SafeHill
Techstars '23Fircrest, US · 8 known investors
Find your way into SafeHill
Sign up to see every warm intro you have to SafeHill
- Paths you didn't know you had: your email and LinkedIn already hold routes to the SafeHill team. We find them for you
- 2nd- and 3rd-degree connections: the friend-of-a-friend routes that take hours to manually find through your inbox or LinkedIn
- Answers now, not in days: momentum is everything in a raise. Skip asking around whether someone knows someone
Days of research, done the moment you sign in, with every route ranked by how warm it is.
SafeHill is a cybersecurity company that combines AI and human ethical hackers to help security teams identify and prioritize real security exposures and attack paths. The platform targets security teams and CISOs seeking threat exposure management and penetration testing validation without alert fatigue.
Also known as SafeHill SecureIQ · Tacticly
Founders & leadership


Investors · 8
How we know: the company's own site · the Techstars portfolio · open dataset · Top 3000 Accelerator Startups (no YC) 2026-08 · research · safehill.com · Not right? Tell us
How we know: the company's own site · funding news · securityweek.com · the VCSheet dataset · research · safehill.com · Not right? Tell us
How we know: the company's own site · funding news · securityweek.com · research · safehill.com · Not right? Tell us
How we know: a partner's Signal profile · Not right? Tell us
Also in the syndicate · 4
Funding
SEC filings, press & company announcements- Undisclosed amountpre-seed funding roundSep 2025
Chingona Ventures (lead), Mucker Capital (lead)
Source ↗
Source: company announcements and press reports — follow each round's link for the claim.
Company profile
researched Sep 2026SafeHill, formerly known as Tacticly, is a Chicago, Illinois-based cybersecurity company that develops SafeHill SecureIQ, a continuous threat exposure management (CTEM) platform. SecureIQ combines automated, AI-driven testing with validation by human ethical hackers to identify exploitable attack paths across internet-facing assets, cloud, on-premises and hybrid networks, identity systems, SaaS and endpoints. Rather than producing vulnerability lists ranked by generic severity, the product groups related weaknesses into exploit sequences and prioritizes them by reachability, business impact and evidence of active exploitation.
Core capabilities include external and internal attack surface monitoring and continuous asset discovery; AI-human hybrid continuous penetration testing in place of point-in-time engagements; an attack path prioritization engine; real-time threat intelligence monitoring that incorporates exploited-in-the-wild signals and infostealer-sourced credential leak data; compliance mapping to frameworks such as PCI-DSS, CMMC, NIST and ISO 27001; and remediation orchestration that produces Jira- and Slack-ready tasks. Deliverables emphasize proof of exploitability (screenshots, steps and artifacts), human-reviewed remediation plans, and retest confirmation that an attack path has been closed.
Alongside the platform, SafeHill positions itself as a CTEM services partner, offering help standing up or refining CTEM programs, human-in-the-loop offensive intelligence, and translation of platform findings into playbooks and executive-facing exposure reporting. The company also produces the "Hacker & the Fed" podcast.
Founding story
The founders met at Rhino Security Labs and previously cofounded and exited Chambers Key Cybersecurity, which Mike Pena led through its 2021 acquisition by Palo Alto-based VAR/MSSP Alacrinet Consulting Services. Having experienced the limits of scaling penetration testing through consulting, acquisition and enterprise delivery, and having helped bring automation-first adversary simulation tools to market, they founded the company on the premise that customers still struggled with piled-up findings, missing context and environments that changed faster than teams could reassess. The team built its automated penetration testing software during the Techstars Chicago program.
Business model
SafeHill sells its SecureIQ threat exposure management platform to enterprises, combined with a human-led CTEM service layer in which its ethical hackers validate findings and act as an extension of the customer's security team. The company lists pricing on its website and references a channel partner program and technology integration partnerships.
Platform-based offering for enterprise security teams, paired with human-delivered penetration testing and CTEM advisory engagements; the website directs prospects to published pricing and to discussions of security assessments or pentests.
Traction
Customer testimonials come from the CTO of Bandsintown, the CISO of First Medical and a cybersecurity manager at Alpine Health, with Bandsintown describing a progression from a penetration testing engagement to platform adoption and CTEM program design. Early customers include small and mid-sized academic institutions, including historically Black colleges and universities. The pre-seed round was described by the company as oversubscribed.
Latest developments
Following the September 2025 launch and $2.6 million pre-seed round, SafeHill said it would expand its engineering team, enhance AI-assisted ethical hacking capabilities, deepen partnerships with enterprise security teams, and extend SecureIQ's real-time monitoring and compliance-mapping features. A subsequent company post describes work on an internal AI system called Mastermind.
▸Full profile — market position, technology, go-to-market, geography, history, risks & controversies
Market position
SafeHill positions itself in the continuous threat exposure management and continuous penetration testing segment, aligning its product with Gartner's CTEM framework and contrasting its continuous, human-validated approach with both point-in-time pentesting and automation-only tools. It is an early-stage entrant, having emerged from stealth in September 2025 with pre-seed funding.
The company's stated differentiator is a hybrid model in which AI provides scale and coverage while in-house ethical hackers validate exploitability, rather than either services-only or automation-only approaches. It emphasizes validated attack paths with evidence, human-reviewed remediation plans and retest confirmation, and draws on a founding team with offensive security backgrounds, including Chief Research Officer Hector Monsegur, the former blackhat hacker known as "Sabu" and de facto leader of LulzSec.
Technology
SecureIQ applies agentic AI ("AI hacker agents") for continuous asset discovery, automated threat exposure assessment and automated penetration testing, with human ethical hackers validating exploitability. An attack path prioritization engine sequences related weaknesses and scores them on reachability, impact and active exploitation, informed by live threat feeds and infostealer credential data. Outputs integrate with engineering workflow tools such as Jira and Slack, and findings are mapped to compliance frameworks.
Go-to-market
Direct enterprise sales led by cofounder and Chief Revenue Officer Nicholas Gonzalez, supported by customer references, a channel partner program, technology integration partnerships, advisory relationships with CISOs, and content marketing including the "Hacker & the Fed" podcast. Early customers have often arrived via penetration testing engagements that expanded into platform adoption.
Enterprise security teams, CISOs and CTOs seeking continuous threat exposure management; early customers include small and mid-sized academic institutions, among them historically Black colleges and universities, with stated ambitions to scale into enterprise clients in finance, healthcare and government. Named references include Bandsintown, First Medical and Alpine Health.
Geography
Headquartered in Chicago, Illinois, United States, with a satellite presence in Miami, where cofounder Nicholas Gonzalez is based. Investor and advisor relationships also extend to South Florida.
History
The company operated under the name Tacticly before rebranding to SafeHill. It went through Techstars Chicago, where cofounder Hector Monsegur reported finishing the program at the top of his class, and emerged from stealth on September 25, 2025 with a $2.6 million pre-seed round and the public launch of the SecureIQ platform.
Risks & controversies
Chief Research Officer Hector Monsegur was previously the blackhat hacker "Sabu," de facto leader of LulzSec, credited with breaches of organizations including Sony Pictures, PBS, Fox.com, the FBI affiliate InfraGard and government systems; he later became an FBI informant and helped dismantle the group, which led to arrests in the US and UK, and served a prison sentence. The company is at pre-seed stage with a small disclosed funding base and competes in a crowded exposure management and penetration testing market.
Compiled by commissioned research from 9 cited public sources — announcements, filings, and press listed under research sources below.
Key figures
latest reportedCompany-reported or press-reported figures, each dated to when it was claimed — not independently audited.
Related companies · 4
Companies working in the same space as SafeHill.
Timeline · 4
launches, deals, and filingsSafeHill, formerly known as Tacticly, announced its public launch from stealth alongside the close of a $2.6 million pre-seed round led by Mucker Capital and Chingona Ventures, with participation from Techstars, Chicago Early Growth Ventures, The Source Groups, Virginia Union University and angel investor Eddie Lou. Proceeds are earmarked for expanding the engineering team, enhancing AI-assisted ethical hacking capabilities, deepening enterprise security partnerships, and advancing real-time monitoring and compliance mapping.
$2.6M source ↗
SafeHill introduced SecureIQ, a continuous threat exposure management platform providing external attack surface monitoring, AI-human hybrid continuous penetration testing, AI-assisted threat exposure analysis, compliance mapping to PCI-DSS, CMMC, NIST and ISO27001, real-time threat intelligence monitoring, and remediation prioritization.
Cofounder Hector Monsegur and the team built the company's automated penetration testing software during the Techstars Chicago program; Techstars also participated in the pre-seed round.
The company previously operated under the name Tacticly before rebranding to SafeHill at its public launch.
Dated company events from announcements, filings, and press; legal rows summarize public dockets and regulator releases.
In the news
▸Research sources · 9
primary sources listed
- SafeHillsafehill.com · web
9 public sources were cited for this profile; the first-party ones are listed here.
Frequently asked questions
- What does SafeHill do?
- SafeHill is a Chicago-based cybersecurity startup whose SecureIQ platform pairs AI agents with human ethical hackers for threat exposure management.
- Who founded SafeHill?
- SafeHill was founded by Mike Pena, Hector Monsegur, Nicholas Gonzalez.
- Who are SafeHill's investors?
- SafeHill's investors include Techstars, Chingona Ventures, Mucker Capital, Mercury Fund.
- Where is SafeHill headquartered?
- SafeHill is headquartered in Fircrest, US.






