/Companies

SafeHill

Techstars '23

Fircrest, US · 8 known investors

Find your way into SafeHill

Sign up to see every warm intro you have to SafeHill

  • Paths you didn't know you had: your email and LinkedIn already hold routes to the SafeHill team. We find them for you
  • 2nd- and 3rd-degree connections: the friend-of-a-friend routes that take hours to manually find through your inbox or LinkedIn
  • Answers now, not in days: momentum is everything in a raise. Skip asking around whether someone knows someone

Days of research, done the moment you sign in, with every route ranked by how warm it is.

SafeHill is a cybersecurity company that combines AI and human ethical hackers to help security teams identify and prioritize real security exposures and attack paths. The platform targets security teams and CISOs seeking threat exposure management and penetration testing validation without alert fatigue.

Also known as SafeHill SecureIQ · Tacticly

Founders & leadership

MPMike Pena
Mike PenaCEO/FounderMike Pena is CEO and founder of SafeHill, a cybersecurity platform combining AI and human ethical hackers for threat exposure management. Previously, he held executive roles including COO and CMO at healthcare SaaS company Circe Software, founded venture-backed commodity exchange Autoref.com, and worked as an equity trader at Trust Company of the West; he holds a bachelor's degree in economics from Pepperdine University.
HMHector Monsegur
Hector MonsegurChief Research Officer/FounderHector Monsegur is Chief Research Officer and co-founder at SafeHill, a cybersecurity company focused on threat exposure management. He previously worked in network security and threat research, and co-hosts the podcast Hacker and the Fed.
NGNicholas Gonzalez
Nicholas GonzalezChief Revenue Officer/Founder

Investors · 8

Also in the syndicate · 4

Chicago Early Growth VenturesEddie LouThe Source GroupsVirginia Union University

Funding

SEC filings, press & company announcements

Source: company announcements and press reports — follow each round's link for the claim.

Company profile

researched Sep 2026

SafeHill, formerly known as Tacticly, is a Chicago, Illinois-based cybersecurity company that develops SafeHill SecureIQ, a continuous threat exposure management (CTEM) platform. SecureIQ combines automated, AI-driven testing with validation by human ethical hackers to identify exploitable attack paths across internet-facing assets, cloud, on-premises and hybrid networks, identity systems, SaaS and endpoints. Rather than producing vulnerability lists ranked by generic severity, the product groups related weaknesses into exploit sequences and prioritizes them by reachability, business impact and evidence of active exploitation.

Core capabilities include external and internal attack surface monitoring and continuous asset discovery; AI-human hybrid continuous penetration testing in place of point-in-time engagements; an attack path prioritization engine; real-time threat intelligence monitoring that incorporates exploited-in-the-wild signals and infostealer-sourced credential leak data; compliance mapping to frameworks such as PCI-DSS, CMMC, NIST and ISO 27001; and remediation orchestration that produces Jira- and Slack-ready tasks. Deliverables emphasize proof of exploitability (screenshots, steps and artifacts), human-reviewed remediation plans, and retest confirmation that an attack path has been closed.

Alongside the platform, SafeHill positions itself as a CTEM services partner, offering help standing up or refining CTEM programs, human-in-the-loop offensive intelligence, and translation of platform findings into playbooks and executive-facing exposure reporting. The company also produces the "Hacker & the Fed" podcast.

Founding story

The founders met at Rhino Security Labs and previously cofounded and exited Chambers Key Cybersecurity, which Mike Pena led through its 2021 acquisition by Palo Alto-based VAR/MSSP Alacrinet Consulting Services. Having experienced the limits of scaling penetration testing through consulting, acquisition and enterprise delivery, and having helped bring automation-first adversary simulation tools to market, they founded the company on the premise that customers still struggled with piled-up findings, missing context and environments that changed faster than teams could reassess. The team built its automated penetration testing software during the Techstars Chicago program.

Business model

SafeHill sells its SecureIQ threat exposure management platform to enterprises, combined with a human-led CTEM service layer in which its ethical hackers validate findings and act as an extension of the customer's security team. The company lists pricing on its website and references a channel partner program and technology integration partnerships.

Platform-based offering for enterprise security teams, paired with human-delivered penetration testing and CTEM advisory engagements; the website directs prospects to published pricing and to discussions of security assessments or pentests.

Traction

Customer testimonials come from the CTO of Bandsintown, the CISO of First Medical and a cybersecurity manager at Alpine Health, with Bandsintown describing a progression from a penetration testing engagement to platform adoption and CTEM program design. Early customers include small and mid-sized academic institutions, including historically Black colleges and universities. The pre-seed round was described by the company as oversubscribed.

Latest developments

Following the September 2025 launch and $2.6 million pre-seed round, SafeHill said it would expand its engineering team, enhance AI-assisted ethical hacking capabilities, deepen partnerships with enterprise security teams, and extend SecureIQ's real-time monitoring and compliance-mapping features. A subsequent company post describes work on an internal AI system called Mastermind.

▸Full profile — market position, technology, go-to-market, geography, history, risks & controversies

Market position

SafeHill positions itself in the continuous threat exposure management and continuous penetration testing segment, aligning its product with Gartner's CTEM framework and contrasting its continuous, human-validated approach with both point-in-time pentesting and automation-only tools. It is an early-stage entrant, having emerged from stealth in September 2025 with pre-seed funding.

The company's stated differentiator is a hybrid model in which AI provides scale and coverage while in-house ethical hackers validate exploitability, rather than either services-only or automation-only approaches. It emphasizes validated attack paths with evidence, human-reviewed remediation plans and retest confirmation, and draws on a founding team with offensive security backgrounds, including Chief Research Officer Hector Monsegur, the former blackhat hacker known as "Sabu" and de facto leader of LulzSec.

Technology

SecureIQ applies agentic AI ("AI hacker agents") for continuous asset discovery, automated threat exposure assessment and automated penetration testing, with human ethical hackers validating exploitability. An attack path prioritization engine sequences related weaknesses and scores them on reachability, impact and active exploitation, informed by live threat feeds and infostealer credential data. Outputs integrate with engineering workflow tools such as Jira and Slack, and findings are mapped to compliance frameworks.

Go-to-market

Direct enterprise sales led by cofounder and Chief Revenue Officer Nicholas Gonzalez, supported by customer references, a channel partner program, technology integration partnerships, advisory relationships with CISOs, and content marketing including the "Hacker & the Fed" podcast. Early customers have often arrived via penetration testing engagements that expanded into platform adoption.

Enterprise security teams, CISOs and CTOs seeking continuous threat exposure management; early customers include small and mid-sized academic institutions, among them historically Black colleges and universities, with stated ambitions to scale into enterprise clients in finance, healthcare and government. Named references include Bandsintown, First Medical and Alpine Health.

Geography

Headquartered in Chicago, Illinois, United States, with a satellite presence in Miami, where cofounder Nicholas Gonzalez is based. Investor and advisor relationships also extend to South Florida.

History

The company operated under the name Tacticly before rebranding to SafeHill. It went through Techstars Chicago, where cofounder Hector Monsegur reported finishing the program at the top of his class, and emerged from stealth on September 25, 2025 with a $2.6 million pre-seed round and the public launch of the SecureIQ platform.

Risks & controversies

Chief Research Officer Hector Monsegur was previously the blackhat hacker "Sabu," de facto leader of LulzSec, credited with breaches of organizations including Sony Pictures, PBS, Fox.com, the FBI affiliate InfraGard and government systems; he later became an FBI informant and helped dismantle the group, which led to arrests in the US and UK, and served a prison sentence. The company is at pre-seed stage with a small disclosed funding base and competes in a crowded exposure management and penetration testing market.

Compiled by commissioned research from 9 cited public sources — announcements, filings, and press listed under research sources below.

Key figures

latest reported
Disclosed funding to dateSep 2025$2.6M

Company-reported or press-reported figures, each dated to when it was claimed — not independently audited.

Related companies · 4

Companies working in the same space as SafeHill.

Timeline · 4

launches, deals, and filings
Sep 2025
SafeHill raises $2.6M pre-seed and launches from stealth

SafeHill, formerly known as Tacticly, announced its public launch from stealth alongside the close of a $2.6 million pre-seed round led by Mucker Capital and Chingona Ventures, with participation from Techstars, Chicago Early Growth Ventures, The Source Groups, Virginia Union University and angel investor Eddie Lou. Proceeds are earmarked for expanding the engineering team, enhancing AI-assisted ethical hacking capabilities, deepening enterprise security partnerships, and advancing real-time monitoring and compliance mapping.

$2.6M source ↗

Sep 2025
Launch of SafeHill SecureIQ threat exposure management platform

SafeHill introduced SecureIQ, a continuous threat exposure management platform providing external attack surface monitoring, AI-human hybrid continuous penetration testing, AI-assisted threat exposure analysis, compliance mapping to PCI-DSS, CMMC, NIST and ISO27001, real-time threat intelligence monitoring, and remediation prioritization.

source ↗

Jan 2025
Participation in Techstars Chicago accelerator

Cofounder Hector Monsegur and the team built the company's automated penetration testing software during the Techstars Chicago program; Techstars also participated in the pre-seed round.

source ↗

Jan 2025
Rebrand from Tacticly to SafeHill

The company previously operated under the name Tacticly before rebranding to SafeHill at its public launch.

source ↗

Dated company events from announcements, filings, and press; legal rows summarize public dockets and regulator releases.

In the news

▸Research sources · 9

primary sources listed

9 public sources were cited for this profile; the first-party ones are listed here.

Frequently asked questions

What does SafeHill do?
SafeHill is a Chicago-based cybersecurity startup whose SecureIQ platform pairs AI agents with human ethical hackers for threat exposure management.
Who founded SafeHill?
SafeHill was founded by Mike Pena, Hector Monsegur, Nicholas Gonzalez.
Who are SafeHill's investors?
SafeHill's investors include Techstars, Chingona Ventures, Mucker Capital, Mercury Fund.
Where is SafeHill headquartered?
SafeHill is headquartered in Fircrest, US.