Tech Lens Media
Tech Lens Media
Home
AI In Action
Startup FundingFundingAIEnterprise AICybersecurityAI Infrastructure
AI ToolsAI AgenciesEvents
List Your AI Agency
HomeAI In ActionAI ToolsAI AgenciesEvents
List Your AI Agency
Tech Lens Media

Source-backed AI news, funding intelligence and discovery across tools, companies and emerging technology.

© 2026 Tech Lens Media. All rights reserved.

Categories

  • Startup Funding
  • Funding
  • AI
  • Enterprise AI
  • Cybersecurity
  • AI Infrastructure
  • DeepTech

Company

  • About Us
  • Terms and Condition
  • Privacy Policy
  • Disclaimer
  • AI Information
  • Contact Us
  • Sitemap

Follow us

HomeNewsCytix Raises 7m As AI Coding Turns Every Software Change Into A Security Decision

Cytix Raises $7M as AI Coding Turns Every Software Change Into a Security Decision

H. Sureja
•
August 13, 2026
•
2 mins read
AI CodingAdd as a preferred
source on Google
Share Article:

Image credit : Tech.eu

Share

Years before AI coding agents began accelerating software development, security already had a timing problem. Cytix co-founder Thomas Ballin once worked inside a large bank where a software change could move through developers, project managers, and security reviews before reaching a penetration-testing team. The process was thorough, but it belonged to a world where code still moved largely at human speed.

That world is disappearing. Manchester-based Cytix has raised $7 million in Series A funding, led by Northern Gritstone, with existing investors Auriga Cyber Ventures and NPIF II – PXN Equity Finance also participating. The capital will accelerate the rollout of Cytix’s newly launched software change risk platform into enterprise and regulated organizations.

The funding arrives alongside a more interesting transformation inside Cytix itself. Co-founders Ben Armstrong and Thomas Ballin spent years around security testing, but Armstrong says the company eventually stopped defining the problem through labels such as penetration testing, continuous testing or AI pentesting. Customers kept returning to a harder question: which software changes actually create business risk?

Cytix is effectively putting a decision layer in front of the security scanner.

The platform reads the context around tickets, pull requests, code differences, releases and policies, while maintaining a persistent knowledge graph of the software environment. It can identify which changes deserve attention, determine whether the response should involve additional context, review, threat modelling or testing, and preserve the resulting decision as evidence. High-risk changes can move into agentic validation, while lower-risk changes can follow proportionate approval paths.

The urgency is being amplified by AI-assisted development. In Cytix-commissioned research involving 250 UK security leaders at organizations with more than 1,000 employees, 62% said security risk was shifting from a latent problem toward an immediate one. Only 38% strongly agreed that their organization was prepared for the volume of AI-generated code entering its environment.

Cytix says its technology already supports continuous testing programs involving KPMG and NCC Group. NCC Group separately describes the partnership as combining its offensive-security expertise with Cytix’s AI-powered change intelligence to provide more continuous assurance as software evolves. Cytix’s platform became generally available on August 12.

The strategic bet goes beyond finding more vulnerabilities. As AI makes software change cheaper and faster, security attention becomes the scarce resource. Cytix wants to help enterprises decide where that attention belongs, then leave behind enough evidence to explain why the decision was made.

AI CodingCybersecurityCytixSoftware SecurityStartup Funding

Frequently Asked Questions

Cytix records the decision, rationale, security action, test results, remediation, and sign-off against the software change that triggered them. This creates a connected history that can answer questions such as what changed, what was decided, what action was taken, and who was responsible without reconstructing the evidence later from Jira tickets, emails, spreadsheets, and reports. Cytix positions this as continuous evidence of the current security posture rather than a point-in-time record created for an audit.
Traditional penetration tests typically assess a system at a particular point in time. Cytix instead uses the risk created by an individual software change as the trigger for testing. After a change is assessed and qualified, testing can be scoped specifically to the part of the system and risk involved, with findings attached directly to the change that caused the test. The aim is to align security validation with continuous software development rather than a fixed annual or quarterly testing calendar.

Trending News

Trending News

Related Stories

More from AI Coding