Horizon3 Raises $250M Series E to Scale AI-Native Cybersecurity
Horizon3 raised a $250M Series E at a valuation above $2B on August 3, 2026. The round was co-led by existing investors NightDragon and NEA, and the company said it was oversubscribed. The valuation is more than 3 times the $650M figure Horizon3 reported for its Series D just over a year earlier.
The financing is not simply a larger wager on cybersecurity spending. Horizon3 is building around a sharper operating question: can an organization prove which weaknesses an attacker can exploit, fix those attack paths, and verify that the fix held? Its NodeZero platform uses autonomous penetration testing to answer that question inside production environments.
Horizon3 reports that NodeZero has completed 310,000 production-safe tests, protects more than 7,000 organizations, and that annual recurring revenue grew 120% year over year. Those are company-reported figures, but together they show why investors are treating continuous security validation as an operating category rather than a periodic consulting exercise.
What Happened
NightDragon and NEA co-led the Series E. The syndicate added Acrew Capital, Blue Cloud Ventures, Demeter Group, EDBI, PSG, SAIC, and Sapphire Ventures as new investors, while Craft Ventures, Prosperity7 Ventures, Qualcomm Ventures, Ridge Ventures, and SignalFire returned. NightDragon founder and CEO Dave DeWalt and Managing Director Morgan Kyauk will join Horizon3's board.
The round follows a $100M Series D announced in June 2025 and a $40M Series C announced in August 2023. Horizon3 said it had raised $78.5M in total when it announced the Series C, which means disclosed-round arithmetic supports at least $428.5M through the Series E. A separate Prosperity7 Ventures investment announced in January 2026 did not disclose an amount, so a precise cumulative funding total is not publicly verifiable.
The Series E also formalizes a rapid valuation increase. Horizon3 says the new valuation exceeds $2B, up from $650M at the Series D. That does not guarantee the eventual outcome, but it does show how quickly investor conviction can reprice a security company once usage, growth, and a clear product thesis begin reinforcing one another.
Why NodeZero Matters
NodeZero is designed to do more than identify vulnerabilities. It autonomously tests production environments, chains together weaknesses across credentials, identity, cloud, endpoints, and infrastructure, and shows defenders which paths can lead to meaningful compromise. The platform then guides remediation and retests the environment to verify that the attack path has been closed.
That difference sounds technical, but the operating logic is straightforward. A vulnerability scan can produce a long list of possible problems, while an exploit path shows which combination of weaknesses can actually create meaningful damage. For a security leader deciding what to fix first, evidence of exploitability is often more useful than another severity score floating to the top of a queue.
Horizon3 also argues that this model becomes more valuable as AI reduces the time needed to discover and weaponize vulnerabilities. The company is not alone in anticipating faster attack cycles, but its pitch is unusually measurable: continuously attack your own defenses before an adversary does, remediate what matters, and prove the change worked. That is a stronger claim than simply saying a control was installed or a compliance box was checked.
Where the $250M Will Go
Horizon3 plans to deploy the capital across go-to-market expansion, international growth, and product development. The company said it will expand sales, marketing, and channel operations for enterprise, mid-market, and federal customers, enter Singapore and Australia, and deepen its presence across Europe, the Middle East, and Africa.
On the product side, Horizon3 plans to build a continuous learning loop between AI attackers and AI defenders. The roadmap includes autonomous blue-team agents that can remediate findings generated by NodeZero tests. These are forward-looking plans, but they explain why the round is larger than a conventional expansion raise: Horizon3 wants to connect offensive validation with defensive action.
The geographic strategy matters as well. Cybersecurity demand is global, but regulated buyers, government agencies, and critical-infrastructure operators often require local market coverage, channel relationships, and compliance expertise. International expansion therefore adds distribution complexity at the same time the company is broadening its product, making execution discipline as important as the size of the investment.
The Team and Investor Signal
Horizon3 was founded in late 2019 by a team drawn from U.S. Special Operations, national security, and enterprise technology. Co-founder and CEO Snehal Antani previously held technology leadership roles at JSOC, Splunk, and GE Capital. Co-founder Anthony Pillitiere remains part of the founding team and is currently listed by the company as Head of Community Engagement.
The investors bring more than capital to the story. NightDragon focuses on growth-stage cybersecurity, safety, security, and privacy companies, while NEA has backed Horizon3 through multiple rounds. Adding Dave DeWalt and Morgan Kyauk to the board gives the company experienced security operators as it attempts to turn technical traction into a broader global platform.
The more useful takeaway is operational. Horizon3 did not reach this round by selling a vague promise that AI would make security smarter. It built a product around a repeatable workflow: attack, fix, verify, then attached company-reported growth metrics to that process.
What This Signals for Cybersecurity
The cybersecurity industry has spent years adding tools, alerts, dashboards, and risk scores. More software did not automatically create greater certainty. Horizon3's rise suggests buyers and investors are increasingly interested in systems that demonstrate whether controls work against real attack paths, especially as infrastructure becomes more distributed and attackers gain better automation.
For CISOs, the shift is from assumed protection to continuously verified resilience. For vendors, it raises the bar: detecting a possible problem is useful, but proving exploitability, guiding remediation, and validating the result creates a tighter operational loop. For investors, the $250M round suggests that loop can support a large category if Horizon3 continues converting technical evidence into durable customer adoption.
The next test is execution. Horizon3 must scale internationally, maintain production safety, broaden autonomous remediation, and preserve the trust required to operate inside sensitive environments. If it can do that, this Series E may be remembered less for the $2B valuation than for marking the point at which continuous validation moved from a specialist practice toward a default security discipline.
Cybersecurity funding, last 30 days
DevCuration's funding database tracked 18 Cybersecurity rounds totaling $1.5B in disclosed capital over the past 30 days. Recent deals we covered:
- Mate Security Raises $35M Series A for Its AI-Native SOCSeries A · $35M · Aug 4
- Rewind Lands H.I.G. Investment for SaaS ResilienceStrategic · Aug 2
- Discern Security Raises $13M Series A for Agentic SecuritySeries A · $13M · Aug 1
- Spur Intelligence Lands $200M From Insight Partners$200M · Aug 1
- ThreatLocker Raises $190M Series F to Expand Zero Trust SecuritySeries F · $190M · Jul 31
Frequently Asked Questions
Why does Horizon3's Series E matter for cybersecurity buyers?
The round gives Horizon3 more capacity to scale a model built around continuous validation of exploitable attack paths. For buyers, the important signal is not the valuation alone but the demand for evidence that defenses work in production.
What does NodeZero do?
NodeZero autonomously tests production environments, identifies exploitable attack paths, guides remediation, and verifies fixes. Horizon3 positions it as a way to prioritize real exploitability instead of relying only on vulnerability counts or severity scores.
How will Horizon3 use the $250M?
Horizon3 plans to expand sales, marketing, and channel operations, enter Singapore and Australia, deepen EMEA coverage, and accelerate product development. The roadmap includes learning loops between AI attackers and AI defenders and planned autonomous remediation agents.
How much funding has Horizon3 raised in total?
Primary-source disclosed-round arithmetic supports at least $428.5M through the Series E. The exact all-in total is not verifiable because Horizon3 announced a separate Prosperity7 Ventures investment in January 2026 without disclosing its amount.
What should operators watch next?
Operators should watch whether Horizon3 can scale internationally while preserving production safety and customer trust. Product progress on autonomous remediation will also show whether the company can connect offensive validation directly to defensive action.
Where the Money Moved
The intelligence briefing of the innovation economy. Funding, M&A, debt and fund closes, read as market signal rather than deal announcements.
Subscribe to Where the Money Moved








