rl-list.com
UPDATED 2026.06.07
rl-list.com · Vendors · Gray Swan AI
#9

Gray Swan AI

Commercial
medium confidence
www.grayswan.ai ↗ · Status: active confirmed · Founded 2023 or 2024 (conflicting: LinkedIn lists 2023; Tracxn lists 2024; public product launch July 16, 2024)

Gray Swan AI is a Pittsburgh-based AI security company spun out of Carnegie Mellon, offering adversarial red-teaming and runtime protection for AI models and agents via three products: Arena (a crowdsourced adversarial red-teaming network of 15,000+ researchers), Shade (automated red-teaming/pressure-testing), and Cygnal (runtime input/output guardrails). It positions itself as a security/evaluation partner to frontier labs and enterprises rather than a general RL-environment vendor.

Key facts
Headquarters
Pittsburgh, Pennsylvania, USAreported cite
Headcount band
11-50estimated cite
Total raised
$40Mreported cite
Last round
Series A, $40M, May 28, 2026confirmed cite
SOC 2
Type IIreported cite
What they sell
mixed (adversarial red-teaming/evals + runtime security infra; Arena crowdsourced red-teaming generates attack-trajectory data)confirmed cite
Open source
noestimated cite
Deployment
managed-hosted / API (SaaS: Cygnal runtime protection, Shade red-teaming, Arena hosted competition)reported cite

Scale & velocity

Current headcount
~29-75 (LinkedIn shows ~75 employees listed; Tracxn reports 59 as of 2026-04-30; PitchBook reports 29) - figure uncertain, sources divergeestimated cite
Headcount growth
unknown
Open roles
unknown (careers page advertises ML Engineer roles; exact count not enumerated) cite
Other locations
unknown
Distributed / remote
yes (careers page states flexible work arrangements)reported cite

Research depth

Has researchers
yesconfirmed cite
Researcher count
unknown (research team referenced; exact count not published) cite
Backgrounds
Zico Kolter (Co-founder, Chief Scientist) - CMU professor, AI safety/robustness researcher, OpenAI board member, Matt Fredrikson (Co-founder, CEO) - CMU faculty, adversarial ML researcher, Founding team of AI safety/security researchers from Carnegie Mellon University, Andy Zou - listed as co-founder by Tracxn only; not shown on the company's own about/team page (unconfirmed)reported cite
Papers / benchmarks
Research cited in 11 frontier model system cards (Anthropic Claude family, OpenAI GPT-5/o1/o3-mini, Meta Muse Spark) - per vendor, UK AISI x Gray Swan Agent Red-Teaming Challenge (https://www.grayswan.ai/news/uk-aisi-x-gray-swan-agent-red-teaming-challenge-results-snapshot), NIST CAISI blog: Insights into AI Agent Security from a Large-Scale Red-Teaming Competition (https://www.nist.gov/blogs/caisi-research-blog/insights-ai-agent-security-large-scale-red-teaming-competition)reported cite

Capital

Total raised
$40M disclosed (Series A $40M; any prior seed amount not publicly disclosed)reported cite
Last round
Series A, $40M, May 28, 2026confirmed cite
Investors
Wing Venture Capital (co-lead), Madrona (co-lead), Obvious Ventures, Snowflake Ventures, Hudson River Trading, Samsung Next, Magarac Venture Partners (existing)confirmed cite
Valuation
unknown
Revenue signals
unknown

Security & compliance

SOC 2
Type IIreported cite
Other certifications
Cyber Essentialsreported cite
Security page
https://trust.grayswan.aiconfirmed cite

Product

What they sell
mixed (adversarial red-teaming/evals + runtime security infra; Arena crowdsourced red-teaming generates attack-trajectory data)confirmed cite
Open source
noestimated cite
License
unknown
Deployment model
managed-hosted / API (SaaS: Cygnal runtime protection, Shade red-teaming, Arena hosted competition)reported cite
Maturity
GAreported cite
Notable customers
Anthropic verified OpenAI verified Meta verified Google DeepMind self-claimed xAI self-claimed Amazon self-claimed Snowflake self-claimed ByteDance self-claimed ElevenLabs self-claimed Intercom self-claimed Deloitte self-claimed UK AI Security Institute (AISI) verified Anaconda self-claimed OpenHands self-claimed AIUC self-claimed cite

Buyer analysis

Best fit: Buyers needing adversarial evaluation, red-teaming arenas, and runtime guardrails for frontier or enterprise LLM/agent deployments.

How we verified this

Confirmed the $40M Series A (May 28, 2026), co-led by Wing and Madrona with Obvious Ventures, Snowflake Ventures, Hudson River Trading, Samsung Next, and existing Magarac, via both the official announcement and finsmes/multiple press (investors kept 'confirmed', last_round 'confirmed'). No seed amount is publicly disclosed, so total_raised was corrected to $40M disclosed (removed the speculative '+'). This is the correct company matching 'adversarial evaluation arenas' (Arena crowdsourced red-teaming network). Customer logos all originate from the vendor's own homepage = self-claimed; only Anthropic, OpenAI, Meta (named in the press release plus 11 system-card citations) and UK AISI (joint challenge corroborated by NIST CAISI) are retained as 'verified'; DeepMind and xAI remain self-claimed logos. Headcount sources diverge (PitchBook 29, Tracxn 59, LinkedIn ~75); downgraded band from 51-200 to 11-50 since most signals are under 50 for a fresh Series A startup. Founding year conflict (2023 vs 2024, launch July 2024) flagged rather than asserted. Andy Zou's co-founder status rests only on Tracxn and is absent from the company's own team page - flagged unconfirmed. SOC 2 Type II and Cyber Essentials confirmed present on trust.grayswan.ai (kept 'reported' as the page is gated). Removed 'computer use environments' from focus_areas as unsupported.

Related vendors

Sources

  1. www.grayswan.ai/ · 2026-06-07, Homepage: products (Cygnal, Shade, Arena), customer logos, SOC2/Cyber Essentials, trust center link
  2. www.grayswan.ai/about · 2026-06-07, Founders, CMU origin, products, frontier-lab system-card citations
  3. www.grayswan.ai/news/gray-swan-announces-series-a · 2026-06-07, $40M Series A, investors, 20+ customers, 11 system cards, Arena metrics
  4. www.grayswan.ai/careers · 2026-06-07, Hiring ML Engineers, Pittsburgh office, flexible work policy
  5. trust.grayswan.ai · 2026-06-07, SOC 2 Type 2, Cyber Essentials
  6. www.linkedin.com/company/grayswanai · 2026-06-07, Public snippet: founded 2023, Pittsburgh HQ address, ~75 employees listed, Computer & Network Security
  7. tracxn.com/d/companies/gray-swan-ai/__nZCNR23H086-Z-r6gED-nlgrD6otsq465- · 2026-06-07, Headcount 59 as of 2026-04-30; founders listed as Matt Fredrikson and Andy Zou; founded 2024 (conflicts with 2023)
  8. www.finsmes.com/2026/06/gray-swan-raises-40m-in-series-a-funding.html · 2026-06-07, Series A details, Pittsburgh, May 28 2026
  9. technical.ly/entrepreneurship/gray-swan-ai-security-40m-series-a/ · 2026-06-07, Series A coverage with plans to grow team (page returned 403 on fetch; title-level info only)
  10. natlawreview.com/press-releases/gray-swan-ai-security-company-trusted-ev · 2026-06-07, Press release: trusted by every major frontier lab claim
  11. www.nist.gov/blogs/caisi-research-blog/insights-ai-agent-security-large- · 2026-06-07, NIST CAISI blog referencing large-scale agent red-teaming competition
  12. www.grayswan.ai/news/uk-aisi-x-gray-swan-agent-red-teaming-challenge-res · 2026-06-07, UK AISI joint red-teaming challenge
Last updated 2026-06-07 · Every quantitative field carries a source and a confidence tag. Fields we could not source publicly are marked unknown, never estimated. See the methodology.