Bay Area/ San Francisco

Palo Alto Networks Veterans Bet $20 Million On AI Endpoint Security

AI Assisted Icon
Published on July 31, 2026
Palo Alto Networks Veterans Bet $20 Million On AI Endpoint SecuritySource: Google Street View

A trio of former Palo Alto Networks leaders is betting that the next big cybersecurity headache will not be malware, but the growing pile of AI agents, browser extensions, plugins and code quietly running on employee computers. Their new Israeli startup, Bloom Security, has raised $20 million to build what it calls an AI-native endpoint security platform.

According to Calcalist Tech, the seed round was led by Glilot Capital Partners and Ten Eleven Ventures, with participation from Okta Ventures and Runtime Ventures. The round also drew angel backing from founders of Snyk, Demisto, Dig Security and Talon, giving Bloom a lineup heavy on cybersecurity operators who have already seen one generation of security startups scale.

Bloom Wants To See Everything Running On Employee Devices

Bloom's central argument is that a modern work computer is no longer just an operating system, a few approved applications and an endpoint detection tool. On its official website, Bloom Security describes each endpoint as an ecosystem where AI agents, third-party extensions, local automation and sensitive data can interact in ways traditional security controls may not understand.

That approach shifts the question from whether a program is broadly considered safe to whether it is safe on this particular machine, for this particular employee, with these particular permissions. In other words, the same coding assistant might be harmless on one laptop and a serious liability on another if one user can reach production systems or confidential company data.

Bloom says its software uses autonomous AI agents to map applications, plugins, extensions, AI agents and code on endpoints, then examine what those tools can access and how they interact. The company told Calcalist Tech that its platform is already deployed at dozens of large enterprises in the United States and Europe, where it is being used to block risky installations, enforce policies and remediate threats without simply banning useful AI tools.

A Palo Alto Networks Alumni Network With Israeli Roots

Bloom was founded in 2025 by CEO Itay Keren, Chief Product Officer Ofir Balassiano and Chief Technology Officer Itay Frishman. The three previously held senior engineering, product and research roles at Palo Alto Networks after the company's acquisitions of Dig Security and Demisto, while Bloom now employs about 30 people in Israel, according to the report.

The founders bring unusually security-heavy résumés to a company focused on a still-forming category. Keren previously served as a submarine officer in the Israeli Navy, Balassiano began in the Israel Defense Forces' Mamram technology unit, and Frishman held research-and-development leadership roles in Unit 81.

Bay Area Capital Is Backing The Endpoint Pivot

The funding also gives the Bay Area a direct connection to Bloom's launch: Ten Eleven Ventures lists its Silicon Valley office in Burlingame and specializes in cybersecurity investments. Okta Ventures, another participant, says its investment focus includes identity, security and privacy startups, suggesting Bloom's pitch sits at the intersection of endpoint control, access management and AI governance.

For Bloom, the wager is that companies will not stop using AI tools just because security teams cannot fully review them one by one. The startup is instead trying to make context the control layer—letting organizations keep moving quickly while putting limits around what software and agents can actually do.