Expert Auditors, Dedicated to Your Business's Security and Compliance

MHM’s approach to audits: personalized service, deep expertise, and customized solutions designed to meet your unique business needs

At MHM, we are dedicated to delivering exceptional cybersecurity audits that drive real value for businesses of all sizes. With decades of combined experience and a team of expert auditors, we specialize in providing tailored, actionable solutions that address the unique needs of each client.

Our core values aren’t just words, they’re the principles that guide how we work, what we prioritize, and how we deliver results. They reflect our commitment to transparency, precision, and long-term partnership with clients, ensuring that your business’s security and compliance goals are consistently met.

These values are why clients trust us to consistently exceed expectations, minimize disruption, and deliver audits that drive meaningful outcomes, not just checkboxes.

Our Four Core Values:

Guiding Every Audit We Deliver

  • MHM’s decades of combined experience and expert knowledge delivering tailored security and privacy audits

    Expertise & Experience

    We bring decades of experience working with companies of all sizes, from startups to enterprises, ensuring that we deliver tailored, expert-led security and privacy audits. Our entire team is made up of senior professionals, no juniors, no middlemen, just the expert attention your organization needs.

  • MHM’s client-centric approach ensures audits are customized to meet your unique business needs and goals

    Personalized & Client-Centric Service

    We focus on you. Every client gets the attention and tailored service they deserve, with direct access to senior experts every step of the way. We are committed to fostering strong relationships and providing tailored solutions, not a one-size-fits-all approach.

  • MHM’s integrity and transparency build trust through reliable, actionable audits

    Integrity & Trust

    Integrity is at the core of everything we do. We provide clear, transparent audits, ensuring you know exactly where you stand at every stage. We will provide you with clear, actionable feebback without upselling or cross-selling, ensuring that you can trust us for an honest assessment

  • MHM delivers efficient, streamlined audits with minimal disruption to your business

    Efficiency & Practicality

    Our regimented, proven approach ensures efficient audits with minimal disruption. But we’re also flexible, adjusting to your specific needs with out compromising on quality.

Meet The Team

Big 4 Experience – Competitively Priced

The MHM team is led by Mark Mandel and Jose Costa. Together, they have developed an approach to security and compliance audits that scales for companies of any size and level of complexity. Our team of seasoned auditors brings a wealth of experience from the top four audit firms, ensuring a depth of knowledge that surpasses industry standards. Together, we go beyond the legacy approaches by tailoring the audit process to your unique risk profile and business complexities.

Mark Mandel, Founder and Principal at MHM, with extensive expertise in cybersecurity audits and compliance

Mark Mandel

Founder & Principal

After a 25 year career as a PwC Partner, Mark founded MHM with a mission to bring high quality and affordable security and privacy compliance audits to smaller organizations.

With almost 3 decades of servicing clients across a wide range of sectors worldwide in the GRC, data privacy and security domains, Mark has developed a focus on aligning each client’s needs and particular risks to the requirements of their chosen compliance standard and delivering successful projects that are consistently on-time and on-budget.

Mark is a licensed CPA and also maintains the CDPSE designation.

Jose Costa, Principal at MHM, expert in cybersecurity audits, regulatory compliance, and risk management

Jose Costa

Principal

Having spent over two decades navigating risk, internal controls, and IT security across many industries worldwide, Jose deeply understands how technology shapes our daily lives. As a former Partner at PwC, and after spending a few years as a CISO in the industry, Jose is eager to reconnect with clients directly and help them meet their compliance objectives.

He's particularly drawn to the evolving landscape of third-party risk and cloud technology, driven by a genuine passion for simplifying compliance with complex frameworks and tailoring audit processes for certifications.

Jose is a CISSP, CISA, ISO 27001 Lead Auditor, CIPP/E and CDPSE

Our Leadership Team is supported by a network of senior privacy and security auditors across the country.