Best Attack Surface Management Software - Page 6

How Many Attack Surface Management Software Products Does G2 Track?

Total Products under this Category: 170

Category Stats (Aug 2026)

  • Average Rating: 4.6/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Forescout Platform (+0.74%) - Among all products in this category, Forescout Platform recorded the largest rating increase compared to last month

Last updated: August 06, 2026

How Does G2 Rank Attack Surface Management Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 5,400+ Authentic Reviews
  • 170+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Attack Surface Management Software

G2 Grid® for  Attack Surface Management Software plotting products by satisfaction and market presence

Highlighted products: Wiz, SOCRadar Extended Threat Intelligence, CTM360, CloudSEK, Cyble, RiskProfiler - External Threat Exposure Management, Check Point Exposure Management, and Falcon Security and IT operations.

Underlying data: [Grid® JSON](https://www.g2.com/categories/attack-surface-management/grids.json?focus%5B%5D=wiz-wiz&focus%5B%5D=socradar-extended-threat-intelligence&focus%5B%5D=ctm360-ctm360&focus%5B%5D=cloudsek&focus%5B%5D=cyble&focus%5B%5D=riskprofiler-external-threat-exposure-management&focus%5B%5D=check-point-exposure-management&focus%5B%5D=falcon-security-and-it-operations)

Sponsored

Cyble

Cyble is an AI-native cybersecurity solution designed to help organizations enhance their digital security posture through real-time intelligence, detection, and response capabilities. By leveraging advanced agentic AI and processing vast amounts of data, Cyble empowers businesses to navigate the complexities of the cyber threat landscape effectively. Its unique approach involves collecting and enriching signals from various sources, including the dark web, deep web, and surface web, providing unparalleled visibility into emerging threats and adversarial activities. Targeting a wide range of industries, Cyble's platform is particularly beneficial for security teams, risk management professionals, and organizations that prioritize safeguarding their digital assets. The comprehensive suite of solutions offered by Cyble includes Threat Intelligence, Dark Web & Deep Web Monitoring, Attack Surface Management (ASM), and Brand Intelligence, among others. These tools are designed to address specific use cases such as identifying vulnerabilities, monitoring brand reputation, and managing third-party risks, making it an essential resource for organizations aiming to bolster their cybersecurity measures. Cyble's key features are centered around its unified platform, which integrates multiple cybersecurity functions into a single interface. This integration allows for seamless communication between different security components, enabling teams to anticipate, identify, and neutralize threats with remarkable speed and precision. For instance, the Digital Forensics & Incident Response (DFIR) capabilities equip organizations with the tools needed to investigate and respond to incidents effectively, while the DDoS Protection and Cloud Security Posture Management (CSPM) features ensure that businesses can maintain operational integrity even under attack. Moreover, Cyble stands out in its category by combining vast data intelligence with cutting-edge AI automation. This proactive defense strategy not only helps organizations react to cyber threats but also empowers them to stay ahead of potential risks. By enhancing visibility into the threat landscape and providing actionable insights, Cyble enables enterprises to protect their assets, safeguard brand trust, and operate with confidence in an increasingly complex digital environment. The result is a robust cybersecurity framework that supports organizations in navigating the ever-evolving challenges of the cyber world.

Visit website

Siemba

Siemba is an AI-driven Continuous Threat Exposure Management (CTEM) platform that helps enterprises, government agencies, and growing organizations discover, prioritize, and fix critical vulnerabilities across their entire attack surface. Security teams use Siemba to build and mature CTEM programs without requiring deep hacking expertise or constant human intervention. The platform brings together four integrated capabilities on a single unified interface: Penetration Testing as a Service (PTaaS) for expert-led manual pen testing on demand; GenPT for AI-native Dynamic Application Security Testing (DAST) that simulates real-world attack techniques against web applications and APIs; GenVA for AI-driven vulnerability assessment that continuously scans and scores risks across your environment; and EASM for External Attack Surface Management that maps and monitors all external-facing assets, including shadow IT and exposed infrastructure. Together these capabilities deliver actionable intelligence across the full CTEM lifecycle, from asset discovery and attack surface mapping through to risk prioritization, validation, and remediation guidance. Security leaders gain the visibility, speed, and scalability needed to run continuous offensive security programs and generate strategic insights that maximize Return on Mitigation. Siemba is trusted by enterprises, global systems integrators, and government agencies looking to consolidate their offensive security tooling, reduce exposure windows, and demonstrate measurable security improvement over time.

Average Rating: 4.7/5.0

Total Reviews: 5

How Do G2 Users Rate Siemba?

  • Compliance Monitoring: 10.0/10 (Category avg: 8.6/10)

Who Is the Company Behind Siemba?

  • Seller: Siemba
  • Company Website:
  • Year Founded: 2018
  • HQ Location: Alpharetta, US
  • LinkedIn® Page: www.linkedin.com
    29 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 60% Small, 40% Medium

What Are Recent G2 Reviews of Siemba?

ThreatAware

ThreatAware is an agentless cyber hygiene platform that helps CISOs, CIOs, and SecOps leaders at mid-market and enterprises with 1,000+ devices to uniquely identify every network device and validate that key security controls are deployed, functioning and correctly configured. The platform addresses the visibility gap caused by a fragmented corporate perimeter, remote work models, and bring-your-own-device (BYOD) access. While typical enterprise cyber hygiene hovers between 70% and 80% due to untracked asset growth and control deterioration, ThreatAware closes this gap. Instead of relying on network-layer scanning or fragile metadata matching which can misidentify devices, ThreatAware uses patented Timeline Matching. This approach aligns behavioural timelines from multiple sources to deliver a 99%+ trusted asset hygiene posture with empirical proof. ThreatAware provides an automated solution for asset validation, helping teams find unknown devices on corporate networks, reconcile CrowdStrike and Intune data, or move away from manual spreadsheet reconciliation. It offers a modern alternative to legacy CAASM solutions and security control validation tools by tracking endpoint vitals on a continuous 60-minute loop to expose silent agent failures and configuration policy drift without deploying additional software agents. This automated single source of truth allows organizations to meet the strict continuous compliance demands of modern frameworks like DORA, NIS 2, and Cyber Essentials Plus. CORE PRODUCT CAPABILITIES - Identity-Layer Stealth Detection: Uncovers hidden endpoint blind spots, unprovisioned assets, and personal BYOD devices by reading authentication logs directly at the single sign-on (SSO) and identity provider level. - Independent Cross-Stack Validation: Normalises separate telemetry streams from directories, MDMs, and EDRs to confirm whether mandated security tools are actually deployed and active. - Continuous Vitals Monitoring: Tracks asset health on a continuous 60-minute loop to instantly flag silent agent failures, local policy drift, and broken communication heartbeats. - Patented Timeline Matching: Replaces brittle metadata registries by aligning multi-source behavioural timelines to uniquely identify every device. - Audit Readiness: Automates evidence collection to trace every performance metric directly back to source tool data, providing unbroken provenance for regulatory audits. USE CASES & SOLVED PROBLEMS - Exposing the "Intune Illusion": Security teams often treat MDM platforms as an absolute source of truth, ignoring that these agents are vulnerable to misconfigurations, silent crashes or BYOD bypasses. ThreatAware cross-references MDM registries against cloud application authentication streams and core directories to expose active control coverage gaps without relying on siloed vendor dashboards. - Eliminating Manual Spreadsheet Reconciliation: Manually extracting and cross-referencing device registries across tool consoles consumes up to 80 hours per cycle, creating static asset data that is obsolete immediately upon completion. ThreatAware automates the entire asset discovery lifecycle to maintain a live single source of truth, condensing audit and compliance preparation timelines from weeks to days. - Stopping Silent Agent Failures: Centralized dashboards frequently show misleading compliance metrics based on historical logs. This masks crashed agents, broken management heartbeats or localized policy drift. ThreatAware prevents these tracking deficits through continuous loop validation that directly queries the live operational status of endpoint controls every 60 minutes. TECHNICAL SPECIFICATIONS & PROFILE ATTRIBUTES Software Category: Cyber Asset Attack Surface Management (CAASM) and Cyber Asset Management platforms Deployment Framework: Built entirely as an Agentless Deployment Framework operating via secure, read-only APIs. Deployment Velocity: Rapid corporate deployment, enabling the platform architecture to go fully live within 1 hour. Data Ingestion Loops: Automated health logging with critical asset vitals tracked on a continuous 60-minute loop. Target Company Size: Developed for mid-market and enterprise organizations with at least 1,000+ active devices. Architecture Scalability: Proven in large-scale enterprise production environments with live deployments exceeding 250,000 devices. Supported Fabric Layers: Natively ingests data across Central Directories (Entra ID, Active Directory), CMDB registers, MDM, EDR, and SSO platforms. Evaluation Framework: Delivered through a low-friction, read-only API-driven Free Proof of Value (POV) Trial and comprehensive gap analysis.

Average Rating: 5.0/5.0

Total Reviews: 2

How Do G2 Users Rate ThreatAware?

  • Continuous Monitoring: 10.0/10 (Category avg: 9.2/10)
  • Ease of Admin: 10.0/10 (Category avg: 8.9/10)

Who Is the Company Behind ThreatAware?

  • Seller: ThreatAware
  • Company Website:
  • Year Founded: 2019
  • HQ Location: London, GB
  • Twitter: @Threat_Aware
    170 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    34 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 50% Large, 50% Medium

What Are Recent G2 Reviews of ThreatAware?

Araali Network Security Pro

Araali Networks allows lean security teams to discover their exposure - data, services, and backdoors and prioritize the top 1% of risks that really matter. The security team can use cloud-native controls or Araali's ebpf firewall to create compensating controls to neutralize these risks. In addition, Araali is introducing a new feature that allows teams to patch their CVEs, automatically using Araali - this is a game changer as it allows team to knock off 90% of critical CVEs with little effort. Coverage: VMs, Containers, and Kubernetes across the public and private clouds. How: Araali automatically discovers your apps, their networking, access privileges, and security risks. It also creates and maintains the least privilege policies for all the apps. Your teams can enforce explicit policies for “who can do what” in your virtual private cloud, blocking malicious code from establishing a backdoor or accessing your services. Araali's customers include cloud-native startups, mid-market enterprises, and government agencies. To learn more visit www.araalinetworks.com or create a free trial account by signing up on console.araalinetworks.com Use Cases: 1) SOC-2 compliance: IDS/IPS, vulnerability management, asset management, vulnerability compensation controls, app access control for 2) Egress Filtering: Monitor and control egress to third-party sites, backdoors, supply chain attacks, and ransomware 3) Risk Prioritization: Visibility into the runtime - apps and associated risks 4) Vulnerability Management and Vulnerability Shielding: prevent vuln from getting exploited - especially useful for zero-day or cases where patches are not available as seen in Log4j 5) Enforcement: Proactively or Reactively Neutralize Threats to stop them from moving laterally and exfiltrating your data.

Average Rating: 4.3/5.0

Total Reviews: 3

How Do G2 Users Rate Araali Network Security Pro?

  • Vulnerability Intelligence: 8.3/10 (Category avg: 9.0/10)
  • Continuous Monitoring: 8.3/10 (Category avg: 9.2/10)
  • Compliance Monitoring: 8.3/10 (Category avg: 8.6/10)

Who Is the Company Behind Araali Network Security Pro?

Who Uses This Product?

  • Company Size: 67% Small, 33% Medium

What Do G2 Reviewers Say About Araali Network Security Pro?

AI-generated summary from verified user reviews

Pros
  • Users value the precision of threat alerts, aiding in the quick identification and mitigation of vulnerabilities.
  • Users value the seamless API integration that enhances security by effectively identifying and mitigating vulnerabilities.
  • Users value the detection efficiency of Araali Network Security Pro, effectively identifying and mitigating zero-day vulnerabilities.
  • Users value the seamless integrations with security tools, enhancing precision in threat detection and vulnerability management.
  • Users value the seamless integration of Araali Network Security Pro, enhancing threat detection and vulnerability management.
Cons
  • Users find the complex coding challenging, especially with larger network setups, leading to delays in security alert responses.
  • Users report delayed detection of security alerts, complicating incident response and affecting overall network security efficiency.
  • Users experience ineffective alerts that delay incident response, especially with complex network infrastructures.
  • Users find the inefficient alert system problematic, as delays hinder timely incident response in complex networks.
  • Users face network issues that complicate adding infrastructure and cause delays in security alert responses.

What Are Recent G2 Reviews of Araali Network Security Pro?

Attaxion EASM Platform

Attaxion is an Exposure Management platform that incorporates External Attack Surface Management (EASM) to give organizations complete visibility into their internet-exposed infrastructure without installing agents or deploying intrusive network tools. It continuously discovers and maps every connected asset, including subdomains, IP addresses, open ports, cloud services, and third-party dependencies, helping teams detect risks that traditional asset inventories often miss. Attaxion automatically identifies assets as they come online, flagging outdated or unpatched systems that may serve as entry points for attackers. It runs multiple MITRE ATT&CK–aligned techniques daily to simulate adversarial reconnaissance, detect malicious traffic, and surface potential misconfigurations before they escalate into real threats. Beyond conventional scoring models, Attaxion enriches its findings with intelligence from global databases such as CVSS, EPSS, and EUVD, delivering a comprehensive, context-rich view of vulnerabilities and exposure. By combining agentless discovery, contextualized vulnerability intelligence, and continuous monitoring, Attaxion provides broad and cost-effective visibility across hybrid and multi-cloud environments. Trusted by SOCs, MSSPs, and government agencies, it empowers teams to continuously understand, prioritize, and reduce their external exposure while maintaining an always-current view of their evolving attack surface.

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate Attaxion EASM Platform?

  • Continuous Monitoring: 10.0/10 (Category avg: 9.2/10)

Who Is the Company Behind Attaxion EASM Platform?

  • Seller: Attaxion
  • Year Founded: 2024
  • HQ Location: 8 The Green, STE A, Dover, DE 19901, USA
  • Twitter: @attaxion
    14 Twitter followers
  • LinkedIn® Page: www.linkedin.com

Who Uses This Product?

  • Company Size: 100% Medium

What Do G2 Reviewers Say About Attaxion EASM Platform?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the responsive customer support of Attaxion, ensuring quick iterations and valuable feedback implementation.
  • Users value the ease of use of the Attaxion EASM Platform, benefiting from its clear UI and practical workflows.
  • Users value the continuous improvement of the Attaxion EASM Platform, benefiting from regular updates and responsive support.
  • Users value the continuous innovation of the Attaxion EASM Platform, benefiting from rapid improvements and transparent updates.
  • Users value the intuitive UI of Attaxion EASM, appreciating its clarity in asset management and streamlined workflows.

What Are Recent G2 Reviews of Attaxion EASM Platform?

Brandefense Digital Risk Protection Platform

Brandefense is a Unified Cyber Risk Intelligence Platform designed to help organizations discover, prioritize, and mitigate external cyber risks before they can be exploited. This innovative solution integrates various cybersecurity functions into a cohesive system, allowing businesses to proactively address vulnerabilities and enhance their overall security posture. Targeted at organizations of all sizes, Brandefense is particularly beneficial for those facing increasing cyber threats in a rapidly evolving digital landscape. The platform is essential for security teams seeking to transition from traditional, reactive security measures to a more predictive and autonomous defense strategy. By consolidating Digital Risk Protection (DRPS), External Attack Surface Management (EASM), and Cyber Threat Intelligence (CTI), Brandefense provides a comprehensive approach to managing cyber risks across multiple dimensions. One of the key features of Brandefense is its advanced AI layer, which continuously collects and correlates data from various sources, including surface, deep, and dark web environments. This capability transforms fragmented threat signals into actionable intelligence, allowing organizations to prioritize their responses based on the severity and relevance of identified threats. The platform also offers real-time monitoring of external attack surfaces, ensuring that security teams are always aware of potential vulnerabilities. Brandefense enhances incident response through automated prioritization and contextual intelligence. By explaining the underlying reasons behind threats, it empowers security teams to make informed decisions quickly. Additionally, the platform maintains continuous alignment with modern frameworks such as Cyber Threat Exposure Management (CTEM), ensuring that organizations remain compliant and up-to-date with industry standards. Ultimately, Brandefense aims to function as an autonomous cyber defense system, capable of identifying, analyzing, and responding to threats with minimal human intervention. This innovative approach not only streamlines security operations but also allows organizations to focus their resources on strategic initiatives rather than constantly reacting to emerging threats. By leveraging the power of AI and comprehensive data analysis, Brandefense stands out as a robust solution for organizations committed to enhancing their cybersecurity resilience.

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate Brandefense Digital Risk Protection Platform?

  • Vulnerability Intelligence: 10.0/10 (Category avg: 9.0/10)
  • Continuous Monitoring: 10.0/10 (Category avg: 9.2/10)
  • Compliance Monitoring: 8.3/10 (Category avg: 8.6/10)
  • Ease of Admin: 10.0/10 (Category avg: 8.9/10)

Who Is the Company Behind Brandefense Digital Risk Protection Platform?

  • Seller: Brandefense
  • Company Website:
  • Year Founded: 2019
  • HQ Location: Ankara, TR
  • Twitter: @Brandefense
    1,128 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    93 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Medium

What Do G2 Reviewers Say About Brandefense Digital Risk Protection Platform?

AI-generated summary from verified user reviews

Pros
  • Users value the detailed analysis of Brandefense, benefiting from its evolving UI and centralized asset monitoring.
  • Users appreciate the ease of use of Brandefense, with a continuously evolving UI for asset monitoring.
  • Users value the evolving UI and in-depth analysis for comprehensive monitoring of company assets in one platform.
  • Users value the comprehensive monitoring efficiency of Brandefense, simplifying the management of company assets.
  • Users value the continuously evolving UI of Brandefense, providing thorough analysis and monitoring of assets in one platform.
Cons
  • Users experience small UI-related bugs after releases, which should be easier to resolve.
  • Users report small UI-related bugs after each release, indicating room for improvement in user experience.
  • Users often experience small UI-related bugs after releases, which detract from the overall user experience.

What Are Recent G2 Reviews of Brandefense Digital Risk Protection Platform?

cloudDFN cDFN WatchTower

cDFN WatchTower is a CAASM (Cyber Asset Attack Surface Management) solution that integrates risk-based vulnerability management, external attack surface monitoring, dark web surveillance, vendor risk management, and compliance oversight into a single platform. It empowers organizations to proactively identify and address vulnerabilities, secure external assets, monitor potential threats on the dark web, and ensure compliance with industry standards. By consolidating these critical functions, businesses can reduce security gaps, streamline risk management, and enhance overall cybersecurity posture.

Average Rating: 5.0/5.0

Total Reviews: 1

Who Is the Company Behind cloudDFN cDFN WatchTower?

  • Seller: cloudDFN
  • Year Founded: 2019
  • HQ Location: Thane, IN
  • LinkedIn® Page: www.linkedin.com
    12 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

What Do G2 Reviewers Say About cloudDFN cDFN WatchTower?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the speedy dark web monitoring of cDFN WatchTower, aiding in timely detection of credential leaks.
  • Users find the quick dark web scans very helpful for monitoring credential leaks effectively.
  • Users appreciate the quick dark web scan of cDFN WatchTower, aiding in effective credential leak monitoring.
  • Users appreciate the monitoring efficiency of cDFN WatchTower, enjoying quick scans for credential leak detection.
  • Users appreciate the fast response time of cDFN WatchTower, aiding effectively in credential leak monitoring.
Cons
  • Users find the complex navigation challenging initially, suggesting that the UI requires improvements for better usability.
  • Users find the dashboard issues challenging, especially with navigation between modules being difficult initially.
  • Users find the difficult navigation challenging initially, suggesting significant room for UI improvement.
  • Users find the poor navigation challenging, especially when trying to move between different modules initially.
  • Users feel the UI can be improved as navigation between modules is initially challenging.

What Are Recent G2 Reviews of cloudDFN cDFN WatchTower?

DarkInvader

DarkInvader is an External Attack Surface Management (EASM) platform that provides continuous visibility across all internet-facing assets. It discovers and maps your full digital footprint, identifying unknown and unmanaged assets, and continuously monitors for changes, vulnerabilities, and emerging threats. The platform also analyses OSINT, dark web data, and external signals to detect risks such as exposed credentials, misconfigurations, and supplier-related threats. Using advanced automation and AI-driven analysis to process large volumes of external data, DarkInvader surfaces the risks that matter most without adding noise. This enables organisations to understand their true external exposure, prioritise high-risk issues, and reduce their attack surface before it can be exploited.

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate DarkInvader?

  • Vulnerability Intelligence: 10.0/10 (Category avg: 9.0/10)
  • Continuous Monitoring: 10.0/10 (Category avg: 9.2/10)

Who Is the Company Behind DarkInvader?

  • Seller: DarkInvader
  • Year Founded: 2021
  • HQ Location: Platform 7D, New Station Street, Leeds, LS1 4BT, United Kingdom

  • LinkedIn® Page: www.linkedin.com
    12 employees on LinkedIn®
  • Phone: +44 1138805336

Who Uses This Product?

  • Company Size: 100% Large

What Are Recent G2 Reviews of DarkInvader?

DefenceScout

Build your own SOC with our advanced cybersecurity platform - DefenceScout

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate DefenceScout?

  • Vulnerability Intelligence: 6.7/10 (Category avg: 9.0/10)
  • Continuous Monitoring: 10.0/10 (Category avg: 9.2/10)
  • Compliance Monitoring: 8.3/10 (Category avg: 8.6/10)
  • Ease of Admin: 10.0/10 (Category avg: 8.9/10)

Who Is the Company Behind DefenceScout?

Who Uses This Product?

  • Company Size: 100% Small

What Do G2 Reviewers Say About DefenceScout?

AI-generated summary from verified user reviews

Pros
  • Users value the automation integration in DefenceScout, enhancing incident response and providing actionable insights effortlessly.
  • Users value the easy integrations of DefenceScout, enabling streamlined alerting and efficient incident responses.
  • Users value the seamless integration and customizable dashboards of DefenceScout, leading to efficient incident response.
  • Users praise the innovative technology of DefenceScout, enhancing their operational effectiveness in critical situations.
  • Users value the real-time notifications of DefenceScout, enabling swift and effective incident response through actionable insights.

What Are Recent G2 Reviews of DefenceScout?

Informer

Informer's Attack Surface Management (ASM) and Pentesting platform helps CISOs, CTOs and IT teams map external assets and identify vulnerabilities in real-time so they can be remediated before attackers can exploit them

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate Informer?

  • Vulnerability Intelligence: 10.0/10 (Category avg: 9.0/10)
  • Continuous Monitoring: 10.0/10 (Category avg: 9.2/10)
  • Compliance Monitoring: 10.0/10 (Category avg: 8.6/10)
  • Ease of Admin: 10.0/10 (Category avg: 8.9/10)

Who Is the Company Behind Informer?

  • Seller: Informer
  • Year Founded: 2012
  • HQ Location: San Francisco, US
  • LinkedIn® Page: www.linkedin.com
    3,396 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Large

What Are Recent G2 Reviews of Informer?

iRisk Platform

The iRisk Platform by C2SEC is an innovative analytics solution designed to assess and quantify cyber risks in financial terms for enterprises of all sizes, including those in the insurance industry. By integrating patented big data, artificial intelligence, and cybersecurity technologies, iRisk offers a comprehensive approach to third-party security assurance, particularly focusing on Cloud and SaaS environments. Key Features and Functionality: - Multi-Layered Risk Assessment: iRisk evaluates over 20 risk components through both non-intrusive security scans and authorized penetration tests, ensuring a thorough analysis of potential vulnerabilities. - Executive Dashboard: The platform provides an intuitive dashboard featuring alerts, security findings, risk indexes, benchmarks, and trend analyses, enabling effective management of cyber risks associated with numerous third parties. - Automated Risk Quantification: By leveraging AI and big data, iRisk translates complex cyber risk data into clear financial metrics, facilitating informed decision-making. Primary Value and Problem Solved: iRisk addresses the critical need for organizations to understand and manage their cyber exposure efficiently. By offering a detailed, financially quantifiable view of cyber risks, the platform empowers businesses to prioritize security measures, allocate resources effectively, and enhance overall resilience against cyber threats. This proactive approach not only safeguards sensitive data but also supports compliance with industry regulations and standards.

Average Rating: 4.5/5.0

Total Reviews: 1

How Do G2 Users Rate iRisk Platform?

  • Vulnerability Intelligence: 8.3/10 (Category avg: 9.0/10)
  • Continuous Monitoring: 6.7/10 (Category avg: 9.2/10)
  • Compliance Monitoring: 8.3/10 (Category avg: 8.6/10)
  • Ease of Admin: 8.3/10 (Category avg: 8.9/10)

Who Is the Company Behind iRisk Platform?

  • Seller: C2SEC
  • Year Founded: 2016
  • HQ Location: Redmond, US
  • LinkedIn® Page: www.linkedin.com
    5 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of iRisk Platform?

Manidant Attack surface management

Attack Surface Management Discover and analyze internet assets across today’s dynamic, distributed and shared environments. Continually monitor discovered assets for exposures and enable intelligence and red teams to operationalize and inform risk management.

Average Rating: 4.5/5.0

Total Reviews: 1

How Do G2 Users Rate Manidant Attack surface management?

  • Vulnerability Intelligence: 10.0/10 (Category avg: 9.0/10)
  • Continuous Monitoring: 10.0/10 (Category avg: 9.2/10)
  • Compliance Monitoring: 10.0/10 (Category avg: 8.6/10)
  • Ease of Admin: 10.0/10 (Category avg: 8.9/10)

Who Is the Company Behind Manidant Attack surface management?

  • Seller: Google
  • Year Founded: 1998
  • HQ Location: Mountain View, CA
  • Twitter: @google
    31,899,995 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    341,888 employees on LinkedIn®
  • Ownership: NASDAQ:GOOG

Who Uses This Product?

  • Company Size: 100% Medium

What Are Recent G2 Reviews of Manidant Attack surface management?

NoPorts

Stop Connecting People to Networks. Connect Them to Services. NoPorts is a Zero Trust Service Access (ZTSA) tool designed to replace the broad "Network Access" model. Unlike VPNs or Mesh overlays that place devices on a virtual LAN, potentially exposing your entire subnet to lateral attacks, NoPorts creates a discrete, end-to-end encrypted tunnel to a single specific service on a device. Network Access vs. Service Access VPNs & Mesh Networks connect people to a network. If a device is compromised, the attacker can scan and move laterally across that network. NoPorts connects people, entities and devices to a service (e.g., localhost:22). They get no visibility into the rest of the network, the device's other ports, or the OS. If they are authorized for SSH, they get SSH and nothing else. Key Technical Features - True Invisibility - NoPorts uses an outbound-only architecture. There are no open listening ports on your firewall or device. Your infrastructure is invisible to Shodan, Nmap, and botnet scanners. - Granular Service Tunnels - Map a local port on your laptop directly to a remote service (SSH, RDP, VNC, HTTP, or MCP). The connection is peer-to-peer and service-specific. - Decentralized Identity - We don't store your keys. Authentication is handled via public-key cryptography on the device at the edge, ensuring NoPorts never sees your data or acts as a central point of failure. - Bypass Connectivity Hurdles - Works instantly behind CGNAT, Starlink, 4G/LTE, and firewalls without port forwarding or static IPs. Use Cases - Secure AI Agents & MCP Servers - Allow AI agents to access the various services they need to perform their duties by fully securing APIs and MCP servers, without having any of your endpoints be discoverable by unauthorized people or agents. - Starlink & Satellite Remote Access: overcome the limitations of Starlink's CGNAT (Carrier-Grade NAT) without needing to purchase a static IP or configure complex router settings. Perfect for maintaining reliable, secure connections to remote field sites, maritime vessels, and rural deployments where traditional VPNs fail. - Home Labs & Personal Servers - Securely access personal infrastructure (Home Assistant, NAS, Raspberry Pi) from anywhere without opening ports on your home router or configuring Dynamic DNS. Perfect for users behind CGNAT who need to reach specific services without exposing their entire home network. - IoT & Headless Devices - Manage remote edge devices (Raspberry Pi, industrial controllers) as if they were on your desk, even if they are buried deep behind a cellular NAT. - Sysadmin & Developer Access - Give contractors or developers access to a single server port without granting them VPN access to the corporate LAN.

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate NoPorts?

  • Ease of Admin: 10.0/10 (Category avg: 8.9/10)

Who Is the Company Behind NoPorts?

  • Seller: Atsign
  • Year Founded: 2019
  • HQ Location: San Jose, US
  • LinkedIn® Page: www.linkedin.com
    31 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

What Do G2 Reviewers Say About NoPorts?

AI-generated summary from verified user reviews

Pros
  • Users value the secure remote access provided by NoPorts for their globally deployed IoT devices.
Cons
  • Users find the poor documentation of NoPorts frustrating, noting that it hampers their experience with the platform.

What Are Recent G2 Reviews of NoPorts?

Outpost24 Vulnerability Management

Security isn’t a one-time activity, our vulnerability management tools continuously discover infrastructure vulnerabilities and perimeter security flaws that could disrupt your business, and use risk based insights to prioritize your remediation efforts and reduce exposure time.

Average Rating: 5.0/5.0

Total Reviews: 1

Who Is the Company Behind Outpost24 Vulnerability Management?

Who Uses This Product?

  • Company Size: 100% Small

What Do G2 Reviewers Say About Outpost24 Vulnerability Management?

AI-generated summary from verified user reviews

Pros
  • Users find Outpost24 Vulnerability Management to be easy to use and install, with many super useful options.
  • Users love the easy setup of Outpost24 Vulnerability Management, finding it quick and user-friendly for diverse needs.
  • Users appreciate the ease of use and installation of Outpost24, along with its many useful options.
  • Users find the installation ease of Outpost24 Vulnerability Management straightforward and highly beneficial for utilizing its features.

What Are Recent G2 Reviews of Outpost24 Vulnerability Management?

QuimeraX Intelligence

QuimeraX Intelligence is a unified platform that delivers complete visibility and situational awareness of your organization’s external cyber risk. It correlates exposed assets, threat-actor activity, data leaks, and exploitable vulnerabilities into a single actionable view. Security teams rely on QuimeraX to proactively reduce risk, accelerate decision-making, and strengthen their overall cyber resilience.

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate QuimeraX Intelligence?

  • Vulnerability Intelligence: 10.0/10 (Category avg: 9.0/10)
  • Continuous Monitoring: 10.0/10 (Category avg: 9.2/10)

Who Is the Company Behind QuimeraX Intelligence?

Who Uses This Product?

  • Company Size: 100% Medium

What Do G2 Reviewers Say About QuimeraX Intelligence?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the ease of automation with QuimeraX, streamlining leak discovery and vulnerability identification effortlessly.
  • Users find QuimeraX Intelligence incredibly easy to use, enhancing their daily workflow and vulnerability detection.
  • Users find QuimeraX's easy setup incredibly beneficial, enabling daily use for vulnerability detection and leak discovery.
  • Users value the seamless integrations of QuimeraX Intelligence, enhancing their daily workflow and vulnerability management.
  • Users find QuimeraX's vulnerability detection straightforward and effective for identifying potential security leaks daily.

What Are Recent G2 Reviews of QuimeraX Intelligence?

Red Sift ASM

With Red Sift ASM (Attack Surface Management), you can continuously discover, inventory and manage your business’s critical external-facing and cloud assets. With Red Sift ASM, you: 1) Get complete visibility with a view into your entire attack surface – including assets you didn't know existed; 2) Remediate configuration risks before bad actors can take advantage; 3) Reduce premiums by solving problems before they are visible to your cyber insurer.

Average Rating: 4.0/5.0

Total Reviews: 1

How Do G2 Users Rate Red Sift ASM?

  • Vulnerability Intelligence: 10.0/10 (Category avg: 9.0/10)
  • Continuous Monitoring: 8.3/10 (Category avg: 9.2/10)
  • Compliance Monitoring: 8.3/10 (Category avg: 8.6/10)

Who Is the Company Behind Red Sift ASM?

  • Seller: Red Sift
  • Year Founded: 2015
  • HQ Location: London, England, United Kingdom
  • Twitter: @redsift
    1,267 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    102 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Large

What Do G2 Reviewers Say About Red Sift ASM?

AI-generated summary from verified user reviews

Pros
  • Users highlight the automated asset detection capabilities of Red Sift ASM, enhancing network and cybersecurity monitoring effectively.
  • Users value the automation capabilities of Red Sift ASM for effective asset detection and cybersecurity monitoring.
  • Users praise the automation testing of Red Sift ASM for enhancing cybersecurity and efficient asset detection.
  • Users value the comprehensive monitoring of Red Sift ASM for enhancing cybersecurity and automated asset detection.
  • Users highlight the effective automated asset detection capabilities of Red Sift ASM for enhanced cybersecurity monitoring.

What Are Recent G2 Reviews of Red Sift ASM?

Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated April 10, 2026