Demo Request
Take a personalized product tour with a member of our team to see how we can help make your existing security teams and tools more effective within minutes.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Home
Blog

SaaS and AI Security Is Here: Reco Raises Series B to Dominate the Future of AI Usage in SaaS

Ofer Klein
Updated
February 10, 2026
February 10, 2026
5 min read
Ready to Close the SaaS Security Gap?
Chat with us

I'm thrilled to announce that Reco has raised $30 million in Series B funding, bringing our total funding to $85 million. This round was led by Zeev Ventures, with participation from all our existing investors—Insight Partners, boldstart ventures, and Angular Ventures—and new corporate investors including Workday Ventures, TIAA Ventures, S Ventures, and Quadrille Capital.

This milestone comes less than 10 months after our last raise, and there's a simple reason why: the market has spoken. Organizations everywhere are racing to adopt AI, and they're discovering what we've been saying all along, that traditional security tools weren't built for this new reality.

The AI SaaS Security Gap Is Real

Here's what's happening in enterprises today: AI is everywhere, but most of it is invisible to security teams. We've seen the data firsthand. Seventy-one percent of knowledge workers are using AI tools without IT approval. Twenty percent of enterprises have already experienced data leaks tied to shadow AI usage. These aren't hypothetical risks anymore, they're happening right now.

The fundamental challenge is that AI is being consumed through SaaS. Whether it's standalone AI applications like ChatGPT, AI agents embedded in platforms like Salesforce and Copilot, or AI-powered integrations connecting business systems, the attack surface has exploded. AI agents are now acting as autonomous users, creating new identities, permissions, and integrations that traditional security tools simply can't see or control.

We've watched incidents involving groups like ShinyHunters, breaches tied to platforms like Salesloft and Gainsight, and the emergence of AI-orchestrated attacks. The pattern is clear: SaaS has become the primary target, and AI has made the problem exponentially more complex.

Growth That Validates the Vision

Our growth tells the story of this market shift better than anything else. After growing 500% year-over-year in 2024, we scaled an additional 400% in 2025—on a significantly larger base. That kind of acceleration doesn't happen by accident. It happens when you're solving a problem that keeps CISOs up at night.

We're now working with multiple Fortune 500 companies and leading global enterprises across financial services, healthcare, technology, pharma, and manufacturing. What's particularly exciting is that much of this growth has been inbound. Security leaders are actively seeking solutions because they recognize that enabling AI adoption safely requires a fundamentally different approach.

The feedback from customers like Waste Management captures exactly what we set out to build: a platform that doesn't just identify problems but actually frees up security teams to focus on strategic work rather than drowning in manual processes.

Built for the AI Era

From day one, Reco was designed specifically for the AI era. We're not retrofitting legacy tools to handle modern challenges, we built a purpose-built SaaS security platform from the ground up that secures SaaS AI, apps and agents. Our platform secures AI adoption across hundreds of thousands of SaaS apps and agents, and here's the key differentiator: it's all powered by our own AI Agents.

These agents continuously monitor SaaS environments to provide real-time visibility into applications, users, permissions, and AI-driven activity. They understand AI-powered apps, autonomous agents, embedded AI features, SaaS-to-SaaS AI interactions, and even Model Context Protocols. This agent-driven approach gives security teams something they've never had before: a clear understanding of what applications are in use, how data flows across SaaS systems, and where risk is introduced.

Our AppFactory adds new SaaS integrations in just 2–3 days and currently supports over 215 apps—the broadest coverage in the market. This matters because enterprises aren't using five apps anymore, they're using hundreds or thousands. You need security that can scale at the same pace as adoption.

What's Next

This funding represents more than capital—it's validation from some of the sharpest investors in the industry that SaaS security is not just a category, it's the critical security category for modern enterprises. As Oren Zeev put it, he's seeing the same pattern with Reco that he saw with companies like Navan and Tipalti. The market demand is there, and it's accelerating.

We'll use this funding to double down on what's working. That means significant hiring across engineering, product, and go-to-market teams. We're laser-focused on discovering and securing AI apps and agents at scale because that's where the market is heading.

The role of the CISO has fundamentally changed. Security leaders are no longer just gatekeepers, they're enablers of business transformation. Their job is to make AI adoption safe and scalable, not to block it. That requires deep visibility, continuous discovery, and control across SaaS applications and AI agents at scale. That's the opportunity Reco was built to address.

Thank You

None of this would be possible without our incredible team, our supportive investors, and most importantly, our customers who trusted us early and continue to push us to build the platform they need. To our new investors at Workday Ventures, TIAA Ventures, S Ventures, and Quadrille Capital—welcome to the journey. To Zeev Ventures for leading this round and to our existing investors for continuing to back us—thank you for believing in the vision.

The future of enterprise security isn't about protecting the perimeter anymore. It's about securing the thousands of SaaS applications and AI agents that power modern business. That future is already here, and we're building the platform to secure it.

Here's to what comes next.

No items found.

Ofer Klein

ABOUT THE AUTHOR

Ofer Klein is the Cofounder & CEO of Reco. Ofer is a former Israeli pilot, and a serial entrepreneur with a vast experience in building and growing GTM teams with SaaS companies in the US. He is passionate about leading solutions for the distributed workforce.

Technical Review by:
Gal Nakash
Technical Review by:
Ofer Klein

Ofer Klein is the Cofounder & CEO of Reco. Ofer is a former Israeli pilot, and a serial entrepreneur with a vast experience in building and growing GTM teams with SaaS companies in the US. He is passionate about leading solutions for the distributed workforce.

Ready to Close the SaaS Security Gap?
Chat with us
Table of Contents
Get the Latest SaaS Security Insights
Subscribe to receive updates on the latest cyber security attacks and trends in SaaS Security.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Explore Related Posts

When AI Becomes the Insider Threat: Understanding Risks in Modern SaaS Environments
Tal Shapira
As AI becomes deeply embedded across SaaS platforms, it is increasingly operating with trusted internal access once reserved for employees and service accounts. This article examines how AI can function as an insider threat, why these risks are harder to detect than traditional insider activity, and what signals security teams should watch for. It also explores common governance gaps, real-world scenarios, and practical approaches organizations can take to reduce AI-driven insider risk without limiting legitimate AI use.
The SaaS Attack Surface Just Expanded to Clawdbot
Gal Nakash
Clawdbot, the viral AI assistant that went mainstream in January 2026, exposes a new class of shadow AI risk: autonomous agents with shell access, plaintext credential storage, and over 1,200 misconfigured instances leaking API keys and chat logs. Unlike traditional shadow AI tools, Clawdbot represents a qualitative shift in attack surface—if your employees installed it and connected it to work systems, you now have an unmanaged endpoint with persistent access to sensitive data and zero visibility.
Google AuraInspector: What the New Salesforce Security Tool Means for Your Organization
Nitay Bachrach
Google's Mandiant released AuraInspector, a tool that exploits misconfigured guest user sharing rules in Salesforce Experience Cloud sites through GraphQL endpoints. While the first public tool to use this specific technique, the underlying vulnerabilities have been exploitable since at least 2022 through other tools. Organizations should audit their Salesforce permissions, disable unnecessary guest user API access, and implement continuous monitoring to prevent data exposure.
See more featured resources

Ready for SaaS Security that can keep up?

Request a demo