Investing in Lumos

It’s not an overstatement to say that identity has always been at the core of the Internet. Indeed, the first transmission to ever be sent across the Internet in 1969 was an attempt to log into a system. The authentication session was famously cut short as the system crashed before the full word “login” could be typed. Only the L and the O made the full journey. Next on was server authorization. First centralized systems were built to manage access to servers. These systems were fairly simple, but did represent a big improvement over the manual management of system access.

The next wave of identity management systems came out almost a decade later and was focused on managing access to the cloud. These systems were more feature-rich and built atop standards that helped glue disparate parts of infrastructure together. With the proliferation of cloud apps and their entanglement into the business, it’s now clear that a new class of problems has emerged: how to manage authorization at scale.

Businesses are facing unprecedented access management challenges: businesses moved their infrastructure to the cloud and decentralized identity management and consequently, IT operations, businesses lost a central source of truth for managing access to systems. with the emergence. At the same time, employees were empowered to ‘DIY’ when it came to finding solutions to help them manage their work. With the emergence of the SaaS app economy, employees could simply find an app they need to do their jobs more effectively, enter the company credit card, and create an account – no IT team required.

All of these changes occurred under the backdrop of a sharp increase in data breaches and new compliance regulations established to build a trust framework for modern business. And IT teams everywhere are struggling to protect sensitive company data, meet compliance requirements, and ensure that only authorized users can access systems. It’s a seemingly impossible task, given the scale of systems spread across the cloud and the lack of visibility into the apps that employees are buying on their own. While the cloud identity management problem has largely been solved, this new access and authorization challenge are perplexing the modern business. There is now a need for new access management and identity governance solutions to manage the business.

Enter Lumos! We’ve been working with Andrej, Alan, and Leo for some time now and it was clear from the beginning that these are the kinds of founders we love to back. Lumos has been focused on solving the security, compliance, and business problems that have sprung up around identity in recent years. As the world has shifted from “bring your own device” to “bring your own app” and now “bring your own office” the challenge of shadow IT has only continued to compound. Additionally we’ve observed over the last two years that outages and security breaches are frequently being caused by poorly or unmanaged identities. The team at Lumos has been laser focused on addressing these issues.

While authentication has been made painless, authorization has become the next frontier of business challenges. Lumos has set out to help make user managed IT a reality, radically shifting the authorization burden from centralized IT managers to the users themselves. Lumos is building the first distributed authorization layer that can manage all the apps that run the business.

We’re very excited to partner with the Lumos team and lead their Series A round. Andrej, Alan, and Leo are the perfect team to build the tool that can bring light to this darkness. Lumos is leading the charge to manage identity as part of the business and we are truly grateful for the opportunity to help build that future.


The views expressed here are those of the individual AH Capital Management, L.L.C. (“a16z”) personnel quoted and are not the views of a16z or its affiliates. Certain information contained in here has been obtained from third-party sources, including from portfolio companies of funds managed by a16z. While taken from sources believed to be reliable, a16z has not independently verified such information and makes no representations about the enduring accuracy of the information or its appropriateness for a given situation. In addition, this content may include third-party advertisements; a16z has not reviewed such advertisements and does not endorse any advertising content contained therein.

This content is provided for informational purposes only, and should not be relied upon as legal, business, investment, or tax advice. You should consult your own advisers as to those matters. References to any securities or digital assets are for illustrative purposes only, and do not constitute an investment recommendation or offer to provide investment advisory services. Furthermore, this content is not directed at nor intended for use by any investors or prospective investors, and may not under any circumstances be relied upon when making a decision to invest in any fund managed by a16z. (An offering to invest in an a16z fund will be made only by the private placement memorandum, subscription agreement, and other relevant documentation of any such fund and should be read in their entirety.) Any investments or portfolio companies mentioned, referred to, or described are not representative of all investments in vehicles managed by a16z, and there can be no assurance that the investments will be profitable or that other investments made in the future will have similar characteristics or results. A list of investments made by funds managed by Andreessen Horowitz (excluding investments for which the issuer has not provided permission for a16z to disclose publicly as well as unannounced investments in publicly traded digital assets) is available at

Charts and graphs provided within are for informational purposes solely and should not be relied upon when making any investment decision. Past performance is not indicative of future results. The content speaks only as of the date indicated. Any projections, estimates, forecasts, targets, prospects, and/or opinions expressed in these materials are subject to change without notice and may differ or be contrary to opinions expressed by others. Please see for additional important information.

The enterprise is changing

Sign up for our enterprise newsletter to get the a16z take on the trends reshaping B2B and enterprise tech.