Santosh Kandala

Security Leadership @ OpenAI

📍 United States🔄 Updated September 2026💼 3 investments📅 2 years investing🗓 Last invested Aug 2025
Angel investor🌍 United States
3
Total investments
1
Early stage
1
Mid stage
0
Late stage
2y
Years active

Portfolio

3 investments · sorted by recency
All investments
Early stage
Mid stage
Late stage
Investor/Advisor
Aug 2025
Causal Dynamics Lab is the Causal AI Lab for Autonomous Reliability. Current AI systems optimize for sounding correct rather than being correct. They pattern match, hallucinate confidently, and cant actually understand the systems they operate in. A better approach is possible: Causal AI, because the “why” matters. What we build: Every product starts with the same foundation: the Production World Model, a living representation of your production environment connecting code, configuration, infrastructure, policy, and the decisions behind every change. We build AI that reasons through cause and effect, then act. Why Causal AI: Traditional tools rely on correlation - they tell you what happened. We use causal reasoning to tell you what will happen. This is deterministic proof, grounded in the Pearl Causal Hierarchy. Built by operators, powered by deep research: Founded by the team that built reliability at Uber during hyperscale. Backed by deep R&D partnerships with Top AI Labs from a prestigious University, and advisors from Google DeepMind, Microsoft Research, and Hugging Face. Ship at the speed of AI without compromising production stability.
Investor/Advisor
Feb 2025
Every security team runs vulnerability scanners. Every scanner produces thousands of findings. 95% are not actually exploitable in your environment. Scanners check version match. Others check if the package is in use. Neither checks whether the specific exploitation conditions are met. Defendermate closes that gap. # FILTER: Verify whether the specific exploitation conditions are met on each resource. Feature state, configuration, security context, kernel, parameters. Agentless, read-only, full audit trail. # PRIORITIZE: Model your infrastructure as a graph. Trace attack paths with typed consequences at each hop. Compute internet exposure and blast radius. Three DM Score variants so every stakeholder sees the view they need. # EXPLORE: Every team queries vulnerabilities, attack paths, and cloud posture in natural language. Evidence-backed answers from verified data. Not generative guessing. Scanner-agnostic. Works with what you already run. Built for the post-AI era. Founded by a former CISO (UiPath, Spotnana, 2K Games) who spent years doing this work manually. https://www.defendermate.com
Investor/Advisor
Apr 2024
StepSecurity secures CI/CD at scale by enforcing runner-level network egress controls, providing secure, drop-in replacements for third-party actions, and ensuring only policy-compliant workflows run. Over 11,000 open-source projects, including those from Cybersecurity and Infrastructure Security Agency (CISA), Google, Microsoft, Datadog, Kubernetes, NodeJS, and Ruby, use StepSecurity to harden their CI/CD pipelines. Our enterprise tier is currently deployed at customers in the crypto, healthcare, and cybersecurity industries. The StepSecurity platform secures more than 18,000,000 CI/CD job runs every week.
Experience · 4 entries
All (4)
Investments (3)
2025
Investor/Advisor
Aug 2025
Causal Dynamics Lab is the Causal AI Lab for Autonomous Reliability. Current AI systems optimize for sounding correct rather than being correct. They pattern match, hallucinate confidently, and cant actually understand the systems they operate in. A better approach is possible: Causal AI, because the “why” matters. What we build: Every product starts with the same foundation: the Production World Model, a living representation of your production environment connecting code, configuration, infrastructure, policy, and the decisions behind every change. We build AI that reasons through cause and effect, then act. Why Causal AI: Traditional tools rely on correlation - they tell you what happened. We use causal reasoning to tell you what will happen. This is deterministic proof, grounded in the Pearl Causal Hierarchy. Built by operators, powered by deep research: Founded by the team that built reliability at Uber during hyperscale. Backed by deep R&D partnerships with Top AI Labs from a prestigious University, and advisors from Google DeepMind, Microsoft Research, and Hugging Face. Ship at the speed of AI without compromising production stability.
Investor/Advisor
Feb 2025
Every security team runs vulnerability scanners. Every scanner produces thousands of findings. 95% are not actually exploitable in your environment. Scanners check version match. Others check if the package is in use. Neither checks whether the specific exploitation conditions are met. Defendermate closes that gap. # FILTER: Verify whether the specific exploitation conditions are met on each resource. Feature state, configuration, security context, kernel, parameters. Agentless, read-only, full audit trail. # PRIORITIZE: Model your infrastructure as a graph. Trace attack paths with typed consequences at each hop. Compute internet exposure and blast radius. Three DM Score variants so every stakeholder sees the view they need. # EXPLORE: Every team queries vulnerabilities, attack paths, and cloud posture in natural language. Evidence-backed answers from verified data. Not generative guessing. Scanner-agnostic. Works with what you already run. Built for the post-AI era. Founded by a former CISO (UiPath, Spotnana, 2K Games) who spent years doing this work manually. https://www.defendermate.com
2024
Investor/Advisor
Apr 2024
StepSecurity secures CI/CD at scale by enforcing runner-level network egress controls, providing secure, drop-in replacements for third-party actions, and ensuring only policy-compliant workflows run. Over 11,000 open-source projects, including those from Cybersecurity and Infrastructure Security Agency (CISA), Google, Microsoft, Datadog, Kubernetes, NodeJS, and Ruby, use StepSecurity to harden their CI/CD pipelines. Our enterprise tier is currently deployed at customers in the crypto, healthcare, and cybersecurity industries. The StepSecurity platform secures more than 18,000,000 CI/CD job runs every week.
2016
Principal Security Engineering Manager - Cloud (Azure) Security
Sep 2016
Every company has a mission. Whats ours? To empower every person and every organization to achieve more. We believe technology can and should be a force for good and that meaningful innovation contributes to a brighter world in the future and today. Our culture doesn’t just encourage curiosity; it embraces it. Each day we make progress together by showing up as our authentic selves. We show up with a learn-it-all mentality. We show up cheering on others, knowing their success doesnt diminish our own. We show up every day open to learning our own biases, changing our behavior, and inviting in differences. Because impact matters. Microsoft operates in 190 countries and is made up of approximately 228,000 passionate employees worldwide.
Investment activity
2024–2025 · 3 investments
2024120252
Recent (last 2 years)Earlier