Tenex, an AI-driven cybersecurity company, has announced a major expansion into the Europe, Middle East, and Africa (EMEA) market. The expansion, announced on December 2, 2025, is backed by a new strategic investment from DTCP, a global investment management firm. This funding is an addition to Tenex's existing $27 million Series A round. The Sarasota, Florida-based company, which specializes in AI-powered Managed Detection and Response (MDR), plans to establish a European headquarters in 2026 to serve the growing regional demand.
Founded in January 2025, Tenex has developed an MDR service that leverages AI agents to autonomously detect and respond to cyber threats, escalating to human experts only when necessary. The company has demonstrated remarkable growth, reportedly exceeding $10 million in revenue in its first six months and securing several Fortune 500 clients.
The initial Series A funding round was led by Crosspoint Capital Partners, with participation from other notable investors like Andreessen Horowitz (a16z).
The new investment from DTCP is specifically aimed at fueling Tenex's expansion into the EMEA region. The company's plans include:
Tenex CEO Eric Foster stated the expansion is a direct response to the increasing demand for advanced, AI-powered security solutions to combat sophisticated threats against critical infrastructure.
Tenex's rapid growth and expansion highlight several key trends in the cybersecurity industry:
The company's entry into the EMEA market will increase competition among MDR providers in the region and provides European customers with a new option for AI-native security services.
Tenex announces its expansion into the EMEA region and additional Series A funding from DTCP.

Cybersecurity professional with over 10 years of specialized experience in security operations, threat intelligence, incident response, and security automation. Expertise spans SOAR/XSOAR orchestration, threat intelligence platforms, SIEM/UEBA analytics, and building cyber fusion centers. Background includes technical enablement, solution architecture for enterprise and government clients, and implementing security automation workflows across IR, TIP, and SOC use cases.
Help others stay informed about cybersecurity threats
Every tactic, technique, and sub-technique used in this threat has been identified and mapped to the MITRE ATT&CK framework for consistent, actionable threat language.
Observables and indicators of compromise (IOCs) have been extracted and cataloged. Risk has been assessed and correlated with known threat actors and historical campaigns.
Detection rules, incident response steps, and D3FEND-aligned mitigation strategies are included so your team can act on this intelligence immediately.
Structured threat data is packaged as a STIX 2.1 bundle and can be visualized as an interactive graph — relationships between actors, malware, techniques, and indicators.
Sigma detection rules are derived from the threat techniques in this article and can be converted for deployment across any major SIEM or EDR platform.