Artemis
Artemis Security builds an AI-native protection platform for modern security operations, replacing or augmenting legacy SIEMs with adaptive detections, agentic investigation, and federated-query visibility across identity, cloud, endpoint, network, and SaaS for Fortune 1000 and Global 2000 enterprises.
- Company typePrivate
- Founded2025
- HeadquartersNew York, United States
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What Artemis does
Artemis (legally Artemis Global Technologies, Inc., doing business as Artemis Security) is a privately-held, venture-backed cybersecurity company founded in 2025 and headquartered in New York that builds an AI-native protection platform for modern security operations. The platform is purpose-built to replace or augment legacy SIEMs by continuously modeling each customer's environment across identity, cloud, endpoint, network, and SaaS sources; auto-generating and tuning environment-specific adaptive detections; performing agentic investigation that correlates multi-domain signals into connected attack cases; and delivering visibility through federated queries against customers' existing cloud storage (Snowflake, Databricks, S3) rather than forced ingestion. Core modules include Adaptive Detection, Environment Intelligence (behavioral posture and shadow-AI analysis), Threat Intelligence (machine-speed ingestion of threat reports mapped to MITRE ATT&CK), and AI Mode (a natural-language interface for queries, detection authoring, and investigation).
The company sells primarily to Fortune 1000 and Global 2000 security organizations — including named customers Mercury, Wix, Lemonade, Abnormal AI, Upwork, Sony, Amazon, and an unnamed global financial institution — via a sales-led motion with quote-based enterprise contracts typically ranging $250K-$1M+ ACV on multi-year terms. Distribution combines direct field sales with a partner ecosystem in build-out across MSSPs/MDRs, GSIs (Accenture, Deloitte, EY), VARs, AWS marketplace, and technology alliances; the company is also a participant in the 2026 CrowdStrike + AWS + NVIDIA Cybersecurity Startup Accelerator. The platform is hosted on AWS (US East) and is SOC 2 Type II certified with GDPR and CCPA/CPRA compliance programs.
Artemis has raised $70 million in combined seed ($15M, co-led by First Round Capital and Brightmind) and Series A ($55M, led by Felicis) funding within roughly six months of founding, with additional participation from Theory VC, Two Sigma Ventures, Lockstep, and a syndicate of cybersecurity industry angels. The company is led by co-founder and CEO Shachar Hirshberg (former AWS GuardDuty product leader, ex-Palo Alto Networks and Demisto) and co-founder and CTO Dan Shiebler (PhD in AI from Oxford, former head of AI/ML at Abnormal AI and ML leader at Twitter).
Artemis firmographics
Firmographics- Name
- Artemis
- Legal name
- Artemis Global Technologies, Inc.
- Website
- https://artemissecurity.com
- Company type
- Private
- Founded year
- 2025
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Artemis Security builds an AI-native protection platform for modern security operations, replacing or augmenting legacy SIEMs with adaptive detections, agentic investigation, and federated-query visibility across identity, cloud, endpoint, network, and SaaS for Fortune 1000 and Global 2000 enterprises.
- Ownership category
- akta.pro rank
Artemis industry classification
Industry- Product category
- Security Operations Platform (AI-native SIEM/SecOps)
- NAICS
- Software Publishers (5132)
- SIC
- Services-Prepackaged Software (7372)
- akta.pro primary industry
- IT Operations Management (ITOM) Platforms (HDAEALAC)
Keywords
Where Artemis is headquartered
LocationHeadquarters
- HQ city
- New York
- HQ country
- United States
- HQ region
- North America
Offices2 records
Markets served
Artemis business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Infrastructure, Operations
Revenue model
- Enterprise SaaS Subscriptions: Recurring SaaS contracts sold to enterprise security teams (Fortune 1000 / Global 2000); already closed several seven-figure deals and is projecting multi-million dollar ARR before end of 2026. Pricing is quote-based/enterprise, not publicly disclosed.
- Multi-Year Enterprise Contracts: Land-and-expand motion with multi-year contracts for large enterprise customers including Mercury, Wix, Lemonade, and Abnormal AI; ARR growth driven by upsell as detection scope expands across identity, cloud, endpoint, network, and SaaS environments.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Enterprise quote-based contracts typically ranging $250K-$1M+ ACV |
Go-to-market motion4 records
Distribution channels5 records
Marketing channels8 records
Artemis product offering
Product offeringCore offering
Artemis sells an AI-native protection platform for modern security operations that continuously models each customer's environment and delivers adaptive detection, agentic investigation, environment intelligence, machine-speed threat intelligence, and natural-language query capabilities across identity, cloud, endpoint, network, and SaaS data sources. The platform uses federated queries against customers' existing cloud storage rather than forcing ingest, targeting Fortune 1000/Global 2000 enterprise SOCs as a SIEM replacement or augmentation layer.
Product overview
Artemis Security offers a single unified AI-native protection platform for modern SecOps, rather than a portfolio of separately licensed products. The core Artemis Security Platform combines several tightly integrated modules: Adaptive Detection (auto-generated, environment-specific detections), Environment Intelligence (behavioral security-posture and shadow-AI analysis), Threat Intelligence (machine-speed ingestion of threat reports), and AI Mode (natural-language investigation, detection writing, and query). These modules share a common dynamic data model, federated-query architecture, and agentic investigation engine, so detections, environment insights, and threat-intel updates feed into the same case pipeline. The platform is positioned either as a SIEM replacement or as an augmentation layer on top of an existing SIEM, with optional enterprise-AI coverage delivered through integrations such as the Anthropic Claude Compliance API integration.
Differentiator
Problem solved
Functional benefit
Products and services
- Artemis Security Platform AI-native protection platform for modern security operations (SecOps) that continuously models each customer's environment and delivers adaptive detection, agentic investigation, environment intelligence, threat intelligence, and a natural-language AI Mode across identity, cloud, endpoint, network, and SaaS sources; positioned as a SIEM replacement or augmentation layer for enterprise SOCs.
- Artemis-Anthropic Claude Compliance API Integration Native integration that extends Artemis detection, investigation, and response coverage to Anthropic Claude Enterprise (Compliance API) plus Claude Code and Claude Cowork (via OpenTelemetry), bringing prompts, file uploads, project changes, admin actions, MCP server configuration, and SCIM/directory events into the OCSF-normalized Artemis pipeline for securing enterprise AI usage.
Quantifiable outcome
- 94% reduction in mean time to detect and respond to important security events
- +4 more outcomes
Companies that use Artemis
Customer profileNamed customers8 records
Segments4 records
Ideal customer profiles3 records
Artemis technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration11 records
AI capability11 records
Feature8 records
Artemis partnerships and signals
Strategic signalPartnerships
16 partnerships are on record, tiered flagship ecosystem partner, flagship ecosystem partner and infrastructure provider, flagship technology integration partner, core technology integration and industry angel / advisor tier.
- CrowdStrikeflagship ecosystem partnerCrowdStrike co-runs the Cybersecurity Startup Accelerator with AWS and NVIDIA and named Artemis as one of 35 startups in the 2026 cohort. CrowdStrike Chief Business Officer Daniel Bernard publicly endorsed Artemis building on the Falcon platform; signals co-development/GTM alignment with CrowdStrike's security ecosystem.
- Amazon Web Services (AWS)flagship ecosystem partner and infrastructure providerAWS co-runs the Cybersecurity Startup Accelerator with CrowdStrike and NVIDIA. Artemis's platform is hosted on AWS infrastructure (US East region), leverages AWS CloudTrail and related telemetry sources, and integrates with Ping Identity, Okta, and Entra identity stacks commonly deployed on AWS.
- NVIDIAflagship ecosystem partnerNVIDIA co-runs the Cybersecurity Startup Accelerator with CrowdStrike and AWS; provides AI compute resources and frameworks that support Artemis's GPU-accelerated AI/ML workloads.
- Anthropicflagship technology integration partnerArtemis integrates with Anthropic's Claude Compliance API for Claude Enterprise and ingests OpenTelemetry from Claude Code and Claude Cowork. Events are normalized to OCSF and processed through the full Artemis detection, investigation, and threat-hunting pipeline. Anthropic also featured Artemis as a customer case study.
- Oktacore technology integrationOkta is listed as a supported Identity Provider integration that Artemis ingests for authentication, identity, and behavioral analysis.
- Ping Identitycore technology integrationListed as a supported Identity Provider integration for Artemis's identity telemetry and detection.
- Microsoft Entra IDcore technology integrationMicrosoft Entra ID is listed as a supported identity provider integration alongside Okta and Ping; Artemis ingests audit logs alongside sign-in logs for full identity coverage.
- Salesforcecore technology integrationSalesforce is listed as a supported SaaS integration in the Artemis integration ecosystem.
- Google Cloudcore technology integrationGoogle Cloud is listed as a supported cloud integration for telemetry ingestion alongside AWS.
- Criblcore technology integrationCribl is listed as a supported Data Pipeline integration for log routing and observability pipelines feeding Artemis.
- Snowflakecore technology integrationSnowflake is listed as a supported Data Lake integration; Artemis performs federated queries against customer Snowflake data rather than forcing ingestion.
- Databrickscore technology integrationDatabricks is listed as a supported Data Lake integration, enabling federated query access to customer data lake analytics environments.
- Amazon S3core technology integrationS3 is listed as a supported Data Lake integration for direct log connection and federated querying.
- Demisto (founders of)industry angel / advisor tierFounders of Demisto are cited as angel investors and cybersecurity industry leaders participating in Artemis's funding rounds. Demisto was acquired by Palo Alto Networks in 2019.
- CrowdStrike (former CEO/CTO of Splunk)industry angel / advisor tierFormer CEO and CTO of Splunk cited among cybersecurity industry leader angel investors participating in Artemis's funding; Doug M (ex-Splunk CEO) publicly endorsed Artemis on LinkedIn as building 'the right answer to the detection half'.
- Abnormal AI (founders of)industry angel / advisor tierFounders of Abnormal AI cited as angel investors in Artemis's funding rounds; Abnormal AI is also a customer of Artemis.
Scale indicators9 records
Recent moves3 records
Expansion highlights7 records
Artemis competitors and assessment
Company assessmentDirect peers
- Hunters: Hunters offers a SIEM alternative that uses ML-driven correlation and automated investigation to replace or augment traditional SIEMs, addressing the same alert fatigue and investigation pain points that Artemis targets.
- Prophet Security: Prophet Security is an AI-native SOC platform focused on alert triage, investigation, and response, competing for the same Fortune 1000/Global 2000 SOC automation budget that Artemis is targeting.
- Torq: Torq is a security automation and hyperautomation platform used by enterprise SOCs for triage, investigation, and response workflows, competing for adjacent SOC budget that Artemis is positioning to absorb with its agentic investigation engine.
- Radiant Security: Radiant Security is an AI-driven SOC analyst platform that autonomously triages, investigates, and responds to alerts across cloud, identity, and endpoint — directly mirroring Artemis's adaptive detection, agentic investigation, and response value proposition for enterprise security teams.
- Dropzone AI: Dropzone AI provides an autonomous SOC analyst that investigates alerts end-to-end using LLMs, closely overlapping with Artemis's agentic investigation and AI Mode natural-language interface for SOC teams.
- Tines: Tines is a security workflow automation platform that lets SOC analysts orchestrate tools and response actions, overlapping with the orchestration and response portions of Artemis's platform.
- Panther Labs: Panther is a next-generation SIEM built on a security data lake with detection-as-code, positioning it as a direct cloud-native alternative to legacy SIEMs and a direct competitor to Artemis's federated-query SIEM replacement approach.
Broad incumbents
- Microsoft Sentinel: Microsoft Sentinel is a cloud-native SIEM/SOAR bundled into the Microsoft security stack with deep Azure, Entra ID, and Defender integration, representing the largest incumbent threat to Artemis in Microsoft-centric enterprises.
- Splunk (Cisco): Splunk is the dominant enterprise SIEM and the explicit incumbent Artemis is positioning to displace with an AI-native, lower-cost alternative; the Doug M (ex-CEO) angel investment underscores the direct competitive dynamic.
- Google SecOps (Chronicle): Google SecOps (formerly Chronicle) is a hyperscaler-scale SIEM alternative leveraging Google infrastructure and security telemetry, competing for the same cloud-native, cost-conscious enterprise SIEM displacement opportunity as Artemis.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat6 records
Key risks5 records
Key highlights7 records
Customer concentration
Artemis social profiles
Digital presenceArtemis compliance and trust
Trust signalCompliance5 records
Artemis financial estimates
Financial estimateRevenue estimate
Valuation estimate
Artemis leadership team
Management profileNumber of profiles
Profiles3 records
Artemis funding detail
Funding detailFunding overview
Funding rounds3 records
Investors11 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Artemis M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Artemis
What does Artemis do?
Artemis sells an AI-native protection platform for modern security operations that continuously models each customer's environment and delivers adaptive detection, agentic investigation, environment intelligence, machine-speed threat intelligence, and natural-language query capabilities across identity, cloud, endpoint, network, and SaaS data sources. The platform uses federated queries against customers' existing cloud storage rather than forcing ingest, targeting Fortune 1000/Global 2000 enterprise SOCs as a SIEM replacement or augmentation layer.
Is Artemis a public or private company?
Artemis is a private company. It is classified as venture growth investor backed and is currently operating.
When was Artemis founded?
Artemis was founded in 2025. It employs 11 to 50 people.
Where is Artemis based?
Artemis is headquartered in New York, United States, in the North America region.
How does Artemis make money?
Two revenue lines are on record. Enterprise SaaS Subscriptions are the primary driver. The others are multi-Year Enterprise Contracts.
Who are Artemis's main competitors?
Direct peers on record are Hunters, Prophet Security, Torq, Radiant Security, Dropzone AI, Tines and Panther Labs. Broad incumbents are Microsoft Sentinel, Splunk (Cisco) and Google SecOps (Chronicle).
Does Artemis have an API?
Yes. Artemis ingests and integrates via third-party APIs (including the Anthropic Compliance API and OpenTelemetry from Claude Code and Claude Cowork) and offers integration credentials (API tokens and OAuth credentials) for connecting to customers' third-party tools. Events are normalized to the OCSF schema. No public-facing developer API documentation is published; the platform's APIs are used for enterprise integrations rather than as a standalone developer product. The company deliberately chose not to use MCP servers for external system access, opting for thin wrapper scripts instead.
What industry is Artemis in?
Artemis's product category is Security Operations Platform (AI-native SIEM/SecOps). Its primary akta.pro industry code is HDAEALAC, IT Operations Management (ITOM) Platforms. Its NAICS code is 5132 and its SIC code is 7372.