HiddenLayer

The pure-play ML security company founded by the researchers who discovered AI-specific malware — and the only one trusted enough to work in classified DoD environments.

Private AI Model Security 📍 Austin, TX Est. 2022 👥 100+
www.hiddenlayer.com ↗

HiddenLayer was founded in March 2022 in Austin, Texas, by Chris 'Tito' Sestito, Jim Ballard, and Tanner Burns — experienced security and machine learning professionals who first identified AI-specific malware targeting ML models. The company emerged from stealth in July 2022 with a thesis that the machine learning model itself — not just the data or infrastructure around it — is an attackable surface requiring dedicated security controls. HiddenLayer positioned itself as the first company to offer turnkey security for AI that requires no access to raw data or model weights, a critical differentiator for regulated industries and government clients.

HiddenLayer raised $6M in seed funding in 2022 and then $50M in a Series A in September 2023 — the largest Series A in AI security at the time — led by M12 (Microsoft's Venture Fund) and Moore Strategic Ventures, with participation from Booz Allen Ventures, IBM Ventures, and Capital One Ventures. Total disclosed funding stands at approximately $56M. In December 2025, HiddenLayer was selected as an awardee on the US Missile Defense Agency's SHIELD IDIQ contract (ceiling value $151B), a major validation of its Airgapped AI Security Platform for classified DoD and intelligence community deployments.

HiddenLayer's technical architecture centers on non-invasive model inspection: it analyzes model artifacts, tensor structures, and runtime behavior without requiring access to the underlying training data or proprietary weights. The platform's four modules — AI Discovery, AI Supply Chain Security (model scanning), AI Attack Simulation (automated red teaming), and AI Runtime Security (AIDR: AI Detection and Response) — cover the complete ML lifecycle from procurement to production. The company's adversarial AI research team regularly publishes CVEs and novel attack methodologies, including the Tree of Attacks with Pruning (TAP) technique for LLM jailbreaking, establishing HiddenLayer as a credible source of AI threat intelligence.

Why This Company Matters

HiddenLayer is the rare pure-play AI security company that has translated academic adversarial ML research into an enterprise-grade product with real government validation. The MDA SHIELD contract win — securing a slot in the DoD's premier AI acquisition vehicle — demonstrates a level of trust in its technology that no commercial-only AI security vendor has achieved. Its non-invasive architecture (no access to weights or training data) is the only viable path for highly regulated industries — financial services, healthcare, and intelligence agencies — where data sovereignty makes cloud-based scanning services impossible. With $56M raised and a lean 51-200 person headcount, HiddenLayer is capital-efficient relative to its technical footprint, but faces pressure to either raise additional capital to scale enterprise go-to-market or accept a strategic acquisition by a larger platform vendor.

Mar 2026
Released 2026 AI Threat Landscape Report; finds 1 in 8 AI breaches now linked to agentic systems, 76% of orgs cite shadow AI as a major problem
Dec 2025
Awarded place on $151B Missile Defense Agency SHIELD IDIQ contract supporting Golden Dome initiative; Airgapped AI Security Platform validated for classified DoD environments
Dec 2025
AWS re:Invent 2025: launched expanded AWS integrations (Bedrock, AgentCore, SageMaker), new AI Discovery module, and redesigned platform with AI Attack Simulation
Sep 2023
Raised $50M Series A led by M12 (Microsoft Ventures) and Moore Strategic Ventures; largest AI security Series A to date at time of raise
Jul 2022
Emerged from stealth with initial AI model security platform targeting adversarial attacks, model theft, and inference bypass
Mar 2022
Founded in Austin, TX by security and ML researchers who identified the first AI-specific malware
AI Security Platform
End-to-end platform covering AI Discovery, Supply Chain Security, Attack Simulation, and Runtime Security (AIDR) across agentic, generative, and predictive AI systems
AI Detection and Response (AIDR)
Real-time runtime monitoring of ML models in production to detect and block adversarial attacks, model manipulation, and inference-time exploitation
Model Scanning
Non-invasive scanning of AI model artifacts for malware, backdoors, CVEs, and integrity violations — without access to raw training data or weights
Airgapped AI Security Platform
Air-gapped deployment variant for classified environments (DoD, Intelligence Community) with complete data isolation and federal compliance readiness

HiddenLayer occupies the pure-play AI model security niche alongside Protect AI and Robust Intelligence (now Cisco). Of the three, it is the only independent company focused exclusively on ML model security — Protect AI is broader (MLOps governance), and Robust Intelligence was acquired by Cisco in 2024. HiddenLayer's government traction and non-invasive architecture give it a strong position in regulated verticals that cloud-based competitors cannot serve. The primary competitive risk is platform consolidation: as Cisco (via AI Defense), SentinelOne, Palo Alto, and Microsoft bundle AI model security into broader security platforms, standalone purchasing of a dedicated AI security tool becomes harder to justify. HiddenLayer's survival thesis rests on technical depth and regulatory compliance requirements that platform vendors cannot cheaply replicate.

📊 Funding History & Investment Rounds
👤 Executive Team & Key Hires
🎯 Competitive Positioning Matrix
📡 Signal Tracking — M&A, Product, Partnerships
📈 Quarterly Revenue & Growth Metrics
🔗 Supply Chain & Integration Mapping

Full Intelligence Profile

Access complete funding data, executive profiles, competitive positioning matrix, signal tracking, and strategic analysis.

Request Full Access →
Category Peers — AI Model Security

8 other companies in this category

Explore the Full Database

206 companies across 10 categories — the most comprehensive AI security company tracker.

Browse All Companies →