Home Venture Capital & Startup Funding Cyera Acquires Oasis Security in Landmark Cybersecurity Merger to Fortify Enterprise AI and Non-Human Identity Protection

Cyera Acquires Oasis Security in Landmark Cybersecurity Merger to Fortify Enterprise AI and Non-Human Identity Protection

by Dwi Wanna

The landscape of enterprise cybersecurity underwent a profound structural shift today as data security leader Cyera announced its official acquisition of Oasis Security, a pioneer in non-human identity and agentic access management. This high-profile consolidation brings together two venture-backed powerhouses originating from the same elite ecosystem of Israeli technical talent. Long before Oasis Security was formally established in 2021, early backers at Sequoia Capital recognized a distinct entrepreneurial blueprint in its co-founders—a relentless drive and strategic foresight mirroring the architects behind prominent cybersecurity unicorns Wiz and Cyera. All hailing from the Israel Defense Forces’ prestigious Talpiot leadership and technological programs, these founders have systematically mapped out the infrastructure required to secure the modern enterprise.

What began as a foundational investment thesis during Oasis Security’s Series A funding round has now culminated in a strategic industry alignment. As artificial intelligence fundamentally reshapes how organizations operate, the convergence of data governance and identity management is no longer merely advantageous; it has become an urgent prerequisite for enterprise survival. By uniting Cyera’s deep visibility into sensitive corporate data with Oasis Security’s cutting-edge frameworks for managing machine and agentic identities, the newly combined entity is positioned to establish a definitive baseline for comprehensive AI security.

The Genesis of the Non-Human Identity Crisis

To understand the strategic rationale behind the Cyera and Oasis Security transaction, one must examine the dramatic transformation of corporate digital architectures over the past half-decade. Three years ago, when Danny Brickman and Amit Zimerman laid the groundwork for Oasis Security, they identified a glaring blind spot in traditional cybersecurity paradigms: enterprises were rapidly hurtling toward an era where non-human identities—encompassing API keys, service accounts, OAuth tokens, and programmatic credentials—would vastly outnumber human users.

Historically, legacy Identity and Access Management (IAM) tooling was meticulously engineered around human behavior, relying on concepts like multi-factor authentication, routine password updates, and human session monitoring. However, the proliferation of cloud-native environments, microservices, and automated workflows rendered these legacy systems obsolete.

The advent of generative AI and autonomous AI agents accelerated this trend exponentially, moving non-human identity security from a niche subcategory of IT management to an urgent, board-level conversation for Chief Information Security Officers (CISOs). Modern AI agents do not merely observe corporate networks; they actively read, write, execute tasks, and communicate with other agents. Each programmatic interaction generates a complex web of credentials that act with real-world permissions and substantial blast radiuses. Recognizing this paradigm shift early on, Oasis Security pioneered "agentic access management," establishing a trusted framework designed specifically to govern how automated systems interact with enterprise infrastructure.

Parallel Evolution: Cyera’s Data-Centric Approach

While Oasis Security tackled the challenge from the perspective of credential behavior and access management, Cyera approached the same fundamental disruption from the data layer. Founded by Yotam Segev, Tamar Bar-Ilan, and Yonatan Itai, Cyera was built to answer a deceptively simple yet historically elusive question: Where does an organization’s sensitive data actually reside, who holds authorization to reach it, and what are the quantifiable risks of exposure?

As artificial intelligence models began ingesting vast repositories of proprietary enterprise data to power automated workflows, Cyera’s leadership recognized an inescapable reality. Securing AI implementation requires simultaneous control over three interconnected vectors: the underlying data, the identities—both human and non-human—interacting with that data, and the autonomous agents executing the operations.

By mapping the lineage and classification of enterprise data in real-time, Cyera provided organizations with unprecedented visibility. Yet, data visibility alone cannot entirely prevent unauthorized access if the keys to the digital kingdom—the machine identities and API tokens—are left unmonitored or misconfigured.

The Strategic Synergy of Data and Identity Security

When evaluated side by side, the architectural synergies between Cyera and Oasis Security become immediately apparent, offering a comprehensive solution to modern threat vectors. Industry analysts have frequently compared enterprise security to a high-security bank vault: the ultimate defensive posture requires comprehensive knowledge of both the contents locked inside the vault and the precise identities of individuals or systems approaching the entrance.

Through this combination, Cyera’s data security platform identifies precisely what digital assets are at stake, classifying intellectual property, customer records, and regulated information with granular precision. Simultaneously, Oasis Security determines whether the entity attempting to interact with that data—whether a service account, a third-party API integration, or an autonomous AI agent—is authorized, properly credentialed, and behaving according to established operational baselines.

Together, the integrated platform covers the complete lifecycle and trajectory of an AI agent within a corporate network. It spans from the initial repository of sensitive data to the specific non-human identity utilized to access it, closing the loop on vulnerabilities that traditional security orchestration tools routinely miss.

Market Dynamics and Enterprise Go-To-Market Acceleration

Beyond the compelling technical integration, the acquisition offers powerful operational advantages, particularly concerning go-to-market (GTM) execution and enterprise scaling. Over the past several years, Cyera has constructed one of the most formidable enterprise sales and deployment organizations in the cybersecurity sector—reaching scale and market penetration that typically requires startups a decade to achieve.

By integrating Oasis Security’s technology directly into Cyera’s expansive commercial engine, the combined company can immediately introduce advanced non-human identity management to Fortune 500 accounts and global enterprises that would have otherwise taken Oasis years to penetrate independently.

Market timing remains a critical variable in this equation. As enterprises rapidly transition from exploratory AI deployments to full-scale operational agentic rollouts, the corporate landscape demands an overarching, standardized security platform. Organizations are increasingly fatigued by point solutions that address isolated vulnerabilities. The race to establish the definitive security layer spanning data, identity, and autonomous agents is well underway, and the consolidation of Cyera and Oasis dramatically accelerates both product completeness and market deployment speed.

A Shared Heritage: The Israeli Cybersecurity Ecosystem

The union of Cyera and Oasis Security also highlights the extraordinary density of talent within Israel’s high-tech security ecosystem, particularly institutions such as the IDF’s Talpiot program and Unit 8200. Over the past decade, alumni from these elite technological units have founded a disproportionate share of the world’s leading cybersecurity unicorns, establishing a culture of rigorous engineering and rapid innovation.

Both companies received early-stage backing from Sequoia Capital starting at their respective Series A rounds. The convergence of two distinct portfolios into a single cohesive entity underscores the predictive accuracy of venture capital investment theses when applied to exceptional engineering teams. In under three years, Danny Brickman, Amit Zimerman, and the broader Oasis team successfully built a category-defining enterprise standard for non-human identity management from the ground up—a feat requiring immense technical rigor and early recognition of structural shifts in software architecture.

Broader Industry Implications and Future Outlook

As the transaction closes, the broader cybersecurity landscape faces a new benchmark for platform consolidation. Standalone identity tools and isolated data loss prevention (DLP) systems are increasingly giving way to unified, context-aware security fabrics capable of reasoning at the speed of artificial intelligence.

For enterprise CISOs, the merger signals a transition away from fragmented vendor management toward holistic, end-to-end governance models. As autonomous agents become ubiquitous workforce components, managing their access privileges without compromising operational velocity will remain a defining challenge of the decade.

With Cyera and Oasis Security now operating as a unified force, the combined leadership team steps onto a significantly larger global stage. Backed by continued institutional support and armed with an expanded technological arsenal, the company is uniquely positioned to define the operational standards for enterprise AI security as the market enters its next evolutionary phase.

You may also like

Leave a Comment