
Andesite is building a future where cybersecurity is not just reactive but fundamentally human-centered, empowering cyber defense teams with AI that acts as an extension of their expertise rather than a replacement. Our vision centers on unlocking the full potential of security analysts by removing the noise and fragmentation of traditional tool stacks, enabling precise, transparent insights at the speed modern threats demand.
We are pioneering a new paradigm of "evidentiary AI," designed to explain its reasoning and build trust through auditable, compliance-enabled recommendations. By automating tedious tasks and unifying disparate data sources, Andesite transforms how organizations protect themselves against ever-evolving cyber challenges.
Our mission is to forge secure, resilient digital environments by integrating seamlessly with existing enterprise infrastructures, championing responsible AI development, and placing human judgment at the core of cybersecurity operations. In doing so, we strive to redefine the future of threat detection and incident response.
Our Review
We've been watching Andesite since they emerged from stealth, and there's something refreshingly honest about their approach to cybersecurity AI. While everyone else is racing to automate analysts out of existence, these folks are actually trying to make their jobs better.
The Intelligence Community Origin Story
What caught our attention first was CEO Brian Carbaugh's background with CIA cyber operators. This isn't another Silicon Valley team building security tools in a vacuum — Carbaugh witnessed real analysts drowning in alert fatigue and tool sprawl.
That experience shows in their platform design. Instead of promising to replace human expertise, Andesite built what they call "evidentiary AI" that explains its reasoning step-by-step. It's like having a really smart junior analyst who can actually tell you how they reached their conclusions.
Where They Actually Shine
The magic happens in their workflow unification. We're talking about taking investigations that normally require thousands of analyst-hours and shrinking them to minutes. Bold claim? Absolutely. But their approach of letting analysts ask questions in plain English while the AI handles the complex data correlation behind the scenes feels genuinely practical.
Their deployment flexibility impressed us too. SaaS for most organizations, but air-gapped on-premises for the really sensitive stuff. That's the kind of thinking that comes from understanding real-world security requirements.
The $38.5M Reality Check
With their recent $23 million seed extension, Andesite's total funding hit $38.5 million — serious money that suggests investors believe in their human-AI collaboration thesis. Being part of Red Cell Partners, a national security-focused venture studio, adds credibility to their government sector aspirations.
We appreciate their public commitments to responsible AI development too. Signing both the Cloud Security Alliance AI Trustworthy Pledge and CISA's Secure by Design Pledge shows they're thinking beyond just building cool technology.
Who Should Pay Attention
If you're running a SOC where analysts spend more time wrestling with tools than hunting threats, Andesite deserves a look. Their analyst-first philosophy could be exactly what overwhelmed security teams need — assuming they can deliver on those ambitious workflow acceleration promises.
Automates and accelerates security investigations
Unifies workflows across multiple enterprise security tools
Provides plain-language interaction for analysts
Delivers explainable, auditable AI-driven recommendations
Supports SaaS and air-gapped on-premises deployments
Encrypts data at rest, in transit, and in storage
Does not train AI on customer data






