Israel’s cyber numbers from 2025 were staggering.
We all know the big ones: Google acquired Wiz for $32 billion. Palo Alto Networks spent $25 billion to absorb CyberArk. ServiceNow bought Armis for $7.8 billion. When the final tally was complete, strategic mergers and acquisitions in the cybersecurity sector had reached $81 billion - more than four times the volume of the prior year, according to data compiled by Notable Capital and Morgan Stanley.
For Oren Yunger, Managing Partner at Notable Capital and one of the architects of the firm’s annual Rising in Cyber report, the significance of those deals runs deeper than just their valuations. “The ceiling has kind of been shattered,” he told me.
“You can build businesses that are just massive. You can do things that we, in the past, thought were unimaginable in cybersecurity,” he added. “Companies should get acquired between $200-400 million dollars — that’s the best you can do. Now we’re seeing companies that really are paving the way to the next set of companies to go and build bigger and stronger.”
For much of the last decade, cybersecurity exits were measured in hundreds of millions, not the tens of billions we see today. The Wiz deal alone, which became the largest high-tech exit and business deal in Israel's history, poses a new question to a new generation of founders: If they could become a $32 billion business, what is possible for us?
The M&A wave of 2025 coincided with a shift in how enterprises think about the AI era and the risks that come with it. In 2024 and early 2025, the defining question for enterprises deploying AI was whether they could build agents capable of autonomous action. Yunger now argues that that question has largely been answered and a new one has emerged.
“The big question that we’re seeing is: can you put it in production, can you scale that agent, can you trust its operations?” he said. “Security is just a huge part of this question that needs to be answered at enterprise scale.”
The Rising in Cyber 2026 report, which surveyed nearly 150 chief information security officers from the world’s largest companies, puts precise numbers on the gap between deployment and protection. Seventy-one percent of respondents said their organisations already have AI agents running in production environments. But only 11% described their tooling to secure those agents as mature. That gap is where Yunger sees the next wave of investment flowing, and where the next generation of large cybersecurity companies will be built.
The broader cybersecurity sector is projected to reach $255 billion by 2029, up from $153 billion in 2025, according to IDC estimates. Early-stage investment is accelerating: Series B rounds grew 74% to $3.3 billion in 2025, with average deal sizes jumping 75% to $49 million. In a year when most software categories saw venture funding decline, cybersecurity’s earliest rounds were the only segment to grow year over year.
The momentum has continued into 2026. CrowdStrike acquired SGNL, Palo Alto Networks purchased Koi, and Sophos acquired Arco Cyber — all in the first half of the year. The platforms that spent 2025 making transformational acquisitions are now targeting the AI-native capabilities they need to stay competitive as the threat landscape continues to evolve.
Microsoft, which dominates five of the largest cybersecurity verticals, is adding capabilities faster than at any point in its history, with CrowdStrike and Palo Alto doing the same. But their acceleration has not crowded out newer startups. If anything, it has raised the stakes for founders who can identify the problems that the large platforms have not yet solved.
“Security companies today are answering those questions,” Yunger said, “and the ones to follow will eventually accompany every single technology shift that is happening in the market and will continue to do so for as much as I can think of.”
Yunger claims the thesis is confirmed by Satya Nadella, Microsoft’s chief executive, who he said has described engineering as converging into four enduring disciplines. One of them is security engineering: a category he considers permanent regardless of how AI reshapes the rest of the technology industry. “Doesn’t matter how AI is affecting our markets, what jobs AI potentially will threaten and maybe change… Security is here to stay.”
For founders building in the space today, that is both a reassurance and a challenge. The ceiling “has been shattered” and the market is expanding faster than we all predicted. Large companies are acquiring quickly, and the venture dollars are flowing earlier.
What founders may be asking themselves now is if they can also build something the platforms may have no choice but to pay to absorb. And Wiz has shown them that the answer may be worth $32 billion.










