Breaking
DEDeath from malaria in Frankfurt am MainCNShocking news of unethical murder in Fengshan, Kaohsiung: 19-year-old Sun was detained for allegedly stabbing his grandmother more than 20 times with a knifeRUIn Moldova, the work of the Palanca checkpoint on the border with Ukraine was suspendedRUIn the center of Moscow, a man fell on the canopy of the entrance to a residential buildingCNZhang Tingwei, Secretary of the Party Leadership Group and Director of the Mianyang Municipal Health Commission of Sichuan Province, is subject to disciplinary review and supervisory investigationJPThe second Takaichi reshuffled cabinet is inaugurated, and the first member involved in the slush fund scandal is inducted into the cabinet.FRRadio France: the strike maintained despite a proposal from managementRUUS Denies Visa to Palestinian President Abbas for UN General AssemblyTRStatements from TRNC President Erhürman after the meeting with HristodulidisRUKyiv is preparing for a possible meeting between Zelensky and Trump on the sidelines of the UN General AssemblyDEDeath from malaria in Frankfurt am MainCNShocking news of unethical murder in Fengshan, Kaohsiung: 19-year-old Sun was detained for allegedly stabbing his grandmother more than 20 times with a knifeRUIn Moldova, the work of the Palanca checkpoint on the border with Ukraine was suspendedRUIn the center of Moscow, a man fell on the canopy of the entrance to a residential buildingCNZhang Tingwei, Secretary of the Party Leadership Group and Director of the Mianyang Municipal Health Commission of Sichuan Province, is subject to disciplinary review and supervisory investigationJPThe second Takaichi reshuffled cabinet is inaugurated, and the first member involved in the slush fund scandal is inducted into the cabinet.FRRadio France: the strike maintained despite a proposal from managementRUUS Denies Visa to Palestinian President Abbas for UN General AssemblyTRStatements from TRNC President Erhürman after the meeting with HristodulidisRUKyiv is preparing for a possible meeting between Zelensky and Trump on the sidelines of the UN General Assembly
BackComp AI raises $34 million Series A to automate security and compliance
Comp AI raises $34 million Series A to automate security and compliance
Tech
TechCrunch2 hours agoTech3 min readUnited States

Comp AI raises $34 million Series A to automate security and compliance

Cybersecurity and compliance startup Comp AI secures $34 million in Series A funding led by Roo Capital and Grand Ventures.

Quick Look

Cybersecurity and compliance startup Comp AI has raised a $34 million Series A round led by Roo Capital and Grand Ventures to expand its AI-powered compliance and security automation platform.

AI-generated summary

Why It Matters

Founders Lewis Carhart, Claudio Fuentes, and Mariano Fuentes previously built workflow platform LeapAI before founding Comp AI.

Font size

Comp AI, a cybersecurity and compliance startup, announced that it has raised a $34 million Series A round on Thursday. The round was led by Roo Capital and Grand Ventures.

The company was founded last January by Lewis Carhart (CEO), Claudio Fuentes (COO), and his brother, Mariano Fuentes (CTO). Claudio and Mariano had been building startups together for nearly a decade, met Carhart a few years ago, and invited him to join LeapAI, a workflow platform they were building. Claudio was the CEO and co-founder, while Carhart served as head of growth and Mariano was a senior full-stack engineer. The startup ran for about two years, growing to more than a million users, but they eventually decided to shut it down after not finding a “sticky enough use case to warrant continued investment.”

That experience taught them a lot, though, they recalled. For one, they learned how to build with LLMs and the importance of finding a specific use case for a product. They also learned how tedious the SOC 2 compliance process was, especially as they tried to scale the platform to work with bigger enterprise clients.

“It’s a very obscure process,” Claudio said. “It took us a couple of months of doing things by hand, and the whole time it meant taking our eyes off building the product.”

Alas, a startup idea was born. This time, Carhart would take the lead as CEO because it was his idea, the trio said. Comp AI says it’s building an agentic platform to tackle tedious security and compliance work; that means having AI agents help write company security policies or collect evidence for security audits. The platform also continuously monitors whether a company is meeting compliance controls. Comp AI is part of the next generation of cybersecurity startups emerging to help companies run more efficiently in the agentic era.

“For a lot of software companies, security and compliance are directly tied to revenue,” Carhart told TechCrunch, citing, for example, how a customer might ask a startup for a SOC 2 report before closing a deal. “What Comp AI automates is much of the work companies traditionally have to do around that process.”

The software helps companies meet and maintain those security requirements, he continued, but doesn’t replace actual independent audit review. It also doesn’t replace humans, the trio said. Human workers help onboard the AI, support controls, and maintain the agentic workflow.

“An agent might draft a policy, for example, but a person still reviews and approves it,” Carhart said. “As agents take on more consequential actions over time, we believe the level of safeguards and human approval should increase accordingly.”

The company also offers AI-powered penetration testing, “where the platform proactively tests codebases and infrastructures for vulnerabilities,” Carhart said. The team hopes this Series A capital will help with product expansion. It has raised $37.5 million in funding to date.

There has been much conversation about the new wave of security risks in the agentic era (and with it, a wave of AI security and compliance companies like Vanta and Drata). Carhart said the rapid adoption and experimentation companies are doing with AI is creating a need for continuous — and perhaps autonomous — security and compliance platforms.

“Imagine a company completes its SOC 2 audit and two weeks later deploys a new AI agent that can access customer data, change permissions across an internal system, or introduce a new vulnerability through code deployment,” he said. “The audit didn’t become invalid; it simply wasn’t designed to tell you in real time what changed afterward.”

As companies adopt more AI, Mariano said, they also need to show what an agent accessed, what it tried to do, and whether it stayed within the boundaries given. Comp AI is tackling this by starting with permissions and accountability, he continued. “We’re building toward a security layer that can monitor and validate those kinds of risk more continuously as these systems evolve.”

What to Watch

AI outlook — possibilities, not facts

  • Comp AI will use Series A capital for product expansion.

    Very likely · Within months

Open Questions

  • What are the specific enterprise clients using Comp AI currently?
  • How does Comp AI plan to scale its agentic workforce oversight?

Related Topics

This article was originally published by TechCrunch.

Related Stories

Al Gore Says AI Data Center Emissions Are Not the Main Concern, Warns of Deeper AI Risks
Developing·

Al Gore Says AI Data Center Emissions Are Not the Main Concern, Warns of Deeper AI Risks

Al Gore argues that while AI data center emissions draw public concern, they are minor compared to other sources like air conditioning and landfills. He emphasizes taking seriously warnings from AI industry leaders about risks such as job loss, automation threats, and deceptive AI behavior, while supporting renewable energy solutions and U.S.-China cooperation on climate and AI regulation.

TechCrunch
2 min read
Anthropic and OpenAI Propose Embedding Third-Party Evaluators in Frontier AI Companies
Developing·

Anthropic and OpenAI Propose Embedding Third-Party Evaluators in Frontier AI Companies

Anthropic CEO Dario Amodei and OpenAI CEO Sam Altman have proposed embedding independent third-party evaluators inside frontier AI companies to assess model alignment and safety practices, with evaluators granted access to training checkpoints and internal processes. While welcomed by researchers, concerns remain about true independence, access limitations, and the need for regulatory backing to prevent companies from retaining control over evaluations.

TechCrunch
2 min read
More on this topiccomp ai