The Industry Is Building One Blind Spot, Together

StrikeReady raised $29M from Wa'ed Ventures, Hitachi, 33N and Monta Vista to keep security teams from having to choose to investigate everything or stay on budget.

Sep 16, 2026 · by StrikeReady · 3 minute read

We've seen this movie three times now:

SIEM Priced by ingestion

Teams decided which logs they could afford to keep.

SOAR Priced per playbook

Teams decided which workflows were worth automating.

Agentic AI Priced per investigation

Teams are being asked to decide which alerts, hunts and vulnerabilities are worth burning tokens for.

Every one of those is a rationing decision, and rationing leaves holes. The logs you couldn't afford to keep are the ones you go looking for after an incident. The workflows that didn't make the cut are why a ticket still sits in a queue at 2 a.m. And the alerts nobody can afford to burn tokens on are where an attacker gets room to work.

It doesn't have to work this way. Connect every tool you own, run every hunt you want, and stop doing math before you open an alert. That's the product we set out to build.

A SOC that can only afford to investigate some of what it sees has hard days ahead. And right now every enterprise buying metered agentic AI is building that same blind spot, on the same timeline, in the same places, for the same reason. One company rationing investigations is a budget story. A whole industry doing it at once is an attack surface.

Today we're announcing an investment led by Wa'ed Ventures, the venture capital arm of Aramco, bringing our total funding to $29 million. It goes toward making sure a security team never has to decide which threats it can afford to look at.

Unmetered, defined.

StrikeReady is a Composite AI platform for security operations. We use pattern-matching and ML-driven automation for the high-frequency, high-volume work, and reserve LLM-based reasoning for the moments that require judgement. That architecture is what makes unmetered coverage economically possible in the first place. You can't put a reasoning model on every alert in an enterprise SOC and expect the maths to work. Metering is usually an architectural constraint showing up on the invoice.

The result is full AI coverage across alerts, incidents, vulnerabilities, assets, identities, and threat intelligence, with no coverage limits tied to spend. And it runs on the stack you already own. We sit on top of your SIEM, EDR, IAM, ticketing, and threat intel tools rather than replacing any of them, because the last thing an under-resourced SOC needs is another 12-month migration.

StrikeReady mascot looking through a telescope

In a recent enterprise deployment, StrikeReady cut incident investigation time by 80%, handling routine threats autonomously end to end and giving analysts their week back for the work that actually requires a human.

80% Faster incident investigation
90→4 min 11 steps across 6 tools, down to 3 steps in 1

The line we're drawing.

Metered AI is going to look, in retrospect, like metered log ingestion looks now: a pricing artifact that became a security policy. Every alert, every vulnerability, every identity risk should get the right AI applied to it. Not the amount of AI your renewal happens to cover.

The right AI for every task, unmetered.

See how Composite AI gives every alert, vulnerability and identity full coverage, without your costs rising with every investigation.

Download the One-Pager