Fianu Labs on Wednesday emerged from stealth mode and announced that it has raised $2 million in seed funding from startup foundry DataTribe for its software governance automation solution.
The Fulton, Maryland-based company says its platform is designed to bridge the gap between engineering, quality assurance, security, risk, and audit by capturing and maintaining a continuous audit trail for every code modification.
Fianu’s solution monitors activity throughout the DevSecOps toolchain and generates an immutable ledger of attestations.
It can capture key security data points using integrations with existing security tools, ensure that the software meets quality requirements (functionality, performance, accessibility), and monitor and enforce best practices. It can also be used to create custom controls.
“Fianu’s platform captures evidence across the DevSecOps toolchain mapped to internal policy during real-time, continuous audits against established risk controls and compliance frameworks. Each software release is accompanied by a Software Bill of Attestations (SBOA) designed to transmit immutable, audit-worthy evidence,” the company explains.
Fianu is initially working with medical device and pharmaceutical companies to help them meet FDA requirements.
The company believes that while demand for such solutions is currently high mainly in regulated industries, all companies making custom software will need to meet governance requirements in the future.
Related: Sysdig Introduces CNAPP With Realtime CDR
Related: AutoRABIT Raises $26 Million for Salesforce DevSecOps Platform
Related: Cypago Raises $13 Million for GRC Automation Platform
Related: Digital Identity Protection Firm SpyCloud Raises $110 Million

Eduard Kovacs (@EduardKovacs) is a managing editor at SecurityWeek. He worked as a high school IT teacher for two years before starting a career in journalism as Softpedia’s security news reporter. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.
More from Eduard Kovacs
- CISA Warns of Old JBoss RichFaces Vulnerability Being Exploited in Attacks
- NIST Publishes Final Version of 800-82r3 OT Security Guide
- Johnson Controls Hit by Ransomware
- Verisoul Raises $3.25 Million in Seed Funding to Detect Fake Users
- Government Shutdown Could Bench 80% of CISA Staff
- Google Rushes to Patch New Zero-Day Exploited by Spyware Vendor
- macOS 14 Sonoma Patches 60 Vulnerabilities
- New GPU Side-Channel Attack Allows Malicious Websites to Steal Data
Latest News
- Bankrupt IronNet Shuts Down Operations
- AWS Using MadPot Decoy System to Disrupt APTs, Botnets
- Generative AI Startup Nexusflow Raises $10.6 Million
- In Other News: RSA Encryption Attack, Meta AI Privacy, ShinyHunters Hacker Guilty Plea
- Researchers Extract Sounds From Still Images on Smartphone Cameras
- National Security Agency is Starting an Artificial Intelligence Security Center
- CISA Warns of Old JBoss RichFaces Vulnerability Being Exploited in Attacks
- Hackers Set Sights on Apache NiFi Flaw That Exposes Many Organizations to Attacks
