NewCore offers a security‑first identity platform that continuously discovers, maps, and governs every human and AI agent identity across an enterprise.
Funding
$66M raised to dateRaised to date based on public sources. This may differ from the amount the company actually raised and is based only on what is publicly available on the internet.



Founders
Product
Problem
Enterprise breaches increasingly originate from compromised identities, yet traditional identity platforms focus on provisioning access rather than preventing credential abuse. The rise of AI agents and service accounts expands the identity surface, creating unmanaged, shadow identities that lack governance and become single points of failure.
Solution
NewCore provides a security‑first identity platform that continuously discovers, maps, and governs every human and AI agent identity across an organization. By unifying fragmented accounts from directories, HR systems, cloud providers, and shadow services into a single live record, it gives security teams instant visibility into who has access to what. The platform eliminates single points of compromise with a Secure Split Key architecture and enforces phishing‑resistant, device‑bound authentication by default. Agentic identities receive first‑class treatment through agentic SSO, task‑scoped tokens, and real‑time policy evaluation at machine speed, enabling full lifecycle management—from provisioning to revocation—without disrupting existing IdP setups.
Target Audience
Primary customers are enterprise security and identity teams that need to secure large, hybrid workforces—including AI agents and service accounts—and organizations adopting AI‑driven automation at scale.
Features
- Continuous discovery and mapping of all identities (human, AI agents, service accounts) across directories, IdPs, HR, IGA, PAM, and undocumented shadow systems
- Unified identity records that consolidate permissions, applications, and access paths into a single searchable view
- Secure Split Key (SSK) architecture that splits signing keys between NewCore and the customer’s perimeter, removing a single point of compromise
- Phishing‑resistant, visual MFA and device‑bound authentication anchored in TPM/Secure Enclave, invisible to users via standard SAML/OIDC flows
- Agentic SSO and short‑lived, task‑scoped tokens that grant agents only the permissions needed for each job
- Real‑time, inline policy enforcement and token minting at machine speed for both humans and agents
- AI‑driven recovery challenges and automated credential revocation without help‑desk intervention
- Single dashboard with live data, plain‑language querying, and comprehensive reporting for governance and compliance