S

Sweet Security

Cloud-native CNAPP with runtime protection

Channel Account Manager

Full-TimeUpdated on 10/2/2026
No salary listed
Senior
Remote in USA
Remote

About the job

Requirements
  • At least 5 years of experience in channel sales, partnerships, or business development within cybersecurity, cloud security, or SaaS.
  • A proven track record of building and managing successful partner relationships.
  • Direct experience working with Value Added Resellers (VARs), especially managing partnerships with GuidePoint.
  • A strong understanding of partner ecosystems, go-to-market strategies, and sales processes.
  • Experience with CRM and partner management tools.
Responsibilities
  • Develop and manage relationships with key channel partners to drive revenue growth.
  • Identify, recruit, and onboard new partners to expand the company's market reach.
  • Collaborate with partners to create joint business plans and ensure alignment with company objectives.
  • Provide training, enablement, and ongoing support to partners to maximize their success.
  • Track and analyze partner performance, providing insights and recommendations for improvement.
  • Work closely with sales, marketing, and product teams to ensure seamless execution of partner strategies.
  • Represent the company at industry events, conferences, and partner meetings.
Desired Qualifications
  • Excellent communication and negotiation skills, with the ability to influence stakeholders.
  • Be self-motivated and results-driven, and able to thrive in a fast-paced environment.

About the company

Sweet Security provides CNAPP cloud security focused on runtime protection. Its platform unifies detection, response, discovery, and prevention for cloud workloads, applications, and infrastructure via a lightweight eBPF sensor deployable in under five minutes, delivering real-time visibility and behavioral analysis against a customer-specific baseline. By contextualizing deviations with established attack techniques, it reduces false positives and speeds incident response, while prioritizing exploitable risks in vulnerability management and addressing non-human identities in complex cloud environments. The company targets large cloud-first customers in banking, insurance, and crypto, and aims to scale its U.S. presence and automate cloud security workflows.

Company Size

51-200

Company Stage

Series A

Total Funding

$45M

Headquarters

Tel Aviv-Yafo, Israel

Founded

2023

Get referred to Sweet Security

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • July 29, 2026 Agentic AI Blocking expands Sweet into enterprise AI security.
  • June 10, 2026 FedRAMP Moderate pursuit opens U.S. federal buyers with Coalfire.
  • November 12, 2025 Series B lifted total funding to $125 million.

What critics are saying

  • Wiz, CrowdStrike, and Palo Alto Networks bundle CNAPP and AI security suites.
  • FedRAMP Moderate approval usually takes 8–24 months, delaying federal revenue until 2027.
  • A single high-profile production outage during blocking would make Sweet unadoptable.

What makes Sweet Security unique

  • Sweet blocks cloud and AI actions live, not after alerts.
  • eBPF and Windows sensors build customer-specific behavioral baselines across production workloads.
  • FedRAMP pursuit and AI blocking unify cloud, identity, and agent protection.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Company Equity

Growth & Insights and Company News

Headcount

6 month growth

↑ 80%

1 year growth

↑ 80%

2 year growth

↑ 78%
GlobeNewswire
Jul 29th, 2026
Sweet Security brings autonomous protection to the AI enterprise with new Blocking capabilities.

Sweet Security brings autonomous protection to the AI enterprise with new Blocking capabilities. Catches rogue AI agents - and stops them in live production before they cause damage. July 29, 2026 09:00 ET | Source: Sweet Security LAS VEGAS, July 29, 2026 (GLOBE NEWSWIRE) - Sweet Security, the proactive runtime enforcement company for cloud and AI, today announced its further expansion into AI security with Agentic AI Blocking. Sweet now blocks rogue agent behavior in real time - extending Sweet's runtime enforcement from the cloud to the AI agents that are acting alongside it. Eighty percent of the world's businesses are already AI enterprises, and their agents take on identities, reach sensitive data, and act on their own. Yet no one verifies that the behavior an agent carries out is the behavior that was intended. Every other security tool detects and alerts; by the time a team reads the alert, the agent has already acted. "AI has collapsed the cost of attack, and it has put autonomous software inside the enterprise. Someone has to decide, in the moment, what an agent is allowed to do," said Dror Kashti, CEO and co-founder of Sweet Security. "When an agent reaches for data it shouldn't touch, Sweet stops the action red-handed and provides the team one line: here is what we found, and here is how we stopped it. Nothing bad happened, and nothing is waiting in a queue. That is what lets an enterprise adopt AI with confidence." Among Sweet's new Agentic AI Blocking capabilities: * Terminates unauthorized tool calls and sessions at runtime * Stops secrets, PII, and sensitive data from leaving through an agent * Blocks prompt injections live, before they steer an agent off course What empowers Sweet customers to use its autonomous protection is its confident runtime knowledge. The Sweet Learning Loop continuously Attacks, Fixes, and Defends, leveraging Sweet's runtime reasoning layer that analyzes over one billion runtime events daily to learn what every application and agent is intended to do. Because Sweet holds each one to a simple bar, "do exactly what your creator intended and nothing more," it can enforce decisively without breaking live production. The market is converging on the same conclusion. Leading industry analysts now describe runtime inspection and enforcement as a mandatory capability for securing AI agents, and expect the winners in agent security to be products that automatically prevent risky agent behavior rather than surfacing more dashboards and alerts. Sweet goes further, enforcing across cloud and AI together in a single platform. Sweet already enforces protection at extreme scale, including at Zoomd, where the platform protects tens of thousands of cloud applications in an environment where disruption is measured in market impact. "Sweet gave us the confidence to adopt AI across the business," said Niv Sharoni, CTO at Zoomd. "With most tools, you find out about bad behavior in a report after the damage is done. With Sweet, it's blocked in runtime, the moment it happens. That's the difference between monitoring risk and actually removing it." About Sweet Security Sweet Security delivers proactive runtime enforcement for cloud and AI. While the rest of the industry detects and alerts, Sweet blocks bad behavior before anything bad happens, where intent turns into action: in runtime. Through the Sweet Learning Loop, organizations continuously Attack, Fix, and Defend, driving every application and AI agent toward maximal immunity. Founded in 2023 by veterans of the IDF's most elite cyber units and backed by $120M from Evolution Equity Partners, Munich Re Ventures, Glilot Capital Partners, and Key1 Capital, Sweet protects the world's most demanding enterprises. Learn more at www.sweet.security. Noa Glumcher Sweet Security, CMO [email protected]

Business Insider
Jul 29th, 2026
Sweet Security brings autonomous protection to the AI enterprise with new Blocking capabilities.

Sweet Security brings autonomous protection to the AI enterprise with new Blocking capabilities. Jul. 29, 2026, 07:01 AM Las Vegas, USA, July 29th, 2026, CyberNewswire Catches rogue AI agents - and stops them in live production before they cause damage Sweet Security, the proactive runtime enforcement company for cloud and AI, today announced its further expansion into AI security with Agentic AI Blocking. Sweet now blocks rogue agent behavior in real time - extending Sweet's runtime enforcement from the cloud to the AI agents that are acting alongside it. Eighty percent of the world's businesses are already AI enterprises, and their agents take on identities, reach sensitive data, and act on their own. Yet no one verifies that the behavior an agent carries out is the behavior that was intended. Every other security tool detects and alerts; by the time a team reads the alert, the agent has already acted. "AI has collapsed the cost of attack, and it has put autonomous software inside the enterprise. Someone has to decide, in the moment, what an agent is allowed to do," said Dror Kashti, CEO and co-founder of Sweet Security. "When an agent reaches for data it shouldn't touch, Sweet stops the action red-handed and provides the team one line: here is what we found, and here is how we stopped it. Nothing bad happened, and nothing is waiting in a queue. That is what lets an enterprise adopt AI with confidence." Among Sweet's new Agentic AI Blocking capabilities: * Terminates unauthorized tool calls and sessions at runtime * Stops secrets, PII, and sensitive data from leaving through an agent * Blocks prompt injections live, before they steer an agent off course What empowers Sweet customers to use its autonomous protection is its confident runtime knowledge. The Sweet Learning Loop continuously Attacks, Fixes, and Defends, leveraging Sweet's runtime reasoning layer that analyzes over one billion runtime events daily to learn what every application and agent is intended to do. Because Sweet holds each one to a simple bar, "do exactly what your creator intended and nothing more," it can enforce decisively without breaking live production. The market is converging on the same conclusion. Leading industry analysts now describe runtime inspection and enforcement as a mandatory capability for securing AI agents, and expect the winners in agent security to be products that automatically prevent risky agent behavior rather than surfacing more dashboards and alerts. Sweet goes further, enforcing across cloud and AI together in a single platform. Sweet already enforces protection at extreme scale, including at Zoomd, where the platform protects tens of thousands of cloud applications in an environment where disruption is measured in market impact. "Sweet gave us the confidence to adopt AI across the business," said Niv Sharoni, CTO at Zoomd. "With most tools, you find out about bad behavior in a report after the damage is done. With Sweet, it's blocked in runtime, the moment it happens. That's the difference between monitoring risk and actually removing it." About Sweet Security Sweet Security delivers proactive runtime enforcement for cloud and AI. While the rest of the industry detects and alerts, Sweet blocks bad behavior before anything bad happens, where intent turns into action: in runtime. Through the Sweet Learning Loop, organizations continuously Attack, Fix, and Defend, driving every application and AI agent toward maximal immunity. Founded in 2023 by veterans of the IDF's most elite cyber units and backed by $120M from Evolution Equity Partners, Munich Re Ventures, Glilot Capital Partners, and Key1 Capital, Sweet protects the world's most demanding enterprises. Learn more at www.sweet.security. Contact. Noa Glumcher Sweet Security, CMO [email protected] Sponsored Financial Content

Sweet Security
May 13th, 2026
Sweet enables organizations to stay ahead of ai-speed attacks with Sweet Attack.

Sweet enables organizations to stay ahead of ai-speed attacks with Sweet Attack. May 13, 2026 Today Sweet Security Ltd. is thrilled to introduce Sweet Attack, an AI red team agent that continuously identifies exploitable risk before attackers do, using the runtime intelligence attackers wish they had. Built on the runtime context Sweet has indexed since day one, Sweet Attack analyzes how vulnerabilities, identities, APIs, permissions, infrastructure, and real cloud and AI application behavior interact inside production environments. It identifies how those conditions combine into viable attack paths attackers can exploit today The problem: security teams need more than visibility - and AI made it urgent. Organizations today can map assets, monitor identities, surface vulnerabilities, and collect telemetry across their environments in remarkable detail. Yet breaches are rarely caused by a single catastrophic vulnerability. More often, compromise emerges from how multiple conditions interact inside production environments. This challenge becomes even harder in modern cloud and AI environments, where identities, APIs, infrastructure, models, and applications are deeply interconnected. A prompt injection attack inside an AI agent, combined with excessive permissions, access to internal systems, or exploitable runtime conditions across Linux and Windows workloads, can allow attackers to expose sensitive data, move laterally across systems, or trigger privileged actions. Individually, those conditions may appear low risk. Together, they form a viable attack path. This is where many security teams lose confidence. Most security tools still evaluate findings independently, relying on severity scores and posture assessments to estimate risk. Runtime visibility alone improves that picture, but it's incomplete, and still leaves teams reacting after attackers have already identified viable attack paths and begun moving through the environment. As Mythos highlights how quickly attackers can operate with AI assistance, this problem becomes harder to ignore. What once required weeks of reconnaissance, chaining, and experimentation can increasingly happen in minutes. Security teams no longer need only visibility across production environments - they need the ability to proactively validate which attack paths are exploitable, how attackers would move through their environments, and where compromise can be stopped before attackers act. "While we always had visibility into our vulnerabilities, we lacked the necessary context for consistent and effective prioritization. Our teams often struggled to balance endless remediations with product deadlines because validating every attack path was impossible. Sweet Attack changed this by quickly surfacing verified, exploitable paths. This shifted our focus from simply 'remediating vulnerabilities' to 'preventing breaches'. In a world where AI accelerates the threat landscape, discovering and remediating these attack paths before attackers exploit them matters most." - Birat Niraula, Chief Information Security Officer, Auctane Sweet Attack enables you to stay ahead of attackers. Sweet Attack continuously operates inside production environments to identify how attackers would move before those paths are exploited. It identifies openings across vulnerabilities, exposed APIs, permissive identities, application behavior, and infrastructure configurations, then validates whether those conditions can be chained into viable attack paths. Instead of forcing teams to manually correlate findings and estimate impact, Sweet Attack continuously validates which paths are reachable today, where meaningful risk exists, and which remediation actions matter most. Security teams spend less time investigating disconnected findings, prioritize the risks most likely to lead to compromise, and respond earlier with greater confidence. "Cast & Crew has engaged tier-one offensive security firms for years. Sweet Attack surfaced exploitable attack paths in three days that prior engagements had not identified, and paired the findings with a concrete, prioritized remediation plan we were able to action immediately. The combination of depth and operational usability is what set the engagement apart." - Tal Hornstein, Chief Information Security Officer, Cast & Crew Entertainment Services How Sweet Attack works. Even the most capable attackers spend significant time trying to understand the environment itself. They probe exposed services, map identities, test application behavior, and search for ways to move laterally before they can meaningfully progress toward impact. Sweet Attack starts with an advantage. Because it operates on the runtime intelligence already indexed by the Sweet platform, it begins with the context attackers would otherwise have to assemble through reconnaissance and experimentation. This includes runtime topology, Layer 7 exposure, deployed source code, identity relationships, and live application behavior. Using this context, Sweet Attack identifies openings across vulnerabilities, exposed APIs, identity relationships, permissive scopes, and unauthenticated endpoints, then validates whether those conditions can be chained into viable attack paths. Rather than theoretically simulating attacks, Sweet Attack evaluates exploitability incrementally inside production environments. When a vulnerability, exposed API, or unsafe application behavior is identified, Sweet Attack evaluates whether access can expand across applications, infrastructure, identities, and data layers. * If a path cannot be exercised, it is abandoned. * If access can expand, Sweet Attack continues validating how compromise could progress. This incremental approach mirrors how real attackers operate while helping organizations avoid the assumptions and blind exploration traditional tooling often relies on. Operating with full runtime context, Sweet Attack helps organizations focus on the paths that are reachable, relevant, and capable of leading to compromise. As attack paths are validated, Sweet Attack generates structured, audit-ready reports detailing the paths explored, actions taken, runtime conditions observed, and outcomes validated, giving teams a clear understanding of what is exploitable and where remediation matters most. The next phase of cloud security has already begun. Mythos did not create the problem facing security teams today - it exposed how quickly the gap between attackers and defenders is accelerating. As attackers become faster and more adaptive, organizations can no longer depend on delayed investigation and reactive workflows. Security teams need the ability to identify how compromise could occur inside their environments before attackers exploit those paths. The organizations that adapt successfully will not be the ones with the most findings or dashboards. They will be the ones capable of validating exploitability earlier, understanding how attackers would move through their environments, and prioritizing remediation before compromise occurs. The next phase of cloud security is not more visibility - it is the ability to act before attackers do. Organizations need systems that proactively validate exploitability inside production environments, helping security teams focus on the risks that matter most, reduce time spent investigating disconnected findings, and respond earlier with greater confidence. That is what Sweet Attack delivers. "For two years the industry has been bracing for an attacker class moving at AI speed - with nation-state tooling and live knowledge of every exploitable seam. Mythos forced everyone to put a number on the gap. We can. Sweet Attack doesn't model the threat - it safely executes it against the customer's actual production environment and reports back what worked. The myth is that defenders can't keep up with attack speed. Sweet Attack debunks it." - Dror Kashti, CEO and Co-Founder, Sweet Security Experience Sweet Attack. Ready to see how attackers would move through your environment? Schedule an assesment and see how Sweet Attack identifies exploitable paths, validates real-world compromise, and helps security teams stop attacks before they happen. Share the Sweetness Sweet Security is redefining enterprise cloud protection. As the leading provider of Runtime CNAPP and AI Security solutions, Sweet unifies runtime context with advanced AI intelligence to protect the modern enterprise. Stay updated

FinTech Global
Nov 13th, 2025
Cloud and AI protector Sweet Security bags $75m Series B

Cloud and AI protector Sweet Security bags $75m Series B. Sweet Security has raised $75m in a Series B funding round led by Evolution Equity Partners, with additional backing from Munich Re Ventures, Glilot Capital Partners, and Key1 Capital. The latest investment brings the company's total funding to $120m. The fresh capital will support Sweet Security's rapid global expansion and continued product innovation as demand rises among enterprises seeking real-time protection for cloud and AI environments. The company also unveiled new AI security capabilities designed to protect models, agents, and the entire AI lifecycle, reinforcing its position in the growing runtime CNAPP and AI security sectors. Founded to address the evolving challenges of cloud security, Sweet Security's platform offers unified runtime protection that helps organisations detect, prevent, and respond to complex attacks in real time. As the CNAPP market shifts towards runtime-first security, Sweet has quickly become a preferred choice among global enterprises, replacing older vendors and reshaping how production systems are secured. The past year has been one of exceptional growth for the company, with annual recurring revenue increasing sixfold and enterprise clients multiplying tenfold, including multiple Fortune 1000 firms. Sweet's innovation has also been recognised through a newly granted U.S. patent covering methods to train large language models (LLMs) to detect anomalous log sessions - a breakthrough that cuts noise and identifies sophisticated, multi-step threats missed by conventional tools. Evolution Equity Partners founder and managing partner Richard Seewald said, "Sweet Security stands out in one of the most competitive segments of cybersecurity. The company's ability to combine real-time cloud protection with AI-powered intelligence is unlike anything else in the market - redefining how enterprises secure the modern cloud and go about securing their AI environments." As organisations integrate agentic AI into their operations, new security challenges are emerging, from hidden vulnerabilities to novel attack vectors. To address these risks, Sweet has launched its AI Security Platform (AISP), enabling AI teams to map all models and agents, detect misconfigurations, and monitor activity in real time. The platform empowers businesses to enforce guardrails, manage risk exposure, and maintain development speed while safeguarding sensitive systems. Sweet Security co-founder and CEO Dror Kashti said, "No one else approaches runtime cloud and AI protection the way we do. Cloud attacks no longer follow predictable patterns - they evolve dynamically, just like the AI systems enterprises are now building. Protecting those environments demands real-time understanding of how models, agents, and workloads behave - not static snapshots of configurations." James Berthoty of Latio Tech added, "Sweet Security has built a leading runtime cloud security offering, extending robust protection across cloud, data, workloads, and AI. This enables teams to secure both traditional and AI applications running in the cloud." Sweet Security previously raised $45m across earlier funding rounds, marking this new investment as a key milestone in its mission to secure the future of AI and cloud computing.

SiliconANGLE Media
Nov 12th, 2025
Sweet Security raises $75M to expand runtime cloud and AI protection platform

Sweet Security raises $75M to expand runtime cloud and AI protection platform. Cloud security startup Sweet Security Ltd. today revealed that it has raised $75 million in new funding to accelerate global expansion and product innovation to meet enterprise demand for its offerings. Alongside the funding, the company also introduced new artificial intelligence security capabilities that secure models, agents and the full AI lifecycle. Founded in 2022, Sweet Security offers a platform designed to assist security teams in shutting down cloud attacks when and where they occur with minimal business disruption. The platform operates directly within runtime environments, detecting and blocking attacks as they occur, unlike traditional security tools that rely on static configurations or periodic scans. The technology allows organizations to safeguard cloud-native applications and infrastructure while also making sure that threats are identified in context and neutralized before they can cause damage. It does so by combining runtime visibility with AI intelligence to deliver proactive protection against complex and fast-evolving threats. It offers a combination of deep behavioral analytics, identity threat detection and application programming interface protection into one unified platform. It has also expanded into the AI security market to address new risks introduced by generative and agentic AI systems. Its new AI Security Platform gives AI teams the ability to discover every model and agent, understand how they interact and identify misconfigurations or over-permissioned access before they create risk. The AISP offering maps interactions between AI components, detects misconfigurations or excessive permissions and stops threats such as prompt injection attacks or rogue AI behavior in real time. With the new AI security offering and by extending its runtime protection principles to AI, Sweet allows organizations to deploy and operate AI systems that are both high-performing and secure by design. "Cloud attacks no longer follow predictable patterns - they evolve dynamically, just like the AI systems enterprises are now building," said co-founder and Chief Executive Dror Kashti. "Protecting those environments demands real-time understanding of how models, agents and workloads behave - not static snapshots of configurations." The Series B round was led by Evolution Equity Partners, with Munich Re Ventures GmbH, Glilot Capital Partners LP and Key1 Capital also participating. The new funding takes the total raised to $120 million. The company last raised funding of $33 million in March 2024. "Sweet Security stands out in one of the most competitive segments of cybersecurity," said Richard Seewald, founder and managing partner at Evolution Equity Partners. "The company's ability to combine real-time cloud protection with AI-powered intelligence is unlike anything else in the market, redefining how enterprises secure the modern cloud and go about securing their AI environments." Photo: Sweet Security. A message from John Furrier, co-founder of SiliconANGLE: Support its mission to keep content open and free by engaging with theCUBE community. Join theCUBE's Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities. * 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more * 11.4k+ theCUBE alumni - Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network. SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios - with flagship locations in Silicon Valley and the New York Stock Exchange - SiliconANGLE Media operates at the intersection of media, technology and AI. Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Its new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.