$66m bet on fixing enterprise identity for the AI era

AI

NewCore, a security-first identity platform built to govern humans, machines, and AI agents within the enterprise, has emerged from stealth with $66m in funding, marking one of the most significant early-stage bets on identity security for the agentic era.

The seed round was backed by Cyberstarts, Index Ventures, and Evolution Equity Partners. The company was founded by a team of cybersecurity and enterprise IT veterans whose prior track record includes the acquisition of Dome9 by Check Point.

NewCore argues that identity has become the primary attack surface across enterprise environments. The most damaging breaches of recent years, spanning MGM, Change Healthcare, and Snowflake customers, share a common root: identity infrastructure that was architected for a world of employees logging into web applications and was never designed to handle the scale and complexity of today’s machine and agentic workforces. Dominant identity platforms, built roughly 15 years ago on protocols such as SAML, static service accounts, and password-derived session tokens, cannot address this challenge through incremental upgrades alone.

The platform is designed to discover, secure, and govern every identity within a modern enterprise, human and agentic alike. Its Secure Split Key (SSK) architecture removes the single point of failure in SAML and OIDC signing infrastructure, closing the class of attacks responsible for some of the largest identity breaches on record, including Golden SAML, adversary-in-the-middle exploits, session theft, and token replay. Rather than treating AI agents as service accounts, NewCore assigns them their own lifecycle, trust scoring, and revocation paths as first-class identities.

The platform also ships an Agentic Skill integration package for leading coding agents, including Claude Code, Codex, and Cursor, enabling secure access within enterprise trust environments. On the authentication side, VisualMFA replaces phishable factors with an out-of-band, visually verifiable exchange, while hardware-bound credentials anchored in TPM and Secure Enclave eliminate phishable methods entirely. A continuous discovery layer maps shadow accounts, orphaned credentials, and ungoverned agents that legacy platforms typically miss. Migration onto the platform is handled via an agent-driven coexistence model that preserves existing federations and policies, allowing a zero-downtime cutover.

The platform was engineered for enterprise environments where agentic identities can outnumber human ones by two orders of magnitude or more. NewCore measures its value not by uptime or provisioning speed, but by the volume of risk removed from the enterprise.

NewCore co-founder and CEO Zohar Alon said, “Identity is broken, and yet it has become the control plane of the modern enterprise. We built NewCore for the workforce that actually exists today, one of humans, machines, and agents, and we built it security-first from day one. The goal isn’t to manage identity better. It’s to remove categories of risk that the industry and our customers have lived with for far too long.”

Read the daily FinTech news

Copyright © 2026 FinTech Global

Enjoying the stories?

Subscribe to our daily FinTech newsletter and get the latest industry news & research

Investors

The following investor(s) were tagged in this article.