Skip to main content
Pillar Security logo

Pillar Security

Securing the agentic workforce across the AI lifecycle.

ai-security#ai-security#ai-red-teaming#agent-security#guardrails
Claimed API Teams
Toolglade’s take

Pillar Security is an independent, seed-stage startup (roughly $9M raised, April 2025) with a notably strong analyst signal: Gartner named it a 2026 Cool Vendor in AI software security. Its combination of AI-BOM discovery, autonomous red teaming (RedGraph) and adaptive guardrails is well-aligned with where enterprise AI security is heading, especially around agents and MCP. Still, it is early-stage with a young platform, and pricing is entirely sales-led with no public figures, so validate fit and cost through a direct evaluation.

About Pillar Security

Pillar Security is an end-to-end platform for securing AI applications and agents. It builds a live AI-BOM mapping agents, models, prompts and MCP tools, runs autonomous adversarial testing via its RedGraph agent, and enforces adaptive, model-agnostic runtime guardrails. Founded in 2023 and backed by a $9M seed round, it is independent and early-stage but carries a strong signal as a 2026 Gartner Cool Vendor in AI software security.

Pillar Security provides a platform for securing AI applications and agents across their full lifecycle. It builds a live AI Bill of Materials (AI-BOM) that maps every AI asset -- agents, models, prompts, MCP tools, skills, datasets and configurations -- from source code, endpoints and CI/CD. This discovery layer gives security teams visibility into the sprawling and fast-changing surface introduced by generative and agentic AI. On top of inventory, Pillar offers two headline capabilities. RedGraph is an autonomous adversarial agent that maps the attack surface and runs multi-step, dynamic attack scenarios -- chaining tool calls and performing reconnaissance the way a real attacker would -- to find weaknesses in agents and their tools, MCP servers and permissions. Complementing this, Pillar's runtime guardrails are model-agnostic and application-centric, evolving from telemetry, red-teaming insights and threat intelligence rather than fixed rules, and enforcing approved-model lists, MCP allowlists and usage policies. Pillar was founded in October 2023 by Dor Sarig and Ziv Karliner and operates from Tel Aviv and New York. It is independent and venture-backed, having raised a $9M seed round led by Shield Capital (with Golden Ventures, Ground Up Ventures and angels) in April 2025. It was recognized by Gartner as a 2026 Cool Vendor in AI software security, citing its RedGraph offensive testing, dynamic runtime guardrails and SAIL framework. Buyers should weigh that positive analyst signal against the reality that it is still an early-stage company.

TL;DR

Pillar Security is an end-to-end AI application and agent security platform. It builds a live AI-BOM, runs autonomous red teaming via RedGraph, and enforces adaptive runtime guardrails, with a strong focus on agents and MCP. Founded in 2023 and backed by a $9M seed round (April 2025), it is independent and early-stage. Gartner named it a 2026 Cool Vendor in AI software security, a meaningful signal for a young company.

Company overview

Pillar Security was founded in October 2023 by Dor Sarig and Ziv Karliner and operates from Tel Aviv and New York. It focuses on securing AI applications and agents across the full development-to-runtime lifecycle.

It is independent and venture-backed, having raised a $9M seed round led by Shield Capital (with Golden Ventures, Ground Up Ventures and angels) in April 2025. Gartner recognized Pillar as a 2026 Cool Vendor in AI software security.

Product features

Pillar builds a live AI-BOM that maps agents, models, prompts, MCP tools, skills, datasets and configurations from source code, endpoints and CI/CD. Its RedGraph agent autonomously maps the attack surface and runs multi-step, dynamic attack scenarios against agents and their tools, MCP servers and permissions.

Complementing offensive testing, Pillar's runtime guardrails are model-agnostic and application-centric, evolving from telemetry, red-teaming insights and threat intelligence rather than fixed rules. They enforce approved-model lists, MCP allowlists and AI usage policies across the lifecycle.

Target market

Organizations building, deploying and operating AI applications and agents -- especially those adopting MCP-based tooling -- that need discovery, testing and runtime protection in one platform.

Buyer personas

End users

AI/ML engineers, AppSec engineers and red teamers securing agents and applications.

Buyers

CISOs and heads of product/application security.

Key influencers

Platform engineering leads, AI governance owners and developer-security champions.

Ideal customer profile

A technology-forward enterprise actively building AI agents and adopting MCP, needing unified AI asset visibility, red teaming and runtime guardrails.

Funding & performance

Approximately $9M in disclosed funding: a $9M seed round led by Shield Capital, with Golden Ventures, Ground Up Ventures and strategic angels, announced April 2025.

Pros & cons

Pros

  • Covers discovery, testing and runtime protection end to end
  • RedGraph autonomous red teaming targets agentic attack chains
  • Model-agnostic, adaptive guardrails rather than static rules
  • Strong focus on MCP and agent security
  • Recognized as a 2026 Gartner Cool Vendor
  • Backed by security-focused investors

Cons

  • Early-stage company with a young product
  • No public pricing or free tier
  • Cloud-delivered; no self-hosted option advertised
  • Broad scope may outpace a small team's depth in each area
  • Rapidly evolving category with many competitors
  • Requires deep integration into code and CI/CD

Pricing plans

Enterprise
Custom
  • AI-BOM asset inventory
  • RedGraph autonomous red teaming
  • Adaptive runtime guardrails
  • MCP and agent security
  • Integrations with code and CI/CD

Key features

API
Team collaboration
Integrations
GitHub, CI/CD pipelines, MCP servers, LLM providers, Slack
Input types
text, code
Output types
text
Best For
AI red teaming, securing AI agents and MCP tools, runtime guardrails, AI asset inventory

Compare key features

View all alternatives →
Feature
Pillar Security
Lasso Security
HiddenLayer
Pricing
Paid
Paid
Paid
Free plan
No
No
No
Free trial
No
No
No
API
Yes
Yes
Yes
Self-hosted
No
No
Yes
Team support
Yes
Yes
Yes

Frequently asked questions

What makes Pillar different?+

It combines AI asset discovery (AI-BOM), autonomous red teaming (RedGraph) and adaptive runtime guardrails in one platform, with a strong focus on agents and MCP tools.

Is Pillar Security independent?+

Yes. As of August 2026 it remains independent and venture-backed, having raised a $9M seed round in April 2025 led by Shield Capital.

What is RedGraph?+

RedGraph is Pillar's autonomous adversarial agent that maps an AI system's attack surface and runs multi-step attacks, chaining tool and MCP calls the way a real attacker would.

Does Pillar have analyst recognition?+

Yes. Gartner named Pillar a 2026 Cool Vendor in AI software security, citing RedGraph, its runtime guardrails and its SAIL framework.

How much does Pillar cost?+

Pillar does not publish pricing. Contact the vendor for a quote based on your environment and required modules.

Reviews (0)

Write a review

Pick a rating
Loading reviews…
Compare

Compare Pillar Security with other AI tools

Side-by-side pages for pricing, features, and best-fit use cases.

All comparisons →

Similar tools you may like