Loading organizations...

§ Private Profile · Huesca, Aragon, Spain
SaaS platform providing automated threat modeling tools for enterprise clients, focused on integrating security into software development.
IriusRisk, based in Huesca, Spain, with a registered office in Beaconsfield, England, provides automated threat modeling tools that integrate into software development lifecycles to identify and mitigate security risks early. The AI-enhanced SaaS platform serves over 100 enterprise clients globally, including Fortune 500 banks and tech providers, and employs 200 individuals worldwide. The company has raised a total of $37.5 million in funding, with lead investors including Paladin Capital Group and Invictus Growth Partners. Other notable investors include SwanLaab Venture Factory, BrightPixel Capital, 360 Capital, and Inveready. IriusRisk was founded in 2015 by Stephen de Vries and Cristina Bentué. The firm focuses on financial services, operational technology, medical devices, public services, technology, enterprise clients including Fortune 500 banks, payments, and tech providers, over 100 clients worldwide.
IriusRisk has raised $39.8M across 4 funding rounds.
IriusRisk has raised $39.8M in total across 4 funding rounds.
IriusRisk has raised $39.8M in total across 4 funding rounds.
IriusRisk's investors include Paladin Capital Group, btov Partners, Nauta Capital, Swanlaab Venture Factory, Kushagra Vaid, 360 Capital Partners, Inveready, Sonae IM, 33N Ventures, Atlantic Bridge, Bright Pixel Capital, JME Ventures.
IriusRisk is a Spain-based technology company that builds an AI-powered threat modeling platform to embed security into software development from the design stage. It serves enterprises in sectors like financial services, operational technology, medical devices, public services, and technology, helping development and security teams identify risks, generate countermeasures, and comply with regulations[1][2][3][5][6]. The platform integrates seamlessly into existing software development lifecycles (SDLC), automating threat models for architectures like AWS SaaS apps, reducing remediation costs by addressing 50% of vulnerabilities that occur at design—where fixes are 100x cheaper than in production—and enabling "secure by design" practices[2][3][4]. Trusted by global enterprises like Axway and Pearson, it drives growth through partnerships, such as with Toreon for training, and community initiatives, scaling secure software development faster[1][2][3].
IriusRisk was founded in 2015 by Stephen de Vries (CEO) and Cristina Bentué in Huesca, Spain, with a mission to deliver secure technology by design for busy teams—originally under the name Continuum Security, rebranded later[1][5]. Driven by a passion to prevent cyberattacks in everything from electric cars to medical devices, the founders aimed to make proactive security standard across industries, starting before code is written, fueled by humble origins and a unique story involving a chicken named Chica[5]. Early traction came from addressing the shift to automated tools amid rising IT complexity, evolving into an AI-enhanced platform with global adoption by over 100 clients, including launches like the Threat Modeling Connect community in 2022 to foster practitioners worldwide[2][5].
IriusRisk rides the DevSecOps and secure-by-design wave, capitalizing on modern architectures' exploding attack vectors and the untenability of manual threat modeling amid AI/ML proliferation and regulatory pressures in critical sectors[2][3][5]. Timing is ideal as 50% of vulnerabilities stem from design flaws, costing 100x more in production, while tools like IriusRisk enable "start left" security in SDLCs, democratizing it for non-experts and aligning with trends like Infrastructure as Code and cloud-native development[2][4][6]. It influences the ecosystem by fostering a global threat modeling community, partnering for training, and powering enterprises to build safer faster, reducing risks in embedded software across automotive, healthcare, finance, and beyond—pushing proactive security as an industry imperative[1][5].
IriusRisk is positioned for expansion as AI security demands grow, with agentic AI enhancements and integrations accelerating adoption in regulated industries. Trends like generative AI risks, zero-trust architectures, and global compliance (e.g., for medical devices and finance) will propel it, potentially through deeper AWS/enterprise partnerships and community-driven innovations. Its influence may evolve into the de facto standard for threat modeling, empowering more teams to "build-safer-faster" and scaling from 100+ clients to broader ecosystem dominance—turning secure design from niche to norm, just as its founders envisioned from those humble Spanish beginnings.
IriusRisk has raised $39.8M across 4 funding rounds. Most recently, it raised $29.0M Series B in October 2022.
| Date | Round | Lead Investors | Other Investors | Status |
|---|---|---|---|---|
| Oct 1, 2022 | $29M Series B | Paladin Capital Group | Btov Partners, Nauta Capital, Swanlaab Venture Factory, Kushagra Vaid, 360 Capital Partners, Inveready, Sonae IM | Announced |
| Sep 1, 2020 | $7M Series A | Paladin Capital Group | 33N Ventures, Atlantic Bridge, Bright Pixel Capital, Nauta Capital, Swanlaab Venture Factory, 360 Capital Partners, JME Ventures, Sonae Investment Management | Announced |
| Dec 5, 2017 | $1.8M Venture Round | Juan Revuelta | JME Ventures, Sonae IM | Announced |
| Nov 1, 2017 | $2M Series U | — | 33N Ventures, Nauta Capital, Swanlaab Venture Factory | Announced |