Novee Security
Last updated: May 30, 2026
Novee Security builds AI-driven penetration testing platforms that continuously simulate advanced attacker behavior to uncover complex vulnerabilities and business logic flaws in enterprise applications faster than traditional manual pentesting.
Visit WebsiteCompany Overview
Novee Security is an Israeli startup founded in May 2025 by Ido Geffen (CEO), Gon Chalamish (Chief Product Officer), and Omer Ninburg (Chief Technology Officer), all veterans of Israel's elite cyber units. The company emerged from stealth in January 2026 after raising $51.5 million across seed and Series A rounds led by YL Ventures and Canaan Partners, with participation from Zeev Ventures. Novee operates from Tel Aviv and is focused on solving the fundamental challenge facing modern security teams: the gap between the speed and sophistication of machine-powered attackers and the slowness and cost of manual or generic-AI-driven security validation.
The core product is a continuous, automated penetration testing platform powered by proprietary AI models trained specifically on real-world attacker tradecraft and tactics. Unlike general-purpose large language models or traditional dynamic application security testing (DAST) tools, Novee's AI is engineered from the ground up to simulate how real attackers think, plan, and execute intrusions. The platform operates in black-box, gray-box, and white-box modes without requiring source code access or agent installation, enabling it to map live application environments and identify exposed endpoints continuously rather than on fixed testing cycles. This continuous approach directly addresses a critical market pain point: enterprises conduct annual or semi-annual penetration tests, leaving gaps of months or years where new vulnerabilities, misconfigurations, or logic flaws accumulate undetected.
Novee's technical differentiation centers on several capabilities that demonstrate superiority over both signature-based vulnerability scanners and general AI approaches. The platform specializes in finding complex, chained vulnerabilities including business logic flaws, SSRF attacks, and multi-step exploitation paths that standard tools consistently miss. Early performance data shows the proprietary AI achieving approximately 90% accuracy on relevant web exploitation challenges versus 65% for leading frontier models like Gemini 2.5 Pro or Claude 4 Sonnet, reflecting domain-specific training and optimization for offensive security work. Each finding is automatically validated with step-by-step exploitation reproduction to eliminate false positives and provide clear attack chains; remediation guidance is personalized to each organization's unique architecture and technology stack; and the platform automatically re-tests after fixes to confirm resilience, creating a feedback loop that transforms pentesting from episodic activity to continuous validation.
The company's early market traction has been substantial given its recent launch. Novee has already deployed its platform with customers including K Health, HiBob, Reco, Cresta, Telit, and JB Poindexter across technology and fintech sectors. The rapid adoption combined with $51.5 million raised within just eight months of founding reflects strong investor confidence in the category thesis: as attackers increasingly deploy AI to accelerate reconnaissance, vulnerability discovery, and exploitation, defenders must move from quarterly or annual testing to machine-speed, continuous validation. Novee is positioned at the center of that shift.
Dual-use relevance and strategic value are credible. The core penetration testing and vulnerability discovery mission serves commercial enterprises exposed to common web-based attacks, but it equally applies to government, defense, critical infrastructure, and high-security environments where application exploitation is a key attack vector. Organizations with sensitive missions—whether in finance, healthcare, government, or critical systems—depend on the same continuous, AI-driven offense simulation that Novee is developing for the commercial market. The platform's ability to work in black-box mode without agent installation or source-code access also maps well to scenarios where security teams must validate third-party applications or systems where full transparency is not available. The founding team's elite cyber background, rapid funding, and early traction position Novee as likely to influence Israeli and global standards for how organizations approach application security validation at scale.
Dual-Use Assessment
Novee's continuous AI-driven penetration testing platform is commercially relevant for enterprise application security, but the same capabilities directly apply to government, defense, critical infrastructure, and national-security environments where application-level attacks pose operational risk. The platform's black-box testing mode and lack of agent or source-code requirements make it applicable to scenarios where security teams must validate third-party or sensitive systems without full transparency. Dual-use credibility is strengthened by the founding team's elite cyber unit background and the fundamental nature of penetration testing as both defensive and intelligence-relevant practice.
Strategic Fit Assessment
Priority signal means this entry may be worth researching within the Claw & Talon thesis. It does not mean investable, suitable, endorsed, available, or likely to produce returns.
Novee represents a credible early-stage security platform company with strong founding talent, rapid customer adoption, substantial funding validation, and clear market need. The founders' elite cyber backgrounds reduce execution risk, and the category thesis—machine-speed continuous testing replacing episodic manual pentesting—is sound. The company's proprietary AI training and domain-specific optimization create potential differentiation from generic AI approaches. Series-A stage with demonstrated product-market signals, but the broad offensive security market is competitive and adoption must prove durable across diverse enterprise bases.
Strategic Value to U.S.-Israel Alliance
Novee is strategically useful because continuous, automated penetration testing powered by domain-specific AI could become embedded in critical infrastructure, defense, and government security workflows. A platform that scales offensive security assessment beyond the constraints of manual pentester availability has both commercial and national-security relevance. If the company achieves durable product-market fit and grows into government/defense sectors, it could influence how organizations defend high-consequence applications and validate security posture at operational pace.
Key Technologies
- Proprietary offensive AI models
- Real-world attacker behavior simulation
- Black-box/gray-box/white-box application testing
- Continuous automated security assessment
- Business logic and chained vulnerability discovery
- Adaptive AI reasoning for web exploitation
Use Cases & Applications
- Continuous application penetration testing
- Business logic vulnerability discovery
- Complex attack chain identification
- Automated remediation validation
- Dynamic environment security mapping
- Multi-vendor application security assessment
- Enterprise breach prevention
- Security validation for DevOps pipelines
Sources and verification
This profile is based on public-source research, Claw & Talon curation, and editorial judgment. Inclusion does not imply endorsement, partnership, investment, or a recommendation to transact. Readers should still confirm current status, customers, funding, and product claims before relying on this profile.
Public sources
The links below are visible public references used for source discipline around company identity, status, funding, customer, acquisition, public-company, or other material claims where available.
- Israeli AI offensive security co Novee raises $51.5m Globes coverage of Novee's Series A funding, founders, and founding team background from Israeli elite cyber units.
- Novee Emerges From Stealth With $51.5M to Counter AI Cyberattacks VentureBeat article documenting Novee's stealth exit, funding, product capabilities, and AI superiority claims versus frontier models.
- Just eight months old, cyber startup Novee raises $51.5 million CalalisTech reporting on Novee's exceptionally fast funding timeline and market adoption within eight months of founding.
- Novee - Canaan Partners Portfolio Lead investor Canaan Partners' official portfolio profile of Novee, confirming founders, funding details, and product positioning.
- Novee launches with $51.5M to bring continuous AI offensive security to enterprises SiliconAngle coverage of Novee's feature capabilities, including continuous testing, validation, and remediation workflow.
- Official website Primary public reference for company identity, positioning, and current web presence.
- Profile update timestamp Last updated in the Claw & Talon database on May 30, 2026.
Investor Lens
What this entry is
Private startup
Why it may matter
Novee Security may matter as a Cybersecurity entry with direct private-company diligence for Israeli technology research.
How an independent investor should read this
Direct private-company diligence. Read this profile as a starting point for independent verification, not as a recommendation or suitability assessment.
Evidence to verify
- Verify current status
- Verify traction
- Verify cap table/funding
- Verify technical claims
- Verify regulatory/export-control issues
- Verify customer concentration
Main investor questions
- Is the company currently active, independently financeable, and raising or not raising on terms you can verify?
- What customer, revenue, product, and technical evidence supports the company story?
- What valuation, cap table, rights, and follow-on assumptions would govern any private exposure?
- Does the dual-use claim map to actual commercial and government/defense/resilience buyer evidence?
- What evidence would change the thesis or show that the profile is stale?
What not to infer
- Inclusion does not imply endorsement.
- Inclusion does not imply allocation availability or current fundraising.
- Scores do not indicate investment suitability or expected returns.
- Strategic importance does not automatically imply venture return potential.
Diligence questions
- What evidence verifies Novee Security's current customer traction, deployment status, and revenue concentration?
- Which technical claims are independently demonstrable today, and which remain roadmap or pilot-stage assertions?
- Where does the product create real defense, intelligence, critical-infrastructure, or emergency-response value beyond ordinary commercial adoption?
- How does the platform integrate into existing SOC, cloud, identity, or compliance workflows without adding operational burden?
- What would disconfirm the priority signal: weak customer references, thin technical differentiation, poor capital efficiency, or limited allied-market access?
Related sector
See the Cybersecurity sector page for market context, related subcategories, and other Israeli companies in this part of the database.
Related companies
Need a diligence readout?
Use the profile and related checklists as a starting point. If the decision needs more context, request a company screen, founder-call prep, diligence memo, or sector readout.