Root.io

About Us

Root.io was founded to make secure, transparent software delivery accessible to every organization.

Our mission

Container Security Without Compromise: Meet Root!

Root helps companies secure containerized software quickly, without disrupting workflows or needing extensive retooling. We integrate with existing processes to ensure robust security, compliance, and trust throughout the software lifecycle.

Join Root and Revolutionize Container Security. Together, we can build a more secure and efficient software development future.

Our mission

Container Security Without Compromise: Meet Root.io

Root.io helps companies secure containerized software quickly, without disrupting workflows or needing extensive retooling. We integrate with existing processes to ensure robust security, compliance, and trust throughout the software lifecycle.

Join Root.io and Revolutionize Container Security. Together, we can build a more secure and efficient software development future.

Our Values

Your Trusted Partner for Secure, Innovative, and Collaborative Solutions

Growth Mindset

We're building software for a sustainable future. We embrace challenges, learn from mistakes, and strive to improve.

Security

As supporters of CNCF, OWASP, and OASIS, Root.io actively contributes to open standards, strengthening the global cybersecurity.

Innovation

We treat everything as an experiment, embracing rapid iteration to stay at the forefront of security solutions and accelerate growth.

Transparency

Root.io is committed to openness and clarity, fostering trust by providing actionable security insights and adhering to open standards. ​

Customer Success​

We are committed to your success and hold ourselves accountable. We excel in providing support and celebrating your wins.​

Community Building​

We believe in community power. At Root.io, we foster accountability while working toward shared goals and succeeding as a team.​

Our Values

Your Trusted Partner for Secure, Innovative, and Collaborative Solutions

Growth Mindset

We're building software for a sustainable future. We embrace challenges, learn from mistakes, and strive to improve.

Security

As supporters of CNCF, OWASP, and OASIS, Root.io actively contributes to open standards, strengthening the global cybersecurity.

Innovation

We treat everything as an experiment, embracing rapid iteration to stay at the forefront of security solutions and accelerate growth.

Transparency

Root.io is committed to openness and clarity, fostering trust by providing actionable security insights and adhering to open standards. ​

Customer Success​

We are committed to your success and hold ourselves accountable. We excel in providing support and celebrating your wins.​

Community Building​

We believe in community power. At Root.io, we foster accountability while working toward shared goals and succeeding as a team.​

Our Investment Partners

Why Choose Us

Discover What Sets Us Apart

Root.io is a unique environment where security and innovation intersect. We’re building a resilient culture focused on adaptability, responsibility, and long-term impact.

Root.io helps organizations meet today’s security needs without compromising innovation, enabling confident, sustainable growth.

We value curiosity, accountability, and collaboration, empowering our team to explore and shape the future of secure software.

Why Choose Us

Discover What Sets Us Apart

Root.io is a unique environment where security and innovation intersect. We’re building a resilient culture focused on adaptability, responsibility, and long-term impact.

Root.io helps organizations meet today’s security needs without compromising innovation, enabling confident, sustainable growth.

We value curiosity, accountability, and collaboration, empowering our team to explore and shape the future of secure software.

Meet the Team

The Visionaries Behind Root.io

Ian Riopel

CEO

John Amaral​

CTO

Mickey Gordon​

CPO

Benji Kalman​

VP of Engineering

Meet the Team

The Visionaries Behind Root.io

Ian Riopel

CEO

John Amaral

CTO

Mickey Gordon

CPO

Benji Kalman

VP of Engineering

Latest Posts

Join us in shaping a secure digital future.

Here’s the uncomfortable truth every software company knows but rarely admits out loud: We’re shipping faster than we secure. Vulnerabilities pile up, compliance gets complicated, and security teams drown in operational debt. With 30-60% variance between scanners on what constitutes a “real” vulnerability, you’re left playing an endless game of whack-a-mole. But here’s the thing—it […]

For years, RSA Conference has been dominated by themes like cloud security, identity management, and zero trust architectures. But in 2025, something fundamental has shifted. The conversation has moved from securing infrastructure to securing intelligence—from static threat models to adaptive, autonomous systems. In short: AI security is no longer a subtopic. It IS the topic. […]

Security teams are buried in vulnerability data. Every scan produces a flood of CVEs, each tied to a specific package version in a specific layer of your container. But the true cost of these findings isn’t just the security risk—it’s the hours of manual work required to validate, fix, and verify each one. Across our […]

Latest Posts

Join us in shaping a secure digital future.

Here’s the uncomfortable truth every software company knows but rarely admits out loud: We’re shipping faster than we secure. Vulnerabilities pile up, compliance gets complicated, and security teams drown in operational debt. With 30-60% variance between scanners on what constitutes a “real” vulnerability, you’re left playing an endless game of whack-a-mole. But here’s the thing—it […]

For years, RSA Conference has been dominated by themes like cloud security, identity management, and zero trust architectures. But in 2025, something fundamental has shifted. The conversation has moved from securing infrastructure to securing intelligence—from static threat models to adaptive, autonomous systems. In short: AI security is no longer a subtopic. It IS the topic. […]

Security teams are buried in vulnerability data. Every scan produces a flood of CVEs, each tied to a specific package version in a specific layer of your container. But the true cost of these findings isn’t just the security risk—it’s the hours of manual work required to validate, fix, and verify each one. Across our […]