08 / COMPLIANCE INFRASTRUCTURE

A formal compliance program is now underway

Motenza Capital has entered into a formal engagement with Drata, a leading compliance automation platform, with our contracted program commencing August 24, 2026.

This marks the next stage in the development of Motenza Capital’s security, governance, and compliance infrastructure.

DRATA COMPLIANCE ENVIRONMENT

Contracted Drata customer with implementation of a centralized compliance-management environment commencing.

NIST CSF 2.0

Alignment and implementation of controls based on the NIST Cybersecurity Framework 2.0 are in progress.

CIS CONTROLS

CIS Controls implementation and control mapping are being incorporated into the company’s developing security program.

SECURITY POLICIES

Formal documentation and evidence management for information-security policies, access controls, privacy, and data governance.

VENDOR & RISK MANAGEMENT

Structured vendor oversight and third-party risk-management processes designed to strengthen operational accountability.

INCIDENT RESPONSE & CONTINUITY

Formal incident-response and business-continuity procedures are being developed, documented, maintained, and supported with appropriate evidence.

STATUS — CONTRACTED / IMPLEMENTATION COMMENCINGDrata contract start date: August 24, 2026

DRATA ENGAGEMENT

Contract executedProgram start: August 24, 2026NIST CSF 2.0 — implementation in progressCIS Controls — implementation in progressSecurity policies — developing / documentedVendor risk management — developingIncident response — developingBusiness continuity — developingEvidence & reporting — structured through compliance program

Motenza Capital does not represent that SOC 2, ISO 27001, NIST, or other certifications have already been completed. Applicable assessments, audits, and certifications remain subject to their respective implementation and independent review processes.