Nucleus Security

Nucleus Security

SaaS platform for vulnerability management

Overview

Nucleus Security provides a SaaS vulnerability management platform that aggregates data from 100+ scanners to help organizations discover, analyze, triage, and remediate vulnerabilities. It serves as a central source of truth for assets and remediation work, integrating tools, automating workflows, and offering a unified interface for prioritization across complex IT environments. It differentiates itself by combining multi-tool integration, data centralization, and workflow automation in one platform to improve visibility, speed, and cost efficiency for large organizations. Its goal is to mature clients’ vulnerability management programs by unlocking value from existing security tools and reducing the time and cost of managing vulnerabilities.

About Nucleus Security

Simplify's Rating
Why Nucleus Security is rated
B-
Rated B on Competitive Edge
Rated B on Growth Potential
Rated C on Differentiation

Industries

Data & Analytics

Enterprise Software

Cybersecurity

Company Size

51-200

Company Stage

Series C

Total Funding

$66.1M

Headquarters

Sarasota, Florida

Founded

2018

Get referred to Nucleus Security

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • February 2026 Series C added $20 million, extending runway for product and go-to-market expansion.
  • August 2026 Helix launch and Robert Costello advisory hire sharpen public-sector credibility.
  • CISA’s three-day remediation mandate in 2026 increases urgency for Nucleus’s prioritization workflows.

What critics are saying

  • Tenable One and Wiz Exposure Management shipped 2026 AI features directly targeting Nucleus buyers.
  • Federal demand depends on CISA BOD 26-04; rule changes can compress budgets by 2027.
  • If Nucleus cannot outpace larger platforms, its enterprise exposure-management niche gets commoditized.

What makes Nucleus Security unique

  • August 2026 Helix unifies scanners, threat intelligence, and workflows into one system of action.
  • FedRAMP Moderate authorization and CMMC 2.0 support make Nucleus credible for federal buyers.
  • Over 200 connectors and deterministic automation differentiate Nucleus from scanner-only vulnerability tools.

Help us improve and share your feedback! Did you find this helpful?

Funding

Total Funding

$66.1M

Below

Industry Average

Funded Over

4 Rounds

Series C funding is usually for startups that are doing well and are looking for more money to fuel major growth, such as acquiring other companies, expanding into global markets, or launching new product lines. Investors typically include larger venture capital firms and private equity.
Series C Funding Comparison
Below Average

Industry standards

$50M
$40M
Figma
$50M
Medium
$62M
SeatGeek
$100M
Oura

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

Unlimited Paid Time Off

Company Equity

Remote Work Options

Professional Development Budget

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

0%

2 year growth

0%
SiliconANGLE Media
Aug 25th, 2026
Nucleus Security launches Helix, an AI engine for exposure management.

Nucleus Security launches Helix, an AI engine for exposure management. Exposure management company Nucleus Security Inc. today unveiled Nucleus Helix, an artificial intelligence engine that now sits at the center of its platform. Three new capabilities run on the engine. An expansion of Nucleus Insights, the company's vulnerability intelligence service, is available now. Two more arrive in September. Nucleus Discover is a detection tool. The Nucleus Helix AI Agent puts a natural-language interface over the platform. Helix draws on the Nucleus Data Core, the normalized store of asset, vulnerability and ownership data the platform already keeps. The company assigns the engine three jobs. One is building and maintaining a customer's exposure management program. Reasoning agents handle the second, closing gaps where exposure has gone undetected. The third is tracking the threat landscape as it shifts. Nucleus Discover aims at the window between a vulnerability becoming public and a scanner learning to spot it. Detection there is passive. Nucleus said the feature surfaces exposure in technology that scanners do not cover and in newly disclosed flaws that have no signature written yet. The company calls that early warning. The Nucleus Helix AI Agent is a natural-language front end to the platform. Practitioners, chief information security officers and developers can query findings, trace who owns an affected asset or spin up a workflow by typing the request. Doing the same by hand means working through configuration screens. Insights, which collects and analyzes vulnerability and exploit intelligence, picks up a data-collection agent aimed at reporting on in-the-wild attacks. New datasets cover Patch Tuesday, end-of-life operating systems and the U.S. Cybersecurity and Infrastructure Security Agency's Stakeholder-Specific Vulnerability Categorization decision framework. Nucleus said the additions cut investigation effort and sharpen remediation guidance. The SSVC dataset lands against a federal deadline, Binding Operational Directive 26-04 which took effect on June 10. Fixed patch windows went away with it. A flaw already sitting in CISA's Known Exploited Vulnerabilities catalog now pushes an asset up the scale fast. Internet exposure does the same. The worst combinations carry a three-day remediation deadline. The CERT Coordination Center at Carnegie Mellon University has since published an SSVC decision tree built for agencies implementing the directive. Nucleus holds FedRAMP Moderate authorization. Federal civilian agencies can buy the platform on that basis. Nucleus said it also supports the Defense Department and contractors in the defense industrial base operating under CMMC 2.0 Nucleus is a venture capital-backed startup that last raised $20 million in a Series C round in February. The company has raised approximately $86.1 million to date. Michelle Abraham, research vice president in International Data Corp.'s Security and Trust Group, said Nucleus is taking a "pragmatic approach," using AI to shape and improve processes while keeping deterministic execution for anything that touches production. Teams want the speed without losing predictability in what actually gets changed, she added. Image: Nucleus Security. A message from John Furrier, co-founder of SiliconANGLE: Support its mission to keep content open and free by engaging with theCUBE community. Join theCUBE's Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities. * 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more * 11.4k+ theCUBE alumni - Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network Are you an AWS customer? Support SiliconANGLE financially by buying your AWS services from its Marketplace portal page and links: https://siliconangle.com/aws-marketplace/. About SiliconANGLE Media. SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios - with flagship locations in Silicon Valley and the New York Stock Exchange - SiliconANGLE Media operates at the intersection of media, technology and AI. Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Its new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.

PR Newswire
Aug 25th, 2026
Nucleus Security launches Helix AI engine for exposure management with agentic capabilities

Nucleus Security has launched Nucleus Helix, an AI engine designed to help security teams manage vulnerabilities and exposures. The platform combines three key capabilities: Nucleus Discover, which detects emerging threats before traditional scanners; the Nucleus Helix AI Agent, allowing teams to analyse data and build programmes using natural language; and enhanced Nucleus Insights for threat intelligence collection. The launch responds to mounting pressure on security teams, including regulatory requirements such as the three-day remediation window for high-risk vulnerabilities mandated by CISA's Binding Operational Directive 26-04, issued in June 2026. Nucleus Helix aims to pair AI's analytical capabilities with reliable execution for enterprise-scale operations. The platform automatically unifies data from security tools, enriches vulnerabilities with threat intelligence, and enables automated workflow creation. Nucleus Insights is available now, whilst the AI Agent and Nucleus Discover launch in September.

PR Newswire
Aug 4th, 2026
Nucleus Security named finalist for two Cyber Defense Magazine innovation awards.

Nucleus Security named finalist for two Cyber Defense Magazine innovation awards. Aug 04, 2026, 11:00 ET Unified exposure management leader recognized as a Top InfoSec Innovator and one of the Top 25 Most Innovative Cybersecurity Companies in the World. Visit Nucleus Security in the Black Hat USA Business Hall, Booth #5533 LAS VEGAS, Aug. 4, 2026 /PRNewswire/ - Nucleus Security, the leader in unified exposure management, today announced that during BlackHat USA 2026 it has been named a finalist in both the Top InfoSec Innovator Awards and Top 25 Most Innovative Cybersecurity Companies in the World 2026 by Cyber Defense Magazine (CDM), the industry's leading electronic information security magazine. Judging continues through October 2026, where winners will be announced online, in print and during CyberDefenseCon 2026, taking place October 20-21, 2026, at The Ritz-Carlton in Orlando, Florida, USA, where a select group of winners will be given the opportunity to showcase their innovative solutions to the Top Global CISOs during their invitation-only conference at https://www.cisoconference.com. "This is meaningful validation of the work our team is doing to solve one of cybersecurity's most persistent challenges," said Steve Carter, CEO of Nucleus Security. "Organizations do not need more vulnerability data, they need a better way to understand what matters, mobilize the right teams, and prove that risk is being reduced. That is the standard we continue to build toward for our customers." "Nucleus Security embodies three major features we judges look for with the potential to become winners: understanding tomorrow's threats, today, providing a cost-effective solution and innovating in unexpected ways that can help mitigate cyber risk and get one step ahead of the next breach," said Gary S. Miliefsky, Publisher of Cyber Defense Magazine. About Nucleus Security Nucleus Security is the enterprise leader in unified vulnerability and exposure management, using AI-driven insights to help organizations understand exposure, identify what matters most, and accelerate remediation at scale. Nucleus unifies vulnerability, asset, and threat data across the security and IT ecosystem into a single operational view, giving teams the context to investigate risk, prioritize action, and make defensible decisions. Combining intelligent analysis with deterministic automation, Nucleus serves as both the system of record and system of action for exposure management. Automated workflows, clear ownership, and a complete audit trail reduce manual effort and show why every remediation decision was made. Nucleus is also the only FedRAMP-certified unified vulnerability management solution, supporting government agencies and Defense Industrial Base contractors in meeting CISA, CMMC 2.0, and NIST requirements. About Cyber Defense Awards This is Cyber Defense Magazine's thirteenth year of honoring InfoSec innovators from around the Globe. Our submission requirements are for any startup, early stage, later stage, or public companies in the INFORMATION SECURITY (INFOSEC) space who believe they have a unique and compelling value proposition for their product or service. Learn more at www.cyberdefenseawards.com. About Cyber Defense Magazine Cyber Defense Magazine is the premier source of cyber security news and information for InfoSec professions in business and government. We are managed and published by and for ethical, honest, passionate information security professionals. Our mission is to share cutting-edge knowledge, real-world stories and awards on the best ideas, products, and services in the information technology industry. We deliver electronic magazines every month online for free, and special editions exclusively for the RSAC Conferences, Black Hat Conferences and Cyber Defense Conferences. CDM is a proud member of the Cyber Defense Media Group. Learn more about us at https://www.cyberdefensemagazine.com and visit https://www.cyberdefensetv.com and https://www.cyberdefenseradio.com to see and hear some of the most informative interviews of many of these award-winning company executives. Search for a Cybersecurity job at https://www.cyberdefenseprofessionals.com or post an infosec job for free, anytime. Join a webinar at https://www.cyberdefensewebinars.com and realize that infosec knowledge is power. SOURCE Nucleus Security

PR Newswire
Jun 25th, 2026
Former CISA CIO Robert Costello joins Nucleus Security as strategic advisor amid 3-day remediation mandate

Nucleus Security has appointed Robert Costello, former Chief Information Officer of the Cybersecurity and Infrastructure Security Agency, as Strategic Advisor for Public Sector and Critical Infrastructure. The appointment comes as federal agencies face CISA's Binding Operational Directive 26-04, which mandates risk-based vulnerability prioritization with remediation deadlines as short as three days. Costello will advise Nucleus on serving federal agencies navigating the new directive, which replaces severity-score patching in response to AI-accelerated exploitation threats. He brings experience from managing vulnerability risk within government environments. Nucleus Security provides unified vulnerability and exposure management platforms and holds FedRAMP Moderate Authorization. The company serves federal agencies, the Department of Defense, and state and local governments with tools for prioritizing vulnerabilities and maintaining audit trails for remediation decisions.

The Tech Bulletins
Mar 26th, 2026
Nucleus Security named 2026 SC award winner for Best Vulnerability Management Solution.

Nucleus Security named 2026 SC award winner for Best Vulnerability Management Solution. Published March 27, 2026 SARASOTA, Fla., March 26, 2026 /PRNewswire/ - Nucleus Security, the leader in unified vulnerability and exposure management, today announced that for the second year in a row, it had been selected as the Best Vulnerability Management Solution in the prestigious SC Awards. This recognition from SC Media underscores the Nucleus platform's ability to centralize, prioritize, and orchestrate vulnerability data at enterprise scale. The SC Awards honor the most outstanding cybersecurity products, organizations, and professionals driving the industry forward. Nucleus' selection for this award again this year reinforces its commitment to providing a scalable, risk-driven vulnerability management platform that empowers security teams to proactively protect their organizations. According to SC Magazine, "Nucleus Security was named the Best Vulnerability Management Solution category in the 2026 SC Awards by showing the judges how it transforms fragmented data into unified, prioritized, risk-based action. Nucleus aims to empower organizations to move from reactive scanning to faster, smarter AI-driven exposure management. SC Awards Judge Renee Guttmann, former CISO at Coca-Cola, Royal Caribbean, and Time Warner, said Nucleus Security addressed many important security issues, including customer satisfaction and outcomes. "Winning this award back-to-back validates what our customers already know, that unified vulnerability and exposure management isn't just a feature, it's a strategic advantage. We're proud to be the platform security teams turn to when the stakes are highest," said Steve Carter, chief executive officer and co-founder, Nucleus Security Nucleus is leading an industry shift away from traditional vulnerability scanning to building an exposure management orchestration platform that operationalizes context, adapts to each enterprise, and closes the gap between data and action. Nucleus integrates security and asset data from more than 200 tools, business context, and AI-driven exploit intelligence into a shared, up-to-date view of exposure to drive prioritized action and measurable risk reduction across the organization. About Nucleus Security Nucleus Security is the enterprise leader in unified vulnerability and exposure management, enabling organizations to prioritize and mitigate vulnerabilities faster, at scale. Delivering unmatched time to value, Nucleus automatically unifies and organizes data from all your security and business tools into a single pane of glass. With powerful dynamic automations, teams can effectively automate their vulnerability management program. As a FedRAMP authorized vendor, Nucleus Security is transforming how enterprises, federal agencies and defense contractors secure their digital assets and networks.

Recently Posted Jobs

Sign up to get curated job recommendations

Nucleus Security is Hiring for 5 Jobs on Simplify!

Find jobs on Simplify and start your career today

Don't see your dream role? Check out thousands of other roles on Simplify. Browse all jobs →