Oak
by Oak
The AI-native identity operating system for humans, machines, and AI agents
Oak is an AI-native identity operating system that governs human, machine, and AI-agent identities from a single live graph, aimed at enterprise CISOs and IAM leaders. It came out of stealth on July 15, 2026 with $60M in funding and is generally available.
Oak is an enterprise identity platform that emerged from stealth on July 15, 2026, positioning itself as an AI-native "identity operating system" built to govern human, machine, and AI-agent identities from a single unified, live graph rather than the retrofitted tools most enterprises use. It connects to on-premises, SaaS, cloud, and proprietary systems and includes an AI connector framework that maps granted access to actual application usage and removes permissions that are no longer needed in real time, replacing periodic access reviews with continuous, risk-based governance and triggers for anomalies such as unusual login locations. The company was founded by Shai Morag (former Tenable chief product officer and founder of Ermetic) and Tal Marom (former Tenable product lead), consulted roughly 100 CISOs and IAM leaders while building the product, and reached general availability with enterprise clients already deployed. Oak raised a $60 million seed round in late 2025 led by Accel, CRV, and Greylock Partners, with participation from AlphaDrive Ventures, Hetz Ventures, and angel investors. The platform is GDPR and CCPA certified and offers an "Oak White Gloves" onboarding program for qualified Fortune 500 organizations.
At a Glance
- Category
- Governance & Security
- Pricing
- Contact for pricing
- Target Market
- CISOs, CIOs, IAM Leaders, Security Teams
- Headquarters
- Israel
- Customers
- Deployed with enterprise clients (names undisclosed)
Key Features
- ✓Unified identity graph
A single live data model that sees and governs human, machine, and AI-agent identities together.
- ✓AI connector framework
Maps granted access to actual app usage and removes permissions that are no longer needed in real time.
- ✓Real-time governance
Continuous, risk-based access monitoring that replaces periodic reviews and flags anomalies like unusual login locations.
- ✓Broad system coverage
Connects to on-premises, SaaS, cloud, and proprietary systems for discovery, governance, and remediation.
Capabilities
Use Cases
- •AI-agent identity governance
Discover and govern the identities and permissions of AI agents alongside human and machine accounts.
- •Continuous least privilege
Automatically strip access that usage data shows is no longer needed, in real time.
- •Unified access visibility
Give security teams one live graph across on-prem, SaaS, cloud, and custom systems.
Ideal For
Best For
- ✓Governing identity across humans, machines, and AI agents in one graph
- ✓Removing unused or excessive permissions in real time instead of via quarterly reviews
- ✓Managing non-human and AI-agent identities across cloud, SaaS, and on-prem systems
Deployment
Market & Ratings
Deployed with enterprise clients (names undisclosed)
Market Analysis
Pros
- ✓Unifies human, machine, and AI-agent identity in one graph
- ✓Real-time permission removal tied to actual usage
- ✓Founded by experienced identity/security operators from Tenable and Ermetic
Cons
- ✗Only just emerged from stealth (July 2026) with limited public track record
- ✗Customer names are undisclosed
Pricing
Oak is generally available to enterprises with pricing not publicly disclosed; qualified Fortune 500 organizations can access an "Oak White Gloves" program offering up to 500 hours of services and all connectors.
Sources
This page was written from 2 sources, 1 on domains other than oak.id.
Stay Ahead of the Curve
Weekly enterprise AI insights for technology leaders. No spam, no vendor pitches—unsubscribe anytime.
SubscribeRelated Products
Act Security
Action-centric cloud security that removes standing access from humans, workloads and AI agents
Ambient.ai
Agentic physical security: vision-language models that watch every camera continuously
Obsidian Security
Governs what AI agents and non-human identities can access and do inside your SaaS apps
Ceros
Bind every AI agent session to a real person on a verified device — and block what policy forbids