Sign in to view Alex’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Sign in to view Alex’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
San Francisco, California, United States
Sign in to view Alex’s full profile
Alex can introduce you to 10 people at Stealth Startup
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
2K followers
500+ connections
Sign in to view Alex’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
View mutual connections with Alex
Alex can introduce you to 10 people at Stealth Startup
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
View mutual connections with Alex
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Sign in to view Alex’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Websites
- Personal Website
-
https://www.dunbrack.com/
- Company Website
-
https://www.ycombinator.com/companies/vectrix
About
Welcome back
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
New to LinkedIn? Join now
Activity
2K followers
-
Alex Dunbrack shared thisPartnering with OpenAI, Anthropic, & Google = better security for everyone in the age of AI. Very proud of all the hard work put in by the Cloudflare team, and so encouraged to see these AI companies recognize the importance in giving their customers robust visibility into the security of their GenAI tools… And it’s still only Tuesday of Cloudflare’s #AIWeek2025! Be sure to follow along the rest of the week… so much cool stuff happening! https://lnkd.in/gr5PQs9SAlex Dunbrack shared thisCloudflare CASB now scans ChatGPT, Claude, and Gemini for misconfigurations, sensitive data exposure, and compliance issues, helping organizations adopt AI with confidence. https://cfl.re/3HUGkfXChatGPT, Claude, & Gemini security scanning with Cloudflare CASBChatGPT, Claude, & Gemini security scanning with Cloudflare CASB
-
Alex Dunbrack shared thisOk ok, funny mascot names aside😂⛅️ go check out Cloudy’s AI summaries in your Gateway policies and WAF rules! This has been a TON of fun to work on, Cloudflare is so well-positioned to really push on this kind of LLM use case across all of its products. My guess is you’ll be seeing more of this over the next year… Stay tuned!Alex Dunbrack shared thisCloudflare’s first AI agent, Cloudy, helps make complicated configurations easy to understand for Cloudflare administrators. https://cfl.re/41xK252 #SecurityWeekIntroducing Cloudy, Cloudflare’s AI agent for simplifying complex configurationsIntroducing Cloudy, Cloudflare’s AI agent for simplifying complex configurations
-
Alex Dunbrack reposted thisAlex Dunbrack reposted thisCloudflare for Startups is excited to offer Y Combinator Application Reviews for the first 100 founders to submit here: https://cfl.re/3YuUiJM by Thurs, Nov 7 at 11:59pm PT. Expect feedback in your Google Doc by Mon Nov 11 at 9am PT. #CloudflareForStartups
-
Alex Dunbrack shared thisI think this has to be my favorite kind of update. Cloudflare users can now scan their SaaS apps for security issues using CASB and DLP -- for free! Detect sensitive data leaks and misconfigurations all in just a few clicks. Security for everyone!Alex Dunbrack shared thisToday, we are taking some big steps forward in our mission to help build a better Internet, by giving everyone free access to 10+ different website and network security products and features. https://cfl.re/3TGTgJb #BirthdayWeekA safer Internet with Cloudflare: free threat intelligence, analytics, and new threat detectionsA safer Internet with Cloudflare: free threat intelligence, analytics, and new threat detections
-
Alex Dunbrack shared thisSee y’all there😄👾Alex Dunbrack shared thisCloudflare will be at RSA Conference 2024 next week. Meet us at booth S-327 and stick around for our theater sessions and demos all week long. Learn more: cfl.re/RSAC2024 #RSAC #CloudflareRSAC
-
Alex Dunbrack shared thisI remember obsessing over how to solve this insanely time-consuming problem with Srikanth Veeraraghavan back during our time at PlanGrid, an Autodesk company… partially because I was the one tasked with filling them out😉 Now his company Expent is solving that problem. So excited to see how much time this will save for everyone involved.Alex Dunbrack shared thisHey everyone! Especially my fellow CISOs and security practitioners - Let's Automate Third-Party Risk Assessments (𝗙𝗶𝗻𝗮𝗹𝗹𝘆!) Is your current process a manual, time-consuming nightmare? Does it feel like security is slowing down vendor procurement? Been there, done that. 𝗜𝗺𝗮𝗴𝗶𝗻𝗲 𝘀𝗮𝘆𝗶𝗻𝗴 𝗴𝗼𝗼𝗱𝗯𝘆𝗲 𝘁𝗼 - Manually sending questionnaires to vendors (and chasing them for responses) - Tediously reviewing mountains of documents - Spending more time reviewing vendor provided artifacts than identifying actual risks 𝗘𝘅𝗽𝗲𝗻𝘁’𝘀 𝗥𝗶𝘀𝗸 𝗔𝗜 𝗶𝘀 𝗵𝗲𝗿𝗲 𝘁𝗼 𝗺𝗮𝗸𝗲 𝘁𝗵𝗮𝘁 𝗱𝗿𝗲𝗮𝗺 𝗮 𝗿𝗲𝗮𝗹𝗶𝘁𝘆. We are the 𝗳𝗶𝗿𝘀𝘁 to offer a native AI-powered solution for automated third-party risk assessment. 𝗪𝗵𝗮𝘁 𝗱𝗼𝗲𝘀 𝘁𝗵𝗶𝘀 𝗺𝗲𝗮𝗻 𝗳𝗼𝗿 𝘆𝗼𝘂? - 𝗘𝗳𝗳𝗼𝗿𝘁𝗹𝗲𝘀𝘀 𝘃𝗲𝗻𝗱𝗼𝗿 𝗼𝗻𝗯𝗼𝗮𝗿𝗱𝗶𝗻𝗴: No more manually filled questionnaires, just vendors uploading their security artifacts. - 𝗦𝗺𝗮𝗿𝘁𝗲𝗿 𝗿𝗶𝘀𝗸 𝗮𝗻𝗮𝗹𝘆𝘀𝗶𝘀: AI analyzes documents to identify gaps, exceptions, and compliance mismatches against your existing controls, questionnaires or frameworks. - 𝗙𝗿𝗲𝗲𝗶𝗻𝗴 𝘂𝗽 𝘆𝗼𝘂𝗿 𝘀𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝘁𝗲𝗮𝗺: Free up your team to analyze real risks instead of paperwork. 𝗕𝘂𝘁 𝗶𝘁'𝘀 𝗻𝗼𝘁 𝗷𝘂𝘀𝘁 𝗮𝗯𝗼𝘂𝘁 𝗲𝗳𝗳𝗶𝗰𝗶𝗲𝗻𝗰𝘆. Risk AI offers 𝗙𝗮𝘀𝘁𝗲𝗿 𝗢𝗻𝗯𝗼𝗮𝗿𝗱𝗶𝗻𝗴 & 𝗥𝗲𝗱𝘂𝗰𝗲𝗱 𝗖𝗼𝘀𝘁𝘀: Our customers that use Risk AI have seen ���𝟱% 𝗿𝗲𝗱𝘂𝗰𝘁𝗶𝗼𝗻 in the onboarding time and have seen 𝟳𝟬% 𝘀𝗮𝘃𝗶𝗻𝗴𝘀 by eliminating manual reviews. 𝗛𝗲𝗿𝗲'𝘀 𝘁𝗵𝗲 𝗸𝗶𝗰𝗸𝗲𝗿: Expent AI integrates seamlessly with our broader Vendor Lifecycle Management Platform. 𝗪𝗵𝘆 𝗶𝘀 𝘁𝗵𝗶𝘀 𝗶𝗺𝗽𝗼𝗿𝘁𝗮𝗻𝘁? - 𝗢𝗻𝗲 𝗽𝗹𝗮𝘁𝗳𝗼𝗿𝗺, 𝗼𝗻𝗲 𝘀𝗼𝗹𝘂𝘁𝗶𝗼𝗻: Ditch the siloed mess of multiple tools and manage everything in one place. - 𝗦𝘁𝗿𝗲𝗮𝗺𝗹𝗶𝗻𝗲𝗱 𝗽𝗿𝗼𝗰𝘂𝗿𝗲𝗺𝗲𝗻𝘁: Third-party risk becomes an integral part of the process, not a roadblock. - 𝗘𝗻𝗱-𝘁𝗼-𝗲𝗻𝗱 𝘃𝗶𝘀𝗶𝗯𝗶𝗹𝗶𝘁𝘆: Procurement teams and stakeholders have complete transparency. And hey, if you know a 𝗖𝗜𝗦𝗢 𝗼𝗿 𝘀𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗽𝗿𝗮𝗰𝘁𝗶𝘁𝗶𝗼𝗻𝗲𝗿 that is responsible for third party risk assessments, please share this post! Let's finally put the power of AI to work for us! 𝗔𝗻𝘆𝗼𝗻𝗲 𝘄𝗶𝘁𝗵 𝘁𝗵𝗼𝘂𝗴𝗵𝘁𝘀 𝗼𝗿 𝗶𝗱𝗲𝗮𝘀, lets connect! We're all in this together, and together we can move the needle on third-party risk management. Y Combinator, Unusual Ventures, PJC, Global Founders Capital, Workday Ventures, Supernode Ventures, Lorimer Ventures, Matt Hayes, Rob May, Don Stalter, Laurel Touby, Sandhya Hegde P.S. Check out Expent Risk AI below
-
Alex Dunbrack shared thisWith great logs comes great responsibility... Join me (Cloudflare), Datadog, and 1Password as we discuss streamlining incident investigations and leveraging logs from your most critical products... including Cloudflare Zero Trust!Alex Dunbrack shared thisJoin the webinar to learn how to streamline security response time and visually investigate incidents across all logs. Can’t make it to the live webinar? No problem! Register and we’ll send you a recording of the session. https://cfl.re/3Lu6nsX
-
Alex Dunbrack shared thisAlex Dunbrack shared thisIn this companion blog post, we recap the capabilities built into the Cloudflare One suite over the past year and preview new functionality that customers can look forward to. https://cfl.re/44GlWEzWhat’s next for Cloudflare One’s data protection suiteWhat’s next for Cloudflare One’s data protection suite
-
Alex Dunbrack reposted thisAlex Dunbrack reposted thisCome join my new team! The Customer Zero Security team at Cloudflare is focused on and committed to securing both Cloudflare and our customers through the use of Cloudflare’s own products. The team is responsible for implementing and operationalizing Cloudflare tools across our global footprint. US https://lnkd.in/gAjCUzp7 EMEA https://lnkd.in/gAGDhWNC
-
Alex Dunbrack liked thisAlex Dunbrack liked thisCareer update: I’ve joined OpenAI to lead Cyber with Michael Aiello. Why I joined, and what we’ll be building: It’s clear that AI is fundamentally changing how software is being written and secured. Coding agents are writing the majority of code for many developers, software is getting shipped more quickly, and vulnerabilities that were latent for 20 years are being discovered at a rapid pace. The time to bug discovery, and exploitation once discovered, are trending down (H/T Sergej Epp and Gadi Evron). I believe we have an unparalleled opportunity to fundamentally 𝘪𝘮𝘱𝘳𝘰𝘷𝘦 cybersecurity in ways that were previously impossible. (H/T Anna Westelius’ BSidesSF keynote on reasons for optimism) Over 6 years at Semgrep, I had the privilege of working with an amazing team building what has become the most popular open source security code scanning tool in the world, that many companies have built their application security program around. Now, at OpenAI, I’m thrilled to be a part of a company helping shape how software is written, and how security work gets done. It is a massive opportunity, and responsibility, and I don’t take that lightly. Here are my current thoughts about where things are headed: 𝐑𝐞𝐬𝐢𝐥𝐢𝐞𝐧𝐭 𝐛𝐲 𝐝𝐞𝐬𝐢𝐠𝐧. Defenders are not going to win playing bug whack-a-mole. We need to systematically eliminate classes of vulnerabilities, via generating secure code and streamlining the detect → validate → fix process. 𝐀𝐮𝐠𝐦𝐞𝐧𝐭 𝐚𝐧𝐝 𝐞𝐦𝐩𝐨𝐰𝐞𝐫 𝐩𝐞𝐨𝐩𝐥𝐞. We should build models and tools that give defenders ���superpowers,” enabling them to be more ambitious in the scope they tackle, shift from being reactive to proactive, and allow them to automate the drudgery so they can focus on the highest leverage work. 𝐒𝐞𝐜𝐮𝐫𝐞 𝐭𝐡𝐞 𝐜𝐨𝐦𝐦𝐨𝐧𝐬. The world runs on open source software. OpenAI has already spent $Ms finding and patching vulnerabilities in the most popular and widely run software, including browsers, operating systems, and core libraries. More on this soon. We’re also working on helping secure critical infrastructure. 𝐂𝐨𝐦𝐦𝐮𝐧𝐢𝐭𝐲 𝐚𝐧𝐝 𝐩𝐚𝐫𝐭𝐧𝐞𝐫𝐬. Securing the world is a community effort. I’m looking forward to partnering with cybersecurity vendors, researchers, practitioners, governments, and more to do together what we can’t do alone. 𝐓𝐢𝐦𝐞 𝐭𝐨 𝐛𝐮𝐢𝐥𝐝. Tactically, here are some domains I’m excited about: - Finding, validating, and reliably patching software vulnerabilities at scale. - Eliminating classes of vulnerabilities and making software resilient by design. - Giving broad access to the best cyber models to empower defenders, not just to a select few. - Creating and sharing Skills and playbooks that help in many security domains. - Building platforms that enable defenders to easily orchestrate security work. - Making enterprise agents safe and reliable. Time to build 😎 — What would help you most? What should we build? Let me know in the comments.
-
Alex Dunbrack reacted on thisAlex Dunbrack reacted on thisThe AI security combo we've been waiting for: Wiz 🤝 Cloudflare AI is moving fast. Too fast for traditional security to keep up. Our research shows: → 88% of orgs run self-hosted AI → 79% expose AI to sensitive data or APIs So we teamed up with Cloudflare. "By combining Wiz's end-to-end visibility with Cloudflare's edge protections, we close a critical gap in how AI risk is managed" -Oron Noah, VP of Product & Partnerships, Wiz Now you get one clear view of your AI attack surface. See how AI apps are built, what they access, and where they're exposed, know which endpoints are protected (and which aren't) & more! See how it works 👇 https://lnkd.in/eHt3sVct
-
Alex Dunbrack liked thisAlex Dunbrack liked thisSet the stage for customer satisfaction before calls come in with AI automation and centralized data.
-
Alex Dunbrack liked thisAlex Dunbrack liked thisCloudflare One unifies data security from endpoint to prompt: RDP clipboard controls, operation-mapped logs, on-device DLP, and Microsoft 365 Copilot scanning via API CASB. https://cfl.re/4d40VeP
-
Alex Dunbrack liked thisAlex Dunbrack liked thisAfter four years of building together, I’m proud to share that TigerEye has joined Lennar. I want to thank our team, past and present, investors, advisors and customers who have believed in us and helped us along the way. I also want to thank Lennar and Stuart Miller and Eric Feder for the trust and partnership. We are proud to be joining a company with a long track record of excellence in homebuilding. This next chapter gives us the opportunity to apply our experience in construction, AI, and business intelligence to building homes. Shelter is one of our most basic needs and building enough homes has never been more urgent in our country. Over the last several years, construction investment in the US has been dominated by data centers and energy infrastructure. These projects are critical, but they don’t address the pressure that most Americans feel. When families are spending 30% or more of their income on housing, even with two salaries, it’s challenging to make ends meet. On top of that, with home prices soaring, new generations are doubting they’ll ever be able to afford a home. Increasing supply is one of the most effective ways to ease pressure on home and rental prices. And technology has an important role to play in making this possible. Solving this at scale requires more than innovation at the margins. It requires operational excellence, financial discipline, and the ability to keep crews building through economical cycles. Lennar has been doing exactly that for more than 70 years and is one of the few organizations with the scale and experience required to make a meaningful impact on housing supply. Homes are foundational to families and the communities they’re a part of. We’re committed to modernizing homebuilding to deliver more housing nationwide. I’m energized by the opportunity to roll up our sleeves and be a part of the solution. By reducing friction and improving accuracy, we can help Lennar build more homes more efficiently, without sacrificing quality. Looking back on the last four years, TigerEye has changed me. It is our true middle child, sandwiched between our two older and two younger kids, and it taught me how to be a better founder and a better mother. I’m proud of what we built together, how we treated people along the way, and I’m grateful for this outcome and excited to build with this team for many years to come.
-
Alex Dunbrack liked thisAlex Dunbrack liked thisI’m excited to share that I’ve joined Scale AI as a Product Security Engineer. I’m grateful for the opportunity and excited to hit the ground running.
-
Alex Dunbrack liked thisAlex Dunbrack liked thisCloudflare Workflows, our durable execution engine for running multi-step applications, now supports Python. That means less friction, more possibilities, and another reason to build on Cloudflare. https://cfl.re/47Pva54
-
Alex Dunbrack liked thisAlex Dunbrack liked thisTired of VPNs? Cloudflare's security leaders, Chase Catelli, Sr. Cybersecurity Strategist, and Derek Pitts, Director of Security, reveal their journey to a full Zero Trust model in this episode. Hear how they mastered user adoption, secured executive buy-in, and deployed security keys and layered security. Watch now! https://cfl.re/3VOqWoP
-
Alex Dunbrack liked thisAlex Dunbrack liked thisJust wrapped up Cloudflare Connect, and what an incredible experience it was! Feeling totally exhilarated and ready to put all the amazing learnings into action. It was also fantastic to catch up with so many brilliant minds and friends. So much inspiration in one place! Huge thanks to Cloudflare Events team for organizing such a phenomenal event. Looking forward to next year! 🚀
Experience & Education
-
Stealth Startup
*******
-
**********
*******
-
*******
********** * *** ********* ** ***********
-
*** ********** ** *******
******** ** ******* ****** ********** *********** ******** ****** undefined
-
* **********
*** undefined
- Present
View Alex’s full experience
See their title, tenure and more.
Welcome back
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
New to LinkedIn? Join now
or
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Languages
-
English
Native or bilingual proficiency
-
French
Professional working proficiency
View Alex’s full profile
-
See who you know in common
-
Get introduced
-
Contact Alex directly
Other similar profiles
-
Felicity Yost Estey
Felicity Yost Estey
Columbia University Mailman School of Public Health
13K followersSan Francisco, CA
Explore more posts
-
Vivek Jaswal
Sociazy • 5K followers
The $10M ARR myth that nobody wants to talk about → Stripe just dropped a bomb: Double the startups hit $10M ARR in 3 months in 2025 vs 2024. Everyone's celebrating. I'm concerned. Here's why this "achievement" might be the worst thing happening to the startup ecosystem: → Speed doesn't equal substance → Revenue doesn't mean profitability → Fast growth often masks fundamental problems The uncomfortable truth? Most of these "instant success" stories will be dead in 18 months. Why? Because hitting $10M ARR in 90 days creates a dangerous illusion: • You think you've figured out product-market fit (you haven't) • You scale before validating retention (customers churn) • You raise capital on vanity metrics (burn rate explodes) • You hire aggressively without culture foundation (team collapses) The data Stripe conveniently left out? Customer retention rates. Churn metrics. Actual profitability. I've seen this movie before. The 2021 "growth at all costs" era destroyed more companies than it created unicorns. AI is making it easier to acquire customers fast. But AI can't fix: - Poor unit economics - Weak value propositions - Non-existent customer support - Unsustainable business models The real question isn't "How fast can you hit $10M ARR?" It's "Can you still be in business 3 years after hitting $10M ARR?" Because sustainable growth > explosive growth. Every. Single. Time. Are we building the next generation of category-defining companies, or just creating a new bubble of revenue-rich, profit-poor startups destined to implode? What's your take – is ultra-fast ARR growth a feature or a bug of the AI era?
5
-
Pammi Vanisha
Nexus Void Ai • 1K followers
9,000 healthcare workers will lose their familiar AI tool in 2026. UCSF chose OpenAI over their own creation. The reasons reveal everything. UCSF just announced they're replacing their in-house AI platform Versa Chat with ChatGPT Enterprise. This isn't a small move. It affects 9,000 users across one of America's top medical centers. Why abandon your own technology? The answer shows where healthcare AI is heading: • Enhanced HIPAA compliance support • Access to GPT-5 technology • Enterprise-grade security safeguards • Broader functionality across clinical operations UCSF built Versa Chat for secure AI access. But even they recognized when to pivot. Sometimes the best solution isn't the one you created. The migration starts early 2026. UCSF's 40,000+ community members will gain access to cutting-edge AI while maintaining patient privacy. This shift signals a broader trend. Healthcare organizations are choosing proven enterprise solutions over custom builds. The focus has moved from building AI tools to implementing them effectively. For healthcare innovation, this could accelerate AI adoption across research, education, and patient care. What matters most? Getting the right tools to healthcare workers quickly and safely. How do you think this will impact AI adoption in your healthcare organization? #HealthcareAI #OpenAI #DigitalHealth 𝐒𝐨𝐮𝐫𝐜𝐞: https://lnkd.in/dSUD8XdG Karaka Sai chandra sekhar, Rupa Sri Borra
1
1 Comment -
Franz Purucker
Hive • 10K followers
on ETA (across AI Roll-Ups funded by VCs, PE-style buy and build, HoldCos, traditional search funds, etc.) Context of my learnings: I've looked both at individual search fund deals from an investor perspective and larger platform ideas as founder. Over the past couple months, I've screened ca. 200 investment memorandums, did >10 site visits / superficial DDs, 2 deeper DDs, took 0 final leaps. I can't speak from the perspective of someone who's done it, but have talked to enough people to see patterns. Good news: The succession opportunity is real, the lag of technology adoption in SMBs is INSANE and there are some (!) high-quality SMBs with customer relationships so sticky, that it makes sense to continue something existing vs. building from scratch. I personally also believe many great operator talents exist, who have what it takes to lead an SMB, but might not be "0 to 1" founder types - and any form of entrepreneurship is net positive!! Bad news: Forget about risk-free returns and think through operational nightmare scenarios before you're stuck with them. Highly recommend the content of Alex Prokofjev / RollUpEurope, Christopher von Wedemeyer / Legacy Partners and Sahil Patwa / AI Roll-up Nexus to learn about common pitfalls. 1) Historical numbers suggest ca. 50% of search funds fail. Now adding ambitious add-on strategies, a wave of consulting / banking talents with no operator experience, and rising multiples.. I think this might trend up to 60-70% rather than down? Better than 90%+ failure risk of a startup, but no magic trick. 2) Thinking about the exit assumption, which is multiple arbitrage for most strategies: Which business really gets better by pasting together a couple of smaller ones, with different cultures, compensation practices, customer contracts...? Some do, because scale benefits can be powerful, but many don't. When speaking with people, who operated or acquired small cap platforms from leaders like Auctus / Ufenau / etc, it becomes clear that operational nightmares are the norm rather than the exception and the multiple arbitrage narrative could fade for many verticals. 3) Some VCs betting on deeper, longer-term tech value creation (...and maybe an IPO...in 20 years?) underwrite 15% to 40% EBITDA margin uplifts = relying less on multiple arbitrage, and maybe that's possible! But some of the "red hot" verticals are turning so competitive, with players funded near software multiples (have heard there are several already well-funded property managers raising again now), that sellers will realize they can push entry multiples up. VC-backed founders will feel pressure to put capital to work and will make mistakes. 4) More decentral HoldCos, with very high investment selection bars and less hands-on value creation, might bring the best risk-adjusted returns. However, it seems hard to attract brilliant young "builder" talent for those strategies and I'd personally always feel an itch to be more operationally involved.
293
27 Comments -
James Green
CRV • 11K followers
CRV Security: Request for Startups I never know if this actually works for our friends over at YC but figured we'd try. Here's what we want to fund in 2026! 1. Golden Artifacts: Think Chainguard but more broad. Artifact attestation exists for open source. Almost nothing exists for internal software — especially the vibe-coded tooling now running in production. We want the company building cryptographic proof of secure software delivered from secure artifacts: who built it, how, and whether it was reviewed. If more things are being yeeted into the world via Claude Code (myself included), this feels like an issue. 2. MCP & Agentic Security: Agents are getting real credentials and taking real actions. The security posture of most orgs around this is basically zero. That changes fast. You'd never give an employee hardcoded API keys or write access to your email without supervision/trust. Why give it to agents? 3. AI Governance: Boards are asking CISOs to account for AI risk. CISOs have no good answer other than "Palo has a module" 4. Next-Gen Endpoint: CrowdStrike was built for a world of static binaries and human operators. AI workloads, cloud-native infra, and AI-assisted attackers need a new architecture. The category is ready to be reinvented. 5. Networking in the AI Era: Zero trust was designed for humans. What does network security look like when the entity requesting access is an agent? Nobody's really solved this. 6. Email Security + Next-Gen Phishing: LLMs have made spear phishing infinitely scalable. I've never truly understood why Abnormal and KnowBe4 aren't one company. Maybe this time it's different. 7. Frontier Security Lab: We'd back a credible, well-staffed lab focused entirely on red-teaming models and setting the evidentiary standard the industry needs as LLM built apps become the norm. 8. Dependency Security: That Actually Remediates Malicious and vulnerable dependencies are a top attack vector. The tooling is mostly noise — scanners that don't close the loop. The winner here ships fixes, not just alerts. 9. Critical Infrastructure Cyber: Data centers, satellites, power grids, undersea cables. The physical backbone of the internet is increasingly exposed and wildly under-defended. We have data centers in space, for God's sake. Surely we need better cyber for critical infrastructure? 10. PAM for the Modern Era Legacy: PAM was built for static roles, human users, on-prem directories. Cyberark was founded in 1999.....Agents, ephemeral workloads, and cloud-native infra have broken all of those assumptions. Is anyone rebuilding this from scratch? If you're building in any of these areas — or something we haven't thought of — reach out. james@crv.com
452
49 Comments -
Arteen Arabshahi
Fika Ventures • 10K followers
SF AI-Native Operator Takeaway #2: In AI-native PLG, the hard part isn’t conversion... it’s discovery. Many AI-native teams are still talking about PLG using a classic SaaS mental model, but based on operator conversations in SF, that model is starting to break down in fairly obvious ways. The biggest bottleneck right now isn’t conversion. It’s discovery. In traditional PLG, users generally understood the category before they ever signed up. The problem was obvious, the product’s value was legible from the homepage, and the “aha” moment tended to show up quickly in first use. In that world, PLG meant optimizing onboarding, reducing friction, and improving free-to-paid conversion because user intent already existed. AI changes that assumption. In AI-native products, users are often curious but unclear. They don’t yet know what’s possible, value depends heavily on workflow, context, data, and role, and the product can feel abstract until it’s applied directly to their job. As a result, many users stall not because the product isn’t valuable, but because they haven’t discovered how it fits into their world and how they can't live without it. This is the real distinction people kept coming back to. PLG conversion answers, “Is this worth paying for?” PLG discovery answers, “What problem does this solve for me, right now?” What’s working best in practice is less about funnel polish and more about clarity up front: role- or workflow-specific entry points, guided examples instead of blank states, and opinionated first actions that show users a concrete outcome before asking them to explore. This also explains a broader pattern across AI-native companies. Forward-deployed teams and services-heavy delivery aren’t just implementation tools; they’re discovery mechanisms. They translate abstract AI capability into concrete workflow value, observe real use cases users wouldn’t self-discover, and feed those learnings back into what eventually becomes productized. PLG isn’t going away, but in AI-native companies it’s being redefined. Self-serve no longer means self-explanatory. Education becomes part of the product, and discovery has to come before optimization. The teams making progress aren’t obsessing over conversion rates yet. They’re focused on whether users see themselves in the product, how quickly they reach a meaningful outcome, and whether the product helps users get to a meaningful outcome for themselves quickly, without too much guesswork. Bottom line: in AI, PLG is less about removing conversion friction early and much more about creating understanding first. Once they understand, they may be hooked. Tomorrow is my last SF AI operator takeaway focusing on everyone's favorite topic du jour: 996 work schedules.
15
1 Comment -
Jacob Klug
Creme Digital • 43K followers
VC pattern matching is broken. And that's your biggest opportunity. They're still looking for: → Stanford CS grads → Perfect pitch decks → 6-month roadmaps → $2M seed rounds → "Defensible" tech moats While solo builders are eating this up. I've watched this play out 50+ times: VC-backed startup: Still in beta after $500K Solo founder: $10K MRR with a laptop Why this creates massive opportunity: 1. VCs ignore "unsexy" problems → Dental inventory management → Restaurant scheduling 2. They underestimate non-technical founders → 15 years in the industry → Knows every pain point 3. They overvalue complexity → Simple tool, boring niche = They sleep → Same tool solving real problems = $30K MRR The tools that broke their model: → Lovable: Build without coding → Cursor: Refine with AI → Supabase: Backend that scales → ChatGPT: Validate before building Total cost: $100/month Time to first customer: Days While VCs chase the next AI unicorn: Plumbers are building plumber software. Dentists are building dental tools. Marketers are building marketing apps. And they're winning. Because they understand something VCs don't: The best person to solve an industry's problem is someone who's lived it. AI just gave them the tools. The window is wide open. But it won't stay that way. Once VCs figure this out, they'll flood these markets. Right now? They're still pattern matching for the wrong patterns. That's your advantage. Use it.
38
3 Comments -
Rishabh Sambare
Gale (YC W25) • 15K followers
These 10 fast-growing YC startups have recently closed their Series A 🔥🔥 Whether you’re job-hunting, investing, or just tracking the next wave of breakout tech, these companies are ones to watch: 1. Escape: AI-powered offensive security platform automating API and application testing. $18M Series A. 2. Depot: Software delivery and CI system built to radically accelerate Docker image builds and GitHub actions. $10M Series A. 3. Lio (formerly askLio): Agentic AI platform designed to automate enterprise procurement workflows from end to end. $30M Series A. 4. Harper (YC W25): AI-native commercial insurance brokerage connecting mid-sized businesses with over 160 insurance carriers. $46.8M Seed+Series A. 5. Dots: Global payouts API platform catering to gig workers, creators, and contractors. $8.9M Series A. 6. Tamarind Bio: No-code computational biology platform that accelerates AI-driven drug discovery. $13.6M Series A. 7. Humand: AI-powered operating system creating a centralized hub for managing the deskless workforce experience. $66M Series A. 8. Kombo: Unified API and global infrastructure layer connecting HR, payroll, and recruiting software. $25M Series A. 9. Alaan الآن : Leading corporate card and AI-powered spend-management platform operating in the Middle East. $48M Series A. 10. Pasito: AI-native workspace built to aggregate and process scattered employee benefits, health data, and insurance claims. $21M Series A. - - - - - - - - - Bonus: Looking to affordably bring over international talent 🌍? Talk to us at Gale (YC W25) and we'll get you sorted.
227
8 Comments
Explore top content on LinkedIn
Find curated posts and insights for relevant topics all in one place.
View top content