Cytix, a Manchester, United Kingdom-based AI-powered continuous security testing and change risk management platform, has raised $7,000,000 in Series A funding led by Northern Gritstone. The platform analyzes every code change, ticket, PR, and release to identify risk, prioritize testing, and auto-approve low-risk changes. It integrates with Jira, Azure DevOps, and GitHub Issues. The capital will accelerate the rollout of its change risk platform into enterprise and regulated markets.
AI Code Floods Security Pipelines
The timing aligns with a surge in AI-assisted development that generates code faster than traditional security models can handle. Clover Security raised $36M in November 2025, while Prime Security secured $26M in December 2025. Cytix's approach focuses on change risk management across the full software lifecycle rather than design-stage reviews alone.
Change Governance Becomes Regulatory Priority
Only 38% of security leaders feel ready to handle AI-generated code risks. Enterprises in regulated industries face mounting obligations to document and govern software changes. Existing vulnerability scanners identify issues but leave teams without context on which changes actually matter for risk.
Platform Judges Risk of Every Change
Cytix reads the context behind tickets, pull requests, and releases to decide what requires testing. It triggers targeted micro penetration tests only where risk is highest. This differs from competitors like Aikido Security, which raised $94.7M and offers broad scanning across code and cloud, or Cobalt, which raised $86.5M for human-led pentesting as a service.
As Ben Armstrong, CEO of Cytix noted:
"Scan and fix is no longer enough. What organisations need now is judgement: which changes matter, what response is proportionate, and what evidence stands behind it."
Northern Gritstone Leads Unsolicited Round
Northern Gritstone led the round after making an unsolicited offer, signaling strong conviction in deep tech from the North of England. Existing investors Auriga Cyber Ventures and NPIF II – PXN Ventures participated. The investor profile validates the shift toward continuous governance over periodic testing.
Application Security Market Expands Rapidly
The application security market stands at $14.83B in 2026 and is projected to reach $28.11B by 2031 at 13.64% CAGR. The broader security testing market is expected to hit $111.76B by 2033. PTaaS grows at 22.6% CAGR through 2031. Competitors such as Synack with $112M total funding continue to dominate human-augmented models, yet demand grows for automated change-focused tools.
Serial Founder Brings Exit Track Record
Executive chair Jeremy Gidlow previously sold Intechnica for £14.5M and co-founded Netacea. The leadership team combines this experience with a lean 17-person operation that has already secured partnerships with NCC Group and KPMG.
Platform Relaunch Targets Enterprise Scale
With the new funding, Cytix is expanding sales and engineering teams in Manchester while pushing the change risk platform to more enterprise accounts through its managed service channels.
