Tel Aviv-based Act Security, whose platform reduces the access surface across cloud infrastructure, emerges from stealth with a $40M Series A and a $20M seed
Context & Ripple Effects
Act Security’s launch adds a cloud-infrastructure access-surface specialist to a coverage set already spanning cross-cloud monitoring. Earlier, Native emerged to monitor security across cloud providers, framing Act’s approach as a more access-focused layer within the same broad cloud-security problem.
The adjacent coverage also traces a progression from securing SaaS applications to protecting nonhuman and third-party credentials: Astrix’s later funding focused on API keys, service accounts and secrets. Act’s financing gives it resources to develop and sell around the cloud-infrastructure portion of that access boundary.
First-order effects
- Act Security moves from stealth into the market with $60 million across seed and Series A financing, supporting product development and customer acquisition for its cloud access-surface platform.
- Cloud-infrastructure teams evaluating access controls gain another specialist vendor focused on reducing reachable access paths rather than solely monitoring them.
Second-order effects
- The launch sharpens overlap with vendors addressing cross-cloud security visibility, SaaS posture, and machine or third-party credentials, including the areas covered by Native, Adaptive Shield, and Astrix.
- Buyers may increasingly assess cloud-security tools by whether they can reduce standing access across infrastructure and identities, not only surface configuration or monitoring findings.
Third-order effects
- If these adjacent access-security categories continue converging, cloud security could organize more around a unified access boundary spanning infrastructure, SaaS, APIs, service accounts, and third-party integrations.
- The pattern suggests that action-level controls may become more central than passive visibility, though the corpus does not establish which product layer will become the primary control point.
The trend: Cloud security is shifting toward managing the expanding access surface across infrastructure, applications, and nonhuman credentials as a single operational security boundary.