Skip to content

Hackmetrix

Santiago-based compliance automation platform helping Latin American startups and mid-market companies reach ISO 27001, SOC 2, and PCI DSS certifications.

Visit Website ↗ + Add to Compare
47/100Emerging / Unranked

Overview

Hackmetrix sells a compliance-automation platform aimed at startups and mid-market companies pursuing certifications like ISO 27001, SOC 2, and PCI DSS, primarily across Latin America. The product combines continuous control monitoring, pre-built and audited policy templates, and evidence-collection automation to compress the time and internal effort a lean team needs to reach and maintain a certification, a workflow modeled on the compliance-automation category pioneered by U.S. vendors like Vanta and Drata but built for a Latin American regulatory and buyer context those platforms serve less directly.

Founded in 2017 and headquartered in Santiago, Chile, Hackmetrix has raised roughly $2.8 million in total funding across a seed round led by Cometa Ventures and a subsequent bridge round backed by Chilean investors including Daedalus. The company counts regional names such as Mercado Libre, Talana, and Buk among its customer base and has used its funding to expand from Chile into Mexico and Colombia.

As a regional compliance-automation player, Hackmetrix’s relevance is tied to the growing pressure on Latin American startups and mid-market firms to meet the same security-certification bar as their U.S. and European counterparts when selling into enterprise or cross-border deals, a need that is real but that Hackmetrix addresses at meaningfully smaller scale and funding than the category’s global leaders.

Innovation Matrix Assessment

Innovation Velocity 5/10

Has expanded from its original Chile base into Mexico and Colombia and broadened certification coverage (ISO 27001, SOC 2, PCI DSS) since its 2023 funding round, a reasonable pace for a small regional team.

Operational Value 5/10

Provides continuous control monitoring, audited policy templates, and evidence-collection automation, functionally similar to established compliance-automation platforms, though at smaller product scope than category leaders like Vanta or Drata.

Market Momentum 4/10

Raised a $1.5M seed round led by Cometa Ventures and a further bridge round led by Daedalus, reported as one of the larger seed raises for a Latin American cybersecurity startup, but total funding (~$2.8M) remains modest in absolute terms.

Category Disruption 4/10

Applies a proven compliance-automation model to an underserved Latin American buyer base rather than introducing a fundamentally new approach to compliance management.

Real-World Efficacy 4/10

Named customers including Mercado Libre, Talana, and Buk, and a reported base of 100+ client companies, offer some real-world validation, though no independent audit-outcome data or third-party benchmarking was found.

Enduring Relevance 6/10

Latin American startups increasingly need ISO 27001/SOC 2/PCI DSS certifications to sell into enterprise and cross-border deals, and few compliance-automation vendors are built specifically for that regional context, giving Hackmetrix a genuine, underserved niche.

Why CISOs Should Care

Gives resource-constrained security and compliance teams in Latin America a faster, template-driven path to recognized certifications like ISO 27001 and SOC 2 without hiring a large in-house GRC function.

What Makes It Different

Applies the U.S.-style compliance-automation playbook to a Latin American regulatory and buyer context that larger, U.S.-centric platforms serve less directly, with regional customer references and a Spanish-first product experience.

The Matrix Verdict

47/100 — EMERGING / UNRANKED

A credible, regionally-focused compliance-automation vendor with real named customers and funding traction, but one operating at a fraction of the scale and funding of the global category leaders it is modeled on.

Editorial Note: Claims vs. Verified Findings

Funding amounts, investor names, and the Mercado Libre/Talana/Buk customer relationships are corroborated across multiple independent outlets (LatamList, RegTech Analyst, Contxto). The specific claim of being the "second largest seed round in Latin American cybersecurity" is a vendor/investor-sourced characterization that was not independently benchmarked against other regional deals.

Sources