Fundraising Fox

Devarmor

San Francisco, US · Founded 2025 · 13 employees on LinkedIn · 2 known investors

DevArmor connects to issue trackers to analyze development tickets in context, adding security recommendations and automatically generating threat models, controls, and guardrails for both human developers and AI agents. It targets application security teams in regulated, fast-moving industries such as financial services, fintech, and insurtech.

Also known as DevArmor

Founders & leadership

Devarmor was founded in 2025 by Amir, Julian Mehnle, and Amir Kavousian.

A
Amir
JMJulian Mehnle
Julian MehnleinFounder & CTO
AKAmir Kavousian
Amir KavousianinFounder & CEO

Investors · 2

Company profile

researched Aug 2026

DevArmor develops an AI-based application security platform that automates threat modeling, security design review and policy enforcement across the software development lifecycle. The product ingests business context and design specifications through configurable integrations, generates a threat model and derived security requirements, and pushes the resulting design controls and guardrails into downstream engineering tools. The company states that threat models and architecture reviews are produced from existing artifacts in under ten minutes.

The platform is organized around a set of functional components the company names Architecture Composer, Threat Modeler, Policy Builder, Design Advisor, Code Reviewer, Compliance Reporter and Context Collector. It integrates with design and planning tools, IDEs and source code management so that security context and secure prompting guidance are available inside Jira, Google Docs, GitHub, MCP, VS Code and Cursor. On the enforcement side, DevArmor applies Policy-as-Code to every pull request, optionally blocking unsafe merges, and links each review back to an approved design decision or threat model. The company positions the product as covering both human developers and AI coding agents, describing itself as a security layer for agentic development.

DevArmor is a private cybersecurity company whose profile lists verticals including application security, vulnerability management, compliance and risk, and workflow automation, with a B2B business model and subscription and usage-based SaaS customer profiles.

Founding story

DevArmor's company page states that the founders started the business because security reviews at engineering organizations were slow, feedback loops were broken and temporary exceptions became permanent risk — problems the founders attribute to processes that cannot move at the speed of development rather than to a lack of intent. A market-data profile gives the founding year as 2024 and identifies Amir Kavousian as Founder and CEO and Julian Mehnle as Founder and CTO.

Business model

B2B software sold to enterprise engineering and security organizations, characterized as subscription SaaS and usage-based SaaS.

Recurring software revenue via subscription and usage-based SaaS pricing, per a market-data profile; specific pricing is not published on the company site.

Traction

The company states that it is used by engineering and security teams and features endorsements from named security executives and practitioners, including a VP of platform and security engineering, several CISOs and heads of product security; no customer names, revenue or usage figures are published. A third-party profile reports headcount of roughly 13-15 and total funding raised of $2.72M.

Latest developments

A market-data profile records a seed round dated 10 April 2025 with Aviso Ventures and Seven Hill Ventures among the investors, and a firmographic signal dated 2 March 2026 noting headcount growth of 36% quarter over quarter, from 11 to 15 employees. The company's current positioning emphasizes securing agentic development, providing security context and guardrails to AI coding agents as well as developers.

Full profile — market position, technology, go-to-market, geography, history

Market position

An early-stage entrant in the automated threat modeling and security design review segment of application security. A third-party profile identifies Palosade, SecurityReview.ai and Seezo as the closest comparable companies, and the company's own writing names Microsoft, IriusRisk, SD Elements and SecuriCAD as the existing generation of threat modeling tools aimed at security professionals.

DevArmor positions itself against manual and consultant- or workshop-driven threat modeling and against scanner-centric tooling that generates large volumes of findings and backlog. Its stated distinctions are: security feedback delivered at the design phase and inside existing developer workflows rather than as a separate gate; continuous, automatically updated threat models rather than point-in-time documents; traceability of every review to an approved design decision or threat model; automated enforcement with the option to block unsafe merges; and coverage of AI coding agents as consumers of security context alongside human developers.

Technology

The platform relies on large language models, agents and multi-agent workflows. In its published writing, the company argues that LLMs can process unstructured inputs such as security policies, trust boundary descriptions and existing controls to infer application design from a codebase, a task earlier research and commercial tools struggled with. Product capabilities include automated generation and continuous updating of threat models, design and code review, and Policy-as-Code enforcement on pull requests, delivered through integrations with Jira, Google Docs, GitHub, MCP, VS Code and Cursor.

Go-to-market

Direct enterprise sales led by the founders, with the website funneling prospects to a booked demo ("Get a personalized demo from our founder"). The company uses named endorsements from security leaders and practitioners, an advisory group and angel investors drawn from security leadership roles, plus content marketing through a technical blog and a newsletter.

Application security, product security and engineering teams at large, fast-moving companies. DevArmor specifically names financial services, fintech, insurtech and similar regulated industries that must ship products quickly while meeting strict security and compliance requirements.

Geography

United States. A third-party profile lists the headquarters as Burlingame, California.

History

A market-data profile lists 2024 as DevArmor's founding year and a seed round dated 10 April 2025. The company published a two-part blog series on threat modeling automation beginning in August 2024, authored by co-founder Amir Kavousian, setting out its view that threat modeling should be automated and democratized. Firmographic signals on the same profile record headcount growth from 1 to 6 employees around March 2025 and from 11 to 15 employees around March 2026.

Compiled by commissioned research from 7 cited public sources — announcements, filings, and press listed under research sources below.

Key figures

latest reported
Employee countMar 202615 employees
Employee range (firmographic)Mar 202613 employees
Time to generate a threat model and requirementsMar 2026Less than 10 minutes
Total funding raisedMar 2026$2.7M
Year foundedMar 20262,024 year

Company-reported or press-reported figures, each dated to when it was claimed — not independently audited.

Timeline · 3

launches, deals, and filings
Mar 2026
Headcount grows from 11 to 15 employees

A firmographic signal dated 2 March 2026 records 36% quarter-over-quarter employee growth, from 11 to 15 employees.

source ↗

Mar 2025
Headcount grows from 1 to 6 employees

A firmographic signal dated 15 March 2025 records 500% quarter-over-quarter employee growth, from 1 to 6 employees.

source ↗

Aug 2024
Publishes threat modeling automation blog series

Co-founder Amir Kavousian published the first part of a two-part series setting out the company's position that threat modeling should be automated and democratized, covering the origins and challenges of threat modeling, secure-by-design, SDLC integration and the role of LLMs and agents.

source ↗

Dated company events from announcements, filings, and press; legal rows summarize public dockets and regulator releases.

Research sources · 7

primary sources listed

7 public sources were cited for this profile; the first-party ones are listed here.

Frequently asked questions

What does Devarmor do?
DevArmor is an application security platform that automates threat modeling and security design reviews for engineering teams.
Who founded Devarmor?
Devarmor was founded by Amir, Julian Mehnle, Amir Kavousian in 2025.
Who are Devarmor's investors?
Devarmor's investors include Aviso Ventures, Work-Bench.
Where is Devarmor headquartered?
Devarmor is headquartered in San Francisco, US.