← State of Embedded Finance 2026

Thoropass

Can a compliance SaaS platform that bundles AI automation with in-house auditors become the default operating system for enterprise security certification across every major framework?

HQNew York, NY
Latest roundSeries B
IndustryVertical SaaS / Compliance & Security
The story

Originally founded as Laika, the company built a compliance automation tool aimed at early-stage startups seeking SOC 2 certification. It rebranded to Thoropass and evolved into a broader 'end-to-end cybersecurity auditor' platform combining AI-powered evidence collection with in-house human auditors. The Series B, led by JPMorgan Growth Equity Partners, validated the upmarket push toward enterprise compliance covering frameworks such as HITRUST and PCI DSS alongside SOC 2, ISO 27001, GDPR, and HIPAA. The strategic bet is that owning the entire audit workflow—evidence collection, integrations, human auditors, and trust center publishing—creates durable switching costs.

Last 12 months
2025-01
2025-06
Product timeline
2024
Added support for HITRUST Validated Assessment and PCI DSS with certified ASV scans and pentesting, expanding beyond SOC 2 and ISO 27001.· pivot
The stack
Payroll
Finch
Accounting
QuickBooks
Accounting gap: minor