legitimate critical calls, identity matching must resist replay and synthetic enrollment, and the secure VoIP path must be reliable enough for global users. Larger vendors have more data, distribution, compliance resources, and integration leverage, so the startup must prove that its focused product is materially easier to deploy or more effective against modern voice attacks.
**Defense, security, and resilience dual-use relevance.** isVerified qualifies as dual-use at the communications-resilience layer, not as a fielded military system. The core control is applicable to both commercial and security-sensitive environments: a defense contractor, emergency-management organization, government ministry, hospital, bank, or critical-infrastructure operator may all need to know whether a high-impact instruction came from the claimed person or from an AI-generated impersonator. Voice channels can carry orders about payments, access, incident response, logistics, procurement, personnel movements, or public communications; a compromised voice trust layer can therefore become a gateway to operational disruption even when networks and endpoints remain technically protected. The official site explicitly markets protection for public-sector workers and includes an aerospace-and-defense contractor testimonial, while Startup Nation Finder lists government and city entities among the target markets. Those are credible relevance signals, but they do not prove a defense contract, classified deployment, military use, government accreditation, or deployment in a contested communications environment. The strategic opportunity is to add zero-trust identity and synthetic-media detection to sensitive voice workflows. The strategic risk is equally clear: biometric privacy, lawful interception, data retention, false termination, accessibility, insider misuse, and denial-of-service concerns must be resolved before adoption by government or defense organizations.
**Growth stage, trajectory, and key diligence risks.** isVerified is best classified as early: it was founded in 2025, emerged from stealth in January 2026, has a released product and an 11–50 employee estimate, but has no public financing, customer count, revenue, retention, certification, or independently measured performance. Its trajectory depends on converting a sharp threat narrative into a trusted control that security teams can deploy across executives and other high-risk personnel without disrupting ordinary communication. The main diligence questions are: (1) whether voice authentication and deepfake detection remain accurate across languages, accents, codecs, background noise, replay, and adversarial synthesis; (2) whether analysis is genuinely local for the full call path and what metadata or audio leaves the device; (3) how the company protects stored voiceprints, recovery flows, admin accounts, and activation links; (4) whether automatic call termination is configurable, explainable, and safe for emergency or operational communications; (5) whether Apple and Android permissions or policy changes constrain the product; (6) whether channel partners can produce repeatable deployments; (7) whether the company can obtain privacy, security, and public-sector assurances; and (8) whether larger voice, identity, fraud, and communications platforms will bundle comparable controls. The Israeli registry, Israeli ecosystem listing, public launch, and focused product provide a credible current-company signal. The absence of funding and customer disclosure should keep the score measured until isVerified publishes evaluation results and referenceable production deployments.
Dual-Use Assessment
isVerified has credible dual-use relevance in communications security and operational resilience. Its voiceprint authentication, synthetic-speech detection, and controlled mobile calling workflow can protect commercial executives, financial approvals, healthcare operations, government workers, defense contractors, emergency management, and critical-infrastructure teams from AI-enabled impersonation. The company’s public-sector positioning and aerospace-and-defense testimonial support the adjacency, but no public source reviewed here establishes a defense contract, classified deployment, military fielding, government accreditation, or operation in a contested communications environment. The right assessment is a promising protective control for high-consequence voice workflows, with material biometric privacy, false-positive, availability, and responsible-use diligence still required.
Strategic Fit Assessment
Priority signal means this entry may be worth researching within the Claw & Talon thesis. It does not mean investable, suitable, endorsed, available, or likely to produce returns.
isVerified is a high-priority early-stage signal for the database’s cyber-resilience thesis, but the public evidence does not support a conclusion about financial attractiveness or investment returns. (1) The product addresses an increasingly concrete attack surface: AI-generated voice can exploit human trust even when email, endpoints, identity systems, and network controls are functioning. (2) The solution is operationally focused, combining identity, deepfake analysis, and a controlled calling path instead of offering only a forensic score after an incident. (3) Israeli cyber provenance is credible through the active Israeli company record, Startup Nation Finder listing, and reported connection to Hudson Rock. (4) The enterprise and public-sector target market creates strategic relevance beyond consumer deepfake detection. Counterweights are substantial: no disclosed financing, revenue, customer names, retention, certifications, benchmark results, or defense procurement; sensitive biometric data and automatic termination create a high trust and liability bar; and voice, fraud, identity, and secure-communications incumbents can bundle overlapping controls. The legacy strategically relevant flag represents a priority signal for diligence, not an investment recommendation.
Strategic Value to U.S.-Israel Alliance
isVerified’s strategic value is the possibility of closing a neglected trust gap in high-consequence voice communications. (1) Resilience: continuous verification can reduce the chance that synthetic speech triggers an unauthorized payment, operational change, or emergency instruction. (2) Sovereign control: an organization-bound mobile application and hardened VoIP path may give government and critical operators a controlled channel without requiring a complete telephony replacement. (3) AI-era relevance: the product treats generated voice as an identity and execution risk, not merely as misinformation content. (4) Allied applicability: the same control can support defense contractors, public agencies, hospitals, and financial institutions across allied markets. Realized strategic value depends on privacy-safe architecture, proven accuracy, fail-safe behavior, and public-sector assurance. Until those are demonstrated, the company should be viewed as a resilience-enabling cybersecurity startup rather than a national-security platform with confirmed fielding.
Key Technologies
- Continuous speaker verification against an enrolled voiceprint
- Real-time detection of AI-generated and synthetically manipulated speech
- Hardened enterprise VoIP calling channel
- Privacy-oriented mobile biometric processing with reported on-device analysis
- iOS and Android applications compatible with Jamf and Intune mobile-device management
- SSO integration for Okta and Azure AD with SIEM alert forwarding through an API
- Organization-bound activation and secure voiceprint enrollment workflow
Use Cases & Applications
- Executive and board-level calls involving payment, legal, or strategic decisions
- Government and city-entity communications where voice impersonation could trigger an operational action
- Defense-contractor and aerospace communications involving sensitive instructions or procurement workflows
- Financial-services approval calls exposed to CEO fraud and payment redirection
- Healthcare-network leadership and clinical-operations communications
- Managed security service provider delivery of voice-protection controls to multiple enterprises
- Critical-infrastructure incident response and emergency coordination
- Out-of-band identity assurance for high-risk internal mobile communications
Sources and verification
This profile is based on public-source research, Claw & Talon curation, and editorial judgment. Inclusion does not imply endorsement, partnership, investment, or a recommendation to transact. Readers should still confirm current status, customers, funding, and product claims before relying on this profile. The editorial policy explains how profiles are researched, where automated drafting is used, and how corrections work; the research methodology documents how evidence is graded, what counts as an independent source, and why some profiles are excluded from search indexing.
This record lists 6 public references used for company identity, status, positioning, or material-claim review.
Public sources
The links below are visible public references used for source discipline around company identity, status, funding, customer, acquisition, public-company, or other material claims where available.
- isVerified official website Verifies the product workflow: organization-bound activation, voiceprint enrollment, real-time speaker verification, synthetic-speech detection, automatic call termination, hardened VoIP, mobile deployment, MDM, SSO, SIEM, public-sector positioning, and anonymous enterprise testimonials.
- isVerified — Cyber Security, Startup Nation Finder Verifies the Israeli ecosystem entry, January 2025 founding, Tel Aviv-Yafo location, 11-50 employee range, pre-funding status, released product, founder Roi Carthy, active Israeli registrar link, and undisclosed funding.
- Israeli firm isVerified emerges from stealth with deepfake detection apps, Biometric Update Verifies the January 2026 stealth exit, Israeli and Tel Aviv positioning, iOS and Android voice-deepfake apps, reported local analysis, enterprise and public-sector target users, Hudson Rock connection, and founder and CEO Roi Carthy.
- isVerified launches AI voice deepfake defence for execs, SecurityBrief Corroborates the Tel Aviv company’s vishing focus, year of product development, executive-communications use case, real-time voice-authenticity approach, proprietary detection methods, and founder Roi Carthy.
- ISVERIFIED LTD company record, Israeli Companies Registrar mirror Verifies the active Israeli private company ISVERIFIED LTD, company number 517175105, Tel Aviv address, June 10, 2025 incorporation date, and Roi Carthy company relationship.
- isVerified launches mobile apps to combat voice deepfakes, LinkedIn report Provides an additional public corroboration of the Israeli startup’s mobile voice-deepfake detection, biometric verification, local call analysis, and enterprise impersonation-defense positioning.
- Profile update timestamp Last updated in the Claw & Talon database on Sep 7, 2026.
Related sector
See the Cybersecurity sector page for market context, related subcategories, and other Israeli companies in this part of the database.