Microsoft Selects Start Left® Security for Startup Program

June 1, 2023

Designed to enable cloud-native innovators to quickly scale, become enterprise-ready, and transact on the Azure marketplace.


JACKSONVILLE, FL—(EIN PRESSWIRE)—Today, Start Left® Security, a cloud-native security innovator that uses a patented platform to unify application securitywith cloud security posture management (CSPM) and security analytics, announced that it has been accepted to join the Microsoft for Startups program, which is designed to help emerging B2B software startups. Customers that would get the most benefits from Start Left®'s Application Security Posture Management (ASPM) Platform are also heavy users of Microsoft cloud solutions, thus the partnership is mutually beneficial.


“When compared to other CNAPPs, Start Left® Security stands out as a truly different example. Their analytics, a more modern approach, and ability to work with any existing customer-provided solution is crucial."


"Our objective is to empower startups at every stage of their journey," said Bharat Shah,  Corporate Vice President at Microsoft. Our mission is to help our customers identify innovative solutions developed by seed-stage firms like Start Left® Security. Start Left® has a unique approach to
CNAPP that is significantly different from what I have seen. Their combination of analytics-driven detection and response with a “start left” methodology rather than the traditional “shift left” approach allows Start Left® Security to leverage any solution a customer already has in their environment to add more value. We are excited that Start Left® can also integrate with Microsoft Azure Cloud, Azure Machine Learning, Azure Active Directory, and Sentinel to give our customers the confidence that comes with an enterprise-ready solution.”


Start Left® Security delivers intelligent insights and actions by providing out-of-the-box automation and ML-driven security posture management analytics that finds unknown risks across code, people, CI/CD pipelines, product lines, multi-clouds, workloads, data, and more. Start Left®’s no-code API is an easy-to-use platform to integrate lots of APIs. It enables customers to focus on their business without being distracted by API integration and the overwhelming amount of information from all the tools that is difficult to sort through manually. Start Left® Security does the analysis for you to save time and resources. The platform’s clean UI makes understanding risks simple for everyone across traditionally siloed groups such as SecOps, CloudOps, GRC, DevOps, and engineering.


Personalized support is available through Microsoft's Startups program to help businesses like Start Left® Security get off to a fast start. The program operates to help startups receive assistance in developing a scalable solution using Microsoft technologies: optimizing the architecture, ensuring security, identity and privacy, and become an enterprise-grade solution. When it comes to GTM, entrepreneurs are assisted in becoming enterprise sales and marketing ready, and ensure the startups are ready to accept investment capital so they may speed up their growth.


Jeremy Vaughan, co-founder and CEO of Start Left® Security, says, "It is an honor to join Microsoft for Startups and get this opportunity to benefit from Microsoft's experience, technology, reputation, and client base around the world. Our goal is to help businesses improve their security, cross-departmental collaboration, and operational efficiency by facilitating the seamless integration of existing cloud-based CI/CD tools and cloud platforms, and by automatically identifying and prioritizing security issues and risks like gaps in monitoring of people, processes, activities, behaviors, and technology. In collaboration with Microsoft, we can reach a far larger audience.”


About Start Left® Security

Start Left® Security is a proactive security firm serving cloud-native SaaS businesses. We reimagined cloud-native product portfolio security giving your Security, CloudOps, Engineering, DevOps & GRC teams back valuable time and reducing the cognitive load from all the Cloud Security and DevSecOps tool complexity and vulnerability scan data.


Start Left® Security's platform leverages proprietary real-time machine learning (ML) to crunch massive amounts of data from cloud-based tools and applies ML-driven analytics to correlate, detect and prioritize threat signals across CI/CD and cloud telemetry. We are passionate about advancing the state-of-the-art in burgeoning areas such as code-to-cloud systems integrity, behavior analytics, risk surveillance, and predictive threat capabilities, enabling customers to maintain quality and safety at the speed of innovation.


We at Start Left® Security understand that developers are the new data protectors, and that they should be able to choose the tools they need to innovate and be productive without sacrificing security. However, this is only true if IT leadership employs the continuous assurance and continuous controls monitoring that is inherent in the Start Left® Security automated governance framework. When given the choice, staff are more likely to take pride in their work, and cloud application protection becomes everyone's responsibility rather than just Security Operations. Start Left® Security is the only platform that facilitates the true spirit of DevSecOps culture and the project-to-product transformation.


Visit us at startleftsecurity.com and follow us on Twitter at @startleftAI.


All names and trademarks are the property of their respective firms.


Contact

media@startleftsecurity.com

PDF Version

SHARE!

More Resources

March 26, 2025
Application Security Posture Management (ASPM) and Developer Security Posture Management (DevSPM) tools promise visibility, prioritization, and increased security coverage—compelling offerings for any security-conscious organization. However, there's a critical gap that technical evaluations led solely by AppSec engineers often overlook.
March 22, 2025
From Reactive to Engineering Excellence In our original " Toyota Moment " post, we exposed the fundamental flaw in how cybersecurity has evolved: we’ve treated it like post-production inspection, not like quality engineering. This follow-up digs deeper into how we got here, why the industry's stuck in a loop, and what the shift to Execution Intelligence really means. The security industry, much like early manufacturing, was built on reactivity—not design. But just as Toyota revolutionized manufacturing with Lean systems and embedded quality, software security is ready for its own transformation. 🔁 Here’s how it’s played out over the last 25 years: REACTIVE (2000-2015) — Piling on tools, alerts, and policies ⬇ WARRANTY (2015-2025) — CSPM + GRC retrofits risk after code ships; shift-left emerges ⬇ PROACTIVE (2022-2026) — ASPM solves what CSPM misses (but only tracks and doesn't fix the overarching problems with the security "system") ⬇ EXCELLENCE (2025-FUTURE) — Start Left as a methodology connects risk to developer behavior and builds security into execution itself
March 19, 2025
Traditional Application Security Posture Management (ASPM) vendors are getting it wrong because they’re focused on the wrong unit of measure.
March 13, 2025
The Industry is Stuck in a Broken Model For decades, cybersecurity has been a bolt-on process—chasing vulnerabilities, enforcing controls, and tracking risks instead of fixing the way software is built. The result? More tools, more alerts, more friction—but no real improvement in execution. Engineering continues to move forward, shipping faster than ever, but security remains reactive, layered on at the end of the development lifecycle, slowing teams down.
January 17, 2025
Security teams often rely on CSPM (Cloud Security Posture Management) and Runtime Protection to safeguard cloud environments and applications after deployment. However, these solutions fail to address the root cause of vulnerabilities—unsecure development practices.
January 10, 2025
The Shift from Developer-Led to Developer-Championed Security
January 3, 2025
The cybersecurity industry loves yet another good buzzword. Right now, CNAPP (Cloud-Native Application Protection Platform) is the term being marketed as the ultimate convergence of ASPM (Application Security Posture Management) and CSPM (Cloud Security Posture Management). But here’s the reality: CNAPP isn’t truly a best-of-breed convergence—it’s an acquisition-fueled patchwork of separate tools stitched together.
December 13, 2024
Discover the hidden costs of ignoring Security by Design. Learn why embedding security into your software development process is essential to avoid compliance risks, customer trust issues, and operational inefficiencies. Explore best practices to safeguard your growth and future-proof your business.
November 21, 2024
While CSPM & ASPM platforms stitched together in an acquisition claim to offer an integrated approach to security by aggregating data across the full lifecycle of software development, they often fall short of delivering true integration. Instead of fostering a cohesive, product-centric DevOps model, these platforms inadvertently create silos within their own systems. The root of the problem lies in the way these platforms are designed—they focus on providing lifecycle scan aggregation without addressing the need for a people-focused, product-centric implementation that truly facilitates DevSecOps.
Show more
Share by: