Fig Secures $38 Million to Overhaul Security Pipelines
Security operations platform Fig has launched a new CI/CD workflow designed to allow engineers to build, test, and deploy detection infrastructure through a single, automated process. The company, which has raised $38 million from investors including Team8 and Ten Eleven Ventures, aims to replace manual, fragile security configurations with version-controlled, observable pipelines.
Mapping the Deterministic Security Graph
Security teams often struggle with “fragility” in their detection infrastructure. Minor updates to upstream systems or cloud services can silently disable threat detection pipelines. Fig addresses this by creating a deterministic graph of the entire security stack. This data lineage allows engineers to map every detection flow and data source.
When an engineer proposes a change, the platform simulates the impact within the live environment before deployment. This process mirrors the development cycles used in software engineering, providing version control and the ability to roll back changes if a configuration breaks a detection flow.
Reducing Operational Friction
The workflow is designed to accelerate complex security tasks. Jayme Hancock, Head of Security Operations and Engineering at AppLovin, stated that the platform allows his team to “build and ship accurate detection changes in minutes instead of weeks, without the endless plumbing.”
By treating security configurations as code, the platform offers three primary operational shifts:
- Faster Migrations: SIEM migrations can be completed in weeks rather than months, maintaining operational status throughout the transition.
- Data Control: Teams can manage ingest and storage costs without disrupting active detection rules.
- Continuous Observability: The system verifies that detection flows remain functional as the underlying environment evolves.
Industry Veterans Aim for Resilience
Fig was co-founded by veterans of Google SecOps and Siemplify. The company has gained traction with deployments across dozens of Fortune 500 companies and was recognized as an RSAC Innovation Sandbox finalist.
Gal Shafir, Co-Founder and CEO of Fig, noted that the platform is intended to eliminate the historical trade-off between speed and system confidence. “Security teams shouldn’t have to choose between moving quickly and maintaining confidence in their SecOps Infrastructure,” Shafir said. By applying software development discipline to security operations, the company aims to move the industry toward a model where resilience is a default state rather than a reactive measure.
Worth a look