TMCnet News
BlueFlag Security Marks 300% Revenue Growth and $28 Million Raised to Date While Launching AI Agent Governance and Developer Behavioral Risk AnalysisBlueFlag Security today announced significant momentum and product updates that reinforce the company's leadership as an identity-centric SDLC security platform. In 2025, BlueFlag achieved 300% year-over-year revenue growth and a 5x increase in Fortune 500 enterprise customers, along with raising $28 Million to date - marking its strongest traction since the company's founding in 2024. BlueFlag raised its Series A financing round, led by Maverick Ventures and Ten Eleven Ventures, to accelerate platform development and expand its presence in the US and EMEA across regulated industries and technology organizations adopting AI-driven software development at scale. BlueFlag Security recently announced strategic partnerships with Obsidian Systems, catworkx, and knowmad mood, highlighting growing market demand for solutions that support secure, AI-driven software development at scale. Software supply chain attacks are accelerating globally, and the pattern is consistent. Major attacks do not begin with a code vulnerability; they begin with compromised, manipulated, or malicious human or non-human identities that have legitimate access to development environments. The 2025 Verizon DBIR highlighted that 68% of breaches involve compromised credentials, and Software Supply Chain Failures debuted at number three in the OWASP Top 10 2025, with 50% of security experts ranking supply chain risk as their top concern. "AI agents are becoming a significant presence in development environments, from coding assistants that operate alongside developers to autonomous agents that write, test, and deploy code with no human in the loop," said Katie Norton, Research Manager, DevSecOps and Software Supply Chain Security at IDC. "Alongside service accounts and other non-human identities, these agents are widening the visibility gap around who and what is operating across the software development lifecycle. BlueFlag's identitycentric approach addresses this shift by extending governance and behavioral analysis to a category of risk that many software supply chain security tools do not cover." The security industry has long focused on scanning code for vulnerabilities - but that approach misses where most SDLC risk actually lives. A BlueFlag analysis found that greater than 75% of SDLC risk remains invisible to existing application security tools. Until now, security teams have had no way to answer the most basic questions about who is operating in their development environment, what they are doing, and whether any of it signals a threat or an attack in progress. New BlueFlag Platform Capabilities BlueFlag's latest platform release extends its identity centric approach account two critical capability areas:
"Attackers are not going after code - they are going after the identities and tools behind it. BlueFlag was built to close that gap and the traction we are seeing tells us the market is ready. The question is no longer whether AI agents are in your development environment. They already are. The question is whether you are governing them," said Raj Mallempati, Founder and CEO, BlueFlag Security. "Our mission is to secure every phase of the software development lifecycle by delivering identity intelligence that creates a trusted environment for innovation." Key BlueFlag Benefits
BlueFlag will be on site at the RSA Conference in San Francisco. Book a private 1:1 demo or join the team at one of their exclusive events. More information about connecting at RSAC is available here. Not attending RSA? Request a free Risk Assessment that deploys in under 30 minutes and delivers a comprehensive findings report in 48 hours with prioritized risks, guided remediation, and a complete picture of every identity in your SDLC. Most organizations uncover risks they didn't know existed.
About BlueFlag Security
View source version on businesswire.com: https://www.businesswire.com/news/home/20260323973093/en/ |

