Luminate Security

Cybersecurity Acquired asset Dual-Use Technology Founded 2017

Last updated: Jul 31, 2026

Luminate Security was an Israeli cybersecurity startup that built Secure Access Cloud, a software-defined-perimeter platform for granting users point-to-point access to specific applications across on-premises and hybrid-cloud environments. Symantec acquired the company in 2019, and its former domain now redirects to Broadcom's cybersecurity business.

Visit Website

Company Overview

Luminate Security emerged from stealth in 2018 with a software-as-a-service implementation of the BeyondCorp and software-defined-perimeter ideas. Secure Access Cloud was designed to connect an authenticated user to a requested application without exposing the wider corporate network or granting broad network-level access. Public product material described an agentless, application-layer architecture that could span on-premises data centers and public-cloud infrastructure, integrate with existing identity systems, and apply access policy based on the user, device, location, and requested resource. The important technical proposition was not simply replacing a VPN client; it was reducing the reachable attack surface and limiting opportunities for reconnaissance and lateral movement.

The initial commercial problem was credible and well-defined. Enterprises were accumulating hybrid-cloud applications while still depending on VPNs, firewalls, and manually maintained network segmentation. Luminate's 2018 launch announcement said the platform had production paying customers in international financial, technology, and consumer-services organizations, and described integrations with existing IT tools rather than requiring wholesale application or permission redesign. Those are historical company claims, but they provide stronger evidence of early commercialization than the current record's generic growth language. Public reporting also records $14 million in combined seed and Series A funding before the exit. Current employee count, customer retention, product availability, and post-acquisition revenue are not reasonably confirmable from the available public record and should not be inferred from the old 11-50 estimate.

Symantec announced the acquisition in February 2019 and said Luminate's technology would strengthen its cloud-security and Integrated Cyber Defense offering. Broadcom subsequently completed its acquisition of Symantec's enterprise-security business in November 2019. Luminate.io now redirects to Broadcom's cybersecurity product area, which is evidence of ownership and a continuing corporate web destination but not proof that Luminate remains a separately marketed product or legal entity. The exit validates strategic interest in application-centric access control, while also making standalone company-level diligence impossible: there is no reliable current cap table, independent management profile, product roadmap, or evidence that the original brand remains active.

The category remains strategically important, but Luminate's historical differentiation has narrowed as zero-trust network access, security-service-edge, identity-aware proxying, and secure private application access became standard features of larger platforms. Zscaler, Palo Alto Networks, Cisco, Fortinet, Cloudflare, and specialist vendors such as Tailscale compete through broader ecosystems, identity integrations, endpoint controls, and distribution. Luminate is relevant to defense and national-security analysis because the same least-privilege, application-specific access model can protect sensitive administrative systems, distributed mission teams, and operational technology support channels. However, no public source reviewed here establishes defense or classified-network deployments; the defense case is a technology adjacency, not a claimed customer reference.

Dual-Use Assessment

Military & Commercial Applications

The core capability—identity- and context-aware access to individual applications without exposing an entire network—has substantive commercial and security-mission applicability. It can support secure administration of sensitive systems, contractor access, distributed operations, and segmented environments in defense or critical infrastructure. The dual-use conclusion is based on the nature of the technology, not on verified military customers, classified deployments, or government contracts; no such public evidence was identified.

Strategic Fit Assessment

Luminate is not an independent strategically relevant startup in the database's present-tense sense: Symantec acquired it in 2019, and Broadcom later acquired Symantec's enterprise-security business. The historical record does show credible venture backing, production enterprise customers at launch, and strategic value in zero-trust access. For diligence readers, the relevant lesson is an acquisition case study and a technology lineage, not a current financing or ownership opportunity. Current product continuity, standalone economics, personnel, and customer concentration require confirmation from Broadcom and cannot be scored as if Luminate were still operating independently.

Strategic Value to U.S.-Israel Alliance

Luminate is strategically useful as a historical Israeli cybersecurity exit and as an example of application-centric access becoming part of a larger enterprise-security platform. Its technology addresses a persistent security problem: giving a specific user access to a specific resource while reducing exposure of the surrounding network. That pattern is relevant to enterprise, critical-infrastructure, and defense architectures, but the record contains no verified defense deployment. The principal current value is analytical—understanding zero-trust adoption, platform consolidation, and acquisition integration—not direct access to an independent supplier.

Key Technologies

  • Software-defined perimeter (SDP) architecture
  • Zero-trust application access and identity-aware proxying
  • Agentless point-to-point connectivity
  • SAML, OpenID Connect/OAuth2, Active Directory, and LDAP integration
  • Device posture and endpoint security signal integration
  • Hybrid-cloud and on-premises application connectivity
  • Application cloaking and lateral-movement reduction

Use Cases & Applications

  • Replacing or reducing VPN access for distributed enterprise users
  • Least-privilege access to private applications in hybrid clouds
  • Privileged contractor and administrator access to sensitive systems
  • Secure access to on-premises data centers without broad network exposure
  • Device-compliance-gated access using EDR or MDM signals
  • Segmented support access for critical infrastructure operators
  • Defense or government mission-support access where application-level controls are required

Sources and verification

This profile is based on public-source research, Claw & Talon curation, and editorial judgment. Inclusion does not imply endorsement, partnership, investment, or a recommendation to transact. Readers should still confirm current status, customers, funding, and product claims before relying on this profile. The editorial policy explains how profiles are researched, where automated drafting is used, and how corrections work.

This record lists 6 public references used for company identity, status, positioning, or material-claim review.

Public sources

The links below are visible public references used for source discipline around company identity, status, funding, customer, acquisition, public-company, or other material claims where available.

Investor Lens

What this entry is

Acquired asset

Why it may matter

Luminate Security may matter as a Cybersecurity entry with not currently an investable standalone company for Israeli technology research.

How an independent investor should read this

Not currently an investable standalone company. Read this profile as a starting point for independent verification, not as a recommendation or suitability assessment.

Evidence to verify

  • Verify current status
  • Verify technical claims
  • Verify regulatory/export-control issues

Main investor questions

  • Is this entry a benchmark, buyer, ecosystem node, acquired asset, or strategic reference rather than a live startup opportunity?
  • What does this reference clarify about buyers, sector structure, public-market context, or strategic demand?
  • Does the dual-use claim map to actual commercial and government/defense/resilience buyer evidence?
  • What evidence would change the thesis or show that the profile is stale?

What not to infer

  • Inclusion does not imply endorsement.
  • Inclusion does not imply allocation availability or current fundraising.
  • Scores do not indicate investment suitability or expected returns.
  • Strategic importance does not automatically imply venture return potential.

Diligence questions

  • What evidence verifies Luminate Security's current customer traction, deployment status, and revenue concentration?
  • Which technical claims are independently demonstrable today, and which remain roadmap or pilot-stage assertions?
  • Where does the product create real defense, intelligence, critical-infrastructure, or emergency-response value beyond ordinary commercial adoption?
  • How does the platform integrate into existing SOC, cloud, identity, or compliance workflows without adding operational burden?
  • Is the company a live venture opportunity, a mature strategic reference, an acquired asset, or primarily a market-mapping entry?

Related sector

See the Cybersecurity sector page for market context, related subcategories, and other Israeli companies in this part of the database.

Need a diligence readout?

Use the profile and related checklists as a starting point. If the decision needs more context, request a company screen, founder-call prep, diligence memo, or sector readout.