Do these 3 things before closing this tab:
1Fix the driver behind crashes, sound loss and screen glitches2Clear out junk files and repair common Windows errors3Scan for outdated or missing drivers - takes under a minuteSome links on this page are affiliate links: if you buy through them we may earn a commission, at no extra cost to you.
Israeli cybersecurity startup Onit Security announced an $11 million seed round on March 24, 2026, as it emerged from stealth and launched an exposure-management platform. The round was led by Hetz Ventures and Brightmind Partners, with additional angel participation. Onit says the capital will fund product development and go-to-market expansion.
The company’s pitch is not simply to find more vulnerabilities. It wants to automate the operational work that follows discovery: understanding business impact, finding the right owner, selecting a response and coordinating—or, where authorized, initiating—remediation.
What happened in Onit Security’s funding round?
Onit Security was founded in 2025 and is headquartered in Tel Aviv, Israel. Its March 24 announcement disclosed an $11 million seed financing led by Hetz Ventures and Brightmind Partners. The release refers to “prominent angel investors,” but does not publish a complete list of those individuals.
Recommended Free Tools
The company did not disclose a valuation, revenue, customer count, employee count or the terms of the financing. Those omissions are normal for a seed-stage private company, but they matter when assessing the round’s financial significance.
Onit was founded by Elad Ben-Meir, Ofer Amitai and Tom Winter. According to the funding announcement, the founders have been associated with prior ventures including SCADAfence, Portnox and For-Each, which were acquired or sold to larger organizations. Those biographies are company-reported background rather than independently verified performance data.
#1 Best Overall
- Compact and Efficient Design: The FortiGate 40F is designed for small to mid-sized businesses and enterprise branch offices, featuring a compact, fanless desktop form factor that ensures quiet operation and minimizes space usage.
- Robust Connectivity Options: Equipped with 5 GE RJ45 ports, including 1 WAN port and 4 internal ports, this model provides essential connectivity and flexibility for various network configurations in a small-scale environment.
- High-Performance Security: Offers up to 1 Gbps IPS throughput and 600 Mbps threat protection throughput, using Fortinet’s purpose-built security processor technology to deliver industry-leading performance and protection for SSL encrypted traffic.
- Advanced Threat Protection: Integrated with Fortinet’s AI-powered FortiGuard Labs, the FortiGate 40F offers comprehensive cybersecurity, identifying and mitigating both known and unknown threats to maintain robust security across your network.
- Simplified Management and Deployment: Features a user-friendly management console that provides comprehensive network automation and visibility, coupled with Zero Touch Integration with Fortinet’s Security Fabric for easy deployment.
The security problem Onit is targeting
Most enterprise security teams already have ways to discover vulnerabilities. The harder problem is turning a large, noisy backlog into safe, completed fixes.
A team may need to determine whether a finding is exploitable in its environment, how important the affected asset is to the business, which engineering or infrastructure group owns it, whether a patch is available, and whether a compensating control is acceptable. Scanner data, cloud inventories, CMDB records, ticketing systems and ownership information are often fragmented or stale. The result can be repeated triage, bounced tickets and long remediation queues.
Onit’s funding release cites an average 32-day remediation period, nearly half of vulnerabilities remaining unresolved after 12 months, and more than one million CVEs projected by 2030. Those figures are presented by the company; the announcement does not clearly identify the underlying studies, so they should not be treated as independently verified statistics.
How the platform is supposed to work
Onit describes its product as Decision-Based Exposure Management. Its public materials describe several connected functions:
- Ingestion and normalization: collecting findings from multiple security products, correlating related records and reducing duplicate work.
- Contextual prioritization: considering factors such as exploitability, asset criticality, network position, cloud or application context and available mitigations rather than relying on CVSS alone.
- Ownership resolution: using CMDB, identity, ticketing and organizational data to identify the team responsible for a system or application.
- Remediation orchestration: coordinating tickets, patches, configuration changes, WAF rules or other approved responses through connected systems.
- Reusable decisions: turning a human-approved strategy into a rule that can be applied consistently to similar exposures in the future.
That distinction is important. “Automatically resolved” might mean that a finding is deduplicated, assigned, ticketed, remediated, verified and closed—or only that the first workflow step was automated. Buyers need to establish which of those actions the product actually performs.
Rank #2
- HARDWARE PLUS SECURITY SERVICES: FortiGate-60F Firewall Appliance bundled with 1 year of FortiCare Premium and FortiGuard Unified Threat Protection.
- UNIFIED THREAT PROTECTION (UTP): Secures against advanced online threats with comprehensive web filtering and anti-botnet technologies.
- OPTIMIZED FOR MEDIUM-SIZED BUSINESSES: Tailored for businesses needing robust security without the infrastructure of larger enterprises.
- RELIABLE CUSTOMER SUPPORT: FortiCare Premium ensures high-quality support and service continuity.
- EFFECTIVE PROTECTION: Employs advanced filtering technologies to safeguard against sophisticated threats.
What does “agentic” mean here?
Onit calls itself an agentic exposure-management company. Based on the public description, that means specialized software agents perform parts of an exposure workflow while humans define policies, permissions and exceptions. It does not establish that the system can freely patch production systems without controls.
The key evaluation question is: What can an agent change, under which approval rules, and how is the result verified? Public materials do not fully specify agent permissions, rollback, emergency stops, audit-log detail, treatment of ambiguous ownership or handling of conflicting inventory data. A third-party Dealroom profile has described human approval before an agent implements a fix, but that detail is not stated in the primary funding release and should be confirmed with Onit.
Agent authority also creates risk. Incorrect ownership data could send work to the wrong team; a contextual score could understate a vulnerability subject to a regulatory deadline; and an automated configuration change could create an outage. Mature deployments therefore need narrow permissions, role separation, approval thresholds, staging or canary controls, rollback and remediation verification.
Integrations and where Onit fits
The AWS Marketplace listing says Onit can ingest findings from Rapid7, Qualys, Tenable, Wiz, Orca, Prisma and other security sources. “Integration” can mean a mature two-way connector, an API feed or a file import, so buyers should verify the depth of each connection.
Questions include whether Onit writes status back to the source tool, creates and closes ITSM tickets, triggers a real patch or only recommends one, supports the required API versions and preserves scanner-specific fields. Integration availability may also vary by deployment or commercial plan.
Rank #3
- 【Up to 1100 Mbps VPN Speed 】 Hardware-accelerated WireGuard and OpenVPN-DCO deliver up to 1100 Mbps VPN throughput, over 3× faster than Brume 2 for smooth remote access and file transfers.
- 【Three 2.5G Ports & Multi-WAN】Tri-port 2.5GbE design with flexible WAN LAN configuration supports multi-gigabit wired setups, dual-ISP Multi-WAN and failover to keep home and SOHO networks online.
- 【Stealth VPN Obfuscation】VPN obfuscation disguises VPN traffic as regular HTTPS, helping you evade blocking, bypass restrictive networks and maintain stable, private connections.
- 【DPI protection】Deep Packet Inspection with visual dashboards blocks adult/gambling/malicious sites, while SQM and QoS prioritize gaming, calls, and video when bandwidth is tight
- 【OpenWrt & USB 3.0 Expansion】OpenWrt with 1GB DDR4 and 8GB eMMC lets you install plugins and build VPN, ad-blocking or NAS, while USB 3.0 Type‑C connects high-speed storage or 4G/5G dongles
Onit positions itself as complementary to scanners, cloud-security products, endpoint tools, patch-management systems and ITSM platforms—not as a replacement for all of them.
Onit versus SOAR and established platforms
Onit says SOAR products generally automate event-driven playbooks, while its platform is built around persistent exposure decisions and repeatable remediation rules. That is a positioning distinction, not proof that the categories are mutually exclusive.
| Product category | Typical role | How Onit positions itself |
|---|---|---|
| Vulnerability scanner | Find weaknesses and report severity | Aggregates and contextualizes findings |
| Exposure-management platform | Correlate risk and coordinate remediation | Automates decisions through resolution |
| SOAR | Run event-driven playbooks | Focuses on persistent remediation decisions |
| ITSM | Track work and ownership | Aims to reduce manual routing and bounce-backs |
| Patch-management tool | Deploy software or configuration changes | May coordinate or initiate actions through integrations |
Competing approaches include Tenable One, Qualys VMDR, Rapid7 InsightVM, Wiz, XM Cyber and Balbix. Tenable, Qualys and Rapid7 offer established vulnerability and exposure ecosystems; Wiz is especially cloud-oriented; XM Cyber emphasizes attack-path analysis; and Balbix focuses heavily on asset intelligence and risk visibility. Onit’s stated difference is the execution layer built around reusable decisions.
An enterprise can also assemble similar workflows with scanners, ServiceNow or another ITSM platform, SOAR, CMDB data, patch tools and custom APIs. That may be flexible, but the organization must maintain connectors, authorization, error handling, auditability and verification itself.
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
What remains unproven
- The company’s claim of up to an 87% reduction in mean time to remediation is not an independent benchmark. The announcement does not identify the sample, baseline, period, customers, exposure types or whether the figure covers full remediation.
- Onit says it is working with Fortune 1000 customers, but does not name them or disclose customer numbers.
- Pricing, valuation, revenue, dilution, deployment options and the complete angel-investor list are not public in the supplied materials.
- Public sources do not provide a complete certification, data-residency, retention, model-training or compliance profile.
- The scope of autonomous remediation—and whether actions require approval—needs confirmation for each integration.
Onit’s website offers a demo request. A May 7, 2026 company blog also mentions a 30-day free trial and personalized onboarding call, but availability and eligibility should be confirmed directly. The AWS Marketplace listing provides a procurement route, not proof of instant self-service pricing.
Rank #4
- Runs UniFi Network for full-stack network management
- Manages 30+ UniFi Network devices and 300+ clients
- 1 Gbps routing with IDS/IPS
- Multi-WAN load balancing
- 0.96" LCM status display
Who might benefit?
The product is most relevant to large organizations with multiple scanners, a substantial backlog, fragmented ownership records and enough operational maturity to authorize controlled automation. Its value should be lower for a small team with one scanner, a manageable queue and no authority to make automated changes.
Before buying, security leaders should test remediation depth, context quality, bidirectional integration, approval and rollback controls, auditability, data governance and verification. They should also ask how policy deadlines—such as known-exploited-vulnerability requirements or regulatory remediation windows—override a purely contextual risk score.
Frequently Asked Questions
When did Onit Security announce the funding?
Onit announced the $11 million seed round on March 24, 2026, alongside its emergence from stealth and public product launch.
Free tools Windows power users keep installed
One-click scans. No signup required.
Who led Onit Security’s $11 million round?
Hetz Ventures and Brightmind Partners led the round. The company also cited unnamed angel investors.
Is Onit’s 87% remediation improvement independently verified?
No independent benchmark is provided. The 87% figure is a company-reported claim, and the announcement does not disclose the sample, baseline or measurement methodology.
The Bottom Line
Onit is addressing a real enterprise-security bottleneck: converting vulnerability findings into accountable, completed remediation. The $11 million seed round gives it capital to develop that execution layer, but the investment case and buyer case depend on details still undisclosed—especially integration depth, agent permissions, safety controls and independently measured outcomes. Its “agentic” label is less important than what the platform can safely change, verify and roll back in a customer’s environment.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.
Quick wins for a faster PC:
Clear out junk files and repair common Windows errorsFree Scan →Scan for outdated or missing drivers - takes under a minuteDriver Scan →

