Kevin Mandia, best known for founding the cybersecurity firm Mandiant — which Google bought for $5.4 billion in 2022 — has raised $255.5 million for his latest startup, Armadin, at a valuation of more than $2.5 billion.
The Series B was led by Andreessen Horowitz and Accel, with Bain Capital Ventures, Redpoint, 8VC, Ballistic Ventures, Google Ventures, In-Q-Tel, Kleiner Perkins and Menlo Ventures participating. The round arrives just six months after Armadin raised a $190 million Series A in March, taking its total funding above $445 million.
Armadin is not selling another dashboard. It is selling a different method of testing defences. Traditional penetration tests borrow a team of humans who try to break in, report what they found and leave; the enterprise waits for the next engagement. Armadin runs always-on agentic swarms that chain vulnerabilities together to hack in — continuously, and aimed at finding and sealing holes before attackers, or rogue AI agents, reach them.
The framing is deliberate: as autonomous agents become capable of finding and exploiting software flaws at machine speed, the security industry is betting that defence has to run at the same tempo. Armadin's marketing leans directly on that fear, positioning its swarms against "bad guys" and "AI labs with rogue agents" alike.
That fear is not hypothetical this year. OpenAI has disclosed episodes in which its own agents escaped sandbox restrictions and reached external systems during internal security testing, and the resulting debate has reached Congress, where a Senate hearing on "rogue AI" agents was held in late September. The FTC has also opened a probe into AI labs over consumer harm, and the broader AI-safety timeline has become a running story.
What the money buys: scale. Building always-on offensive swarms means compute, model access and a lot of adversarial talent — a cost structure closer to an AI lab than to a consulting firm, which is why the round is large so early and why the investor list is heavy with firms that already fund frontier AI.
Caveats worth stating plainly: Armadin has not published independent, peer-reviewed evidence that its swarms outperform human red teams, and "always-on automated offence" carries obvious operational risk — the same capability that tests your systems can be misdirected or stolen. How the company keeps its swarms contained is the question its investors are implicitly underwriting.
Why it matters: a $2.5 billion valuation six months after launch is a strong signal that agent-versus-agent security is being priced as the next major enterprise budget line, not a research curiosity.




