MONEL SECURITY
Security that stands up to scrutiny
Monel Security helps growth stage companies prepare for acquisition, venture capital, and enterprise contracts through certification readiness, focused security leadership, and AI security readiness that stands up to examination.
Partnering with a select number of clients.

WHO WE SERVE
When someone else examines your security
Growth creates a moment when customers, investors, acquirers, or auditors ask your company to prove what it does. Policies alone are not enough. Your program must reflect actual risks, operate as documented, and produce evidence. Monel Security helps leadership establish that foundation without turning certification into the purpose of the program.
Preparing for acquisition
Build a security program that can withstand buyer diligence, support a clean transaction, and give leadership clear answers when the examination begins.
Raising institutional capital
Give investors a credible view of security risk, governance, and execution, supported by evidence that matches what the company says it does.
Selling to major companies
Respond to customer surveys, certification requirements, and procurement reviews with a defensible program that helps sales move forward with fewer security explanations.
SERVICES
Three ways we work
01
Security Surveys & Audits
We help companies answer security surveys, organize evidence, prepare for customer reviews, and address the issues most likely to delay a decision. The goal is a clear, supportable account of your security posture, grounded in current practices rather than promises the organization cannot demonstrate.
02
Certification & Diligence Readiness
We guide first time programs through SOC 2, ISO 27001, NIST CSF, and NIST 800 171 readiness. Work can include Vanta coordination, policies, controls, evidence, security tooling, trust center content, and AI security readiness. Certification becomes evidence of a working program, not the program itself.
03
Fractional Security Leadership and vCISO
We provide experienced security leadership for companies that need direction, structure, and accountability before they need a full executive team. Engagements focus on priorities, investment decisions, governance, staffing, and executive communication. Monel Security does not lead, manage, or perform security alert and ticket response.
EXPERIENCE
Two decades where security meets capital
Heath Nieddu, CISSP, has spent two decades working where security, technology, and consequential business decisions meet. He most recently served as VP of IT Security at SoftBank Investment Advisers. Earlier roles included acting CISO and vCISO work in regulated industries, senior security consulting at Cask, service as the first field BISO at EVOTEK, enterprise security metrics leadership at Nike, and six years leading security analytics at Providence Health & Services. From 2022 through 2024, he helped a venture backed pharmaceutical integrator earn SOC 2 Type 2 certification, retain a marquee retail client, and support a merger. The work included program documentation, Vanta coordination, security technology decisions, initial engineering hires, and a customer trust page. Earlier in his career, Heath served as an international economic analyst at the CIA and as a United States Navy linguist. He is completing a PhD in Cybersecurity focused on AI adoption.

CISSP · Certified security leadership
SoftBank Investment Advisers · Former VP of IT Security
Cask · Risk and vulnerability programs
EVOTEK · First field BISO
Nike · Enterprise security metrics
Providence Health & Services · Security analytics leadership
CIA · International economic analysis
United States Navy · Linguist
PhD research · AI adoption in cybersecurity
We believe security should be measured, not performed. We build programs around real risks, make only claims that can be demonstrated, and preserve the time needed to maintain a healthy security posture.
START A CONVERSATION
Bring us the security moment
Monel Security partners with a select number of clients through hourly engagements, with agreed minimum weekly hours. Typical engagements last six to nine months. Tell us what your customers, investors, or acquirers require. We will tell you honestly whether we can help.