Invicti Features
Administration (10)
-
Content Delivery
Caching of static or dynamic content at distributed PoPs for faster load times.
-
Dashboard & Reporting
Reporting and analytics that report on activity and program effectiveness.
-
Alerting
Identifies and alerts administrators of threats, issues, incidents and requests related to website security.
-
API
Application programming interface that allows for integration with other systems/databases
-
Extensibility
Provides the ability to extend the platform to include additional features and functionalities
-
Reporting and Analytics
Tools to visualize and analyze data.
API / Integrations
Application Programming Interface Specification for how the application communicates with other software. APIs typically enable integration of data, logic, objects, etc. with other software applications.
Extensibility
Provides the ability to extend the platform to include additional features and functionalities
-
API / Integrations
Application Programming Interface Specification for how the application communicates with other software. APIs typically enable integration of data, logic, objects, etc. with other software applications.
-
Extensibility
Provides the ability to extend the platform to include additional features and functionalities
Risk Analysis (3)
-
Vulnerability Assessment
Analyzes your existing website and network to outline access points that can be easily compromised.
-
Security Auditing
Analyzes data associated with web traffic and site performance to provide vulnerability insights and best practices.
Web-Application Security
Identify and respond to security threats to web applications
Threat Protection (3)
-
Firewall
Protects websites and web applications from a variety of attacks and malware threats.
-
Anomaly/Malware Detection
Automatically identify and flag unusual behaviors and malicious software
Endpoint Protection
Protect users working remotely and provide secure environments for personal devices to access company programs
Analysis (15)
-
Issue Tracking
Track issues and manage resolutions.
-
Reconnaissance
Gathers information about the system and potential exploits to be tested.
-
Vulnerability Scan
Scans applications and networks for known vulnerabilities, holes and exploits.
Compliance Management
Track and manage adherence to policies for any service, product, process, or supplier
Automatic Scans
Setup recurring or automatic scans
SPA Scans
Security assessments specifically designed to identify vulnerabilities in single-page web applications.
Real-Time Analytics
Analyze and gain insights into data in real-time
Issue Tracking
Track issues as vulnerabilities are discovered. Documents activity throughout the resolution process.
Static Code Analysis
Examines application source code for security flaws without executing it.
Code Analysis
Scans application source code for security flaws without executing it.
Integrated Development Environment
An application for source code editing, compiling, and debugging
-
Reporting and Analytics
Tools to visualize and analyze data.
-
Issue Tracking
Track issues as vulnerabilities are discovered. Documents activity throughout the resolution process.
-
Vulnerability Scan
Scans applications and networks for known vulnerabilities, holes and exploits.
-
Code Analysis
Scans application source code for security flaws without executing it.
Testing (18)
-
Command-Line Tools
Allows users to access a terminal host system and input command sequences.
-
Manual Testing
Allows users to perfrom hands-on live simulations and penetration tests.
-
Test Automation
Runs pre-scripted security tests without requiring manual work.
-
Performance and Reliability
Software is consistently available (uptime) and allows users to complete tasks quickly because they are not waiting for the software to respond to an action they took.
Command-Line Tools
Allows users to access a terminal host system and input command sequences.
Manual Testing
Allows users to perfrom hands-on live simulations and penetration tests.
Test Automation
Runs pre-scripted security tests without requiring manual work.
Compliance Testing
Allows users to test applications for specific compliance requirements.
Source-Code Scanning
Scan the initial code written for application development
Detection Rate
The rate at which scans accurately detect all vulnerabilities associated with the target.
False Positives
The rate at which scans falsely indicate detection of a vulnerability when no vulnerabilitiy legitimately exists.
Multi-Language Scanning
Scan for security vulnerabilities in multiple coding languages
-
Manual Testing
Allows users to perfrom hands-on live simulations and penetration tests.
-
Test Automation
Runs pre-scripted security tests without requiring manual work.
-
Compliance Testing
Allows users to test applications for specific compliance requirements.
-
Black-Box Scanning
Scans functional applications externally for vulnerabilities like SQL injection or XSS.
-
Detection Rate
The rate at which scans accurately detect all vulnerabilities associated with the target.
-
False Positives
The rate at which scans falsely indicate detection of a vulnerability when no vulnerabilitiy legitimately exists.
Performance (5)
-
Issue Tracking
Track issues as vulnerabilities are discovered. Documents activity throughout the resolution process.
-
Detection Rate
The rate at which scans accurately detect all vulnerabilities associated with the target.
-
False Positives
The rate at which scans falsely indicate detection of a vulnerability when no vulnerabilitiy legitimately exists.
-
Automated Scans
Runs pre-scripted vulnerability scans without requiring manual work.
Anomaly/Malware Detection
Automatically identify and flag unusual behaviors and malicious software
Network (6)
-
Compliance Testing
Allows users to scan applications and networks for specific compliance requirements.
-
Perimeter Scanning
Analyzes network devices, servers and operating systems for vulnerabilities.
-
Configuration Monitoring
Monitors configuration rule sets and policy enforcement measures and document changes to maintain compliance.
Vulnerability Scanning
Discover patch statuses and vulnerabilities
Source-Code Scanning
Scan the initial code written for application development
Web Scanning
Application (4)
-
Manual Application Testing
Allows users to perfrom hands-on live simulations and penetration tests.
-
Static Code Analysis
Scans application source code for security flaws without executing it.
-
Black Box Testing
Scans functional applications externally for vulnerabilities like SQL injection or XSS.
Risk Analysis
Analyze potential risks across the organization
Functionality - Software Composition Analysis (3)
Language Support
Supports a useful and wide variety of programming languages.
Integration
Integrates seamlessly with the build environment and development tools like repositories, package managers, etc.
Transparency
Grants comprehensive user-friendly insight into all open source components.
Effectiveness - Software Composition Analysis (3)
Remediation Suggestions
Provides relevant and helpful suggestions for vulnerability remediation upon detection.
Continuous Monitoring
Monitors open source components proactively and continuously.
Thorough Detection
Comprehensively identifies all open source version updates, vulnerabilities, and compliance issues.
Security Testing (1)
API Testing
Runs pre-scripted security tests without requiring manual work.
Security Management (1)
Security and Policy Enforcement
Abilities to set standards for network, application, and API security risk management.
Generative AI (1)
Generative AI
Use AI to generate content in the form of text, images, videos, etc.
Risk management - Application Security Posture Management (ASPM) (4)
Vulnerability Management
Identifies, tracks, and remediates vulnerabilities
Risk Assessment and Prioritization
Assesses and prioritizes risks based on application context
Compliance Management
Ensures compliance with industry standards and regulations
Policy Enforcement
Ensures mechanisms are in place for enforcing security policies across applications
Integration and efficiency - Application Security Posture Management (ASPM) (2)
Integration with Development Tools
Integrates with existing development and DevOps tools
Automation and Efficiency
Automates security tasks to improve efficiency
Reporting and Analytics - Application Security Posture Management (ASPM) (3)
Trend Analysis
Includes tools for analyzing trends in security incidents and vulnerabilities over time
Risk Scoring
Assigns scores to vulnerabilities based on their potential impact, helping prioritize remediation efforts
Customizable Dashboards
Provides customizable dashboards that present real-time data on vulnerabilities, risks, and compliance status
Agentic AI - Static Code Analysis (3)
Adaptive Learning
Improves performance based on feedback and experience
Natural Language Interaction
Engages in human-like conversation for task delegation
Proactive Assistance
Anticipates needs and offers suggestions without prompting
Agentic AI - Vulnerability Scanner (2)
Autonomous Task Execution
Capability to perform complex tasks without constant human input
Proactive Assistance
Anticipates needs and offers suggestions without prompting
Agentic AI - Static Application Security Testing (SAST) (1)
Autonomous Task Execution
Capability to perform complex tasks without constant human input
Agentic AI - Interactive Application Security Testing (IAST) (1)
Autonomous Task Execution
Capability to perform complex tasks without constant human input
Agentic AI - Application Security Posture Management (ASPM) (2)
Autonomous Task Execution
Capability to perform complex tasks without constant human input
Multi-step Planning
Ability to break down and plan multi-step processes
Additional Functionality (82)
SSL Security
Security protocol that ensures secure, encrypted communication over the internet, safeguarding sensitive data from unauthorized access
HIPAA Compliant
Compliant with HIPAA, which sets standards for sensitive patient data protection
API
Application programming interface that allows for integration with other systems/databases
Threat Response
Identifying, analyzing, and mitigating security issues and taking appropriate action to protect systems and data from potential harm
Endpoint Protection
Protect users working remotely and provide secure environments for personal devices to access company programs
Maintenance Scheduling
Schedule predetermined or ad hoc maintenance services and labor requests
Third-Party Integrations
Set up connections to third-party platforms to improve business processes
Security Auditing
Systematic evaluation of the security of a company's overall security system and situation
Application Security
Identify and respond to security threats to developed applications
Encryption
Convert data into a code for security
Network Security
Prevent and monitor unauthorized access, misuse, modification, or denial of a computer network and network-accessible resources
Real-Time Reporting
Active reporting of data and metrics
AI Copilot
A virtual assistant that uses AI to pursue goals and complete tasks on behalf of users
Reporting/Analytics
View and track pertinent metrics to find patterns and gain insights from data
Authentication
Verify the identity of users/devices to enable secure access
Financial Data Protection
Anti Virus
Prevents, detects and removes malware
Secure Data Storage
Securely stores data to prevent data loss or breaches
Virus Definition Update
Activity Dashboard
Dashboard to view the status of ongoing processes, identify current incidents and track past activities
VPN
Extend virtual private network over public networks to enable protected information exchange
Audit Trail
A record of all activities within the system, including user access, changes made, etc.
Anti Spam
Techniques to prevent and filter unwanted or unsolicited email spam from reaching a user's inbox
Access Controls/Permissions
Define levels of authorization for access to specific files or systems
Data Visualization
Graphical representation of data
Alerts/Escalation
System alerts about the need to escalate an issue or request
Data Security
Protect sensitive data for digital privacy
Runtime Container Security
Continuously vetting activities within the container application environment including hosts, open ports, protocols and payloads.
Asset Discovery
Threat Intelligence
Information to prevent, understand and identify cyber threats
Vulnerability Protection
Safeguards to protect network vulnerabilities
Alerts/Notifications
Alerts or notifications of various types such as pop-up messages, sounds, banners, or badges
Vulnerability/Threat Prioritization
Classify levels of threat and organize actions based on priorities
Generative AI
Use AI to generate content in the form of text, images, videos, etc.
SQL Injections
Protect against code driven website security attack techniques
Real-Time Analytics
Analyze and gain insights into data in real-time
Threat Protection
Protect incoming and outgoing communications against malware, spam, display spoofing, and other threats
Web-Application Security
Identify and respond to security threats to web applications
Password Protection
Protect passwords from security threats
Website Crawling
Crawling and indexing web pages
Vulnerability Assessment
The process of identifying, quantifying, and prioritizing the vulnerabilities in a system.
Network Mapping
Network topology maps providing infrastructure visualization for devices, connections, configurations, etc.
Activity Dashboard
Dashboard to view the status of ongoing processes, identify current incidents and track past activities
SQL Injections
Protect against code driven website security attack techniques
Audit Management
Plan, schedule, and execute organization's accounts and assets to ensure compliance with policies and laws
Threat Intelligence
Information to prevent, understand and identify cyber threats
Assignment Management
Assign issues and tasks based on availability or required skills
Integration Management
Identify which applications need to exchange data and enable these data connections
User Management
Manage user accounts, profiles, roles, permissions, and other details across applications, devices or networks
Asset Discovery
Remediation Management
Identify and orchestrate execution of actions needed to restore systems to optimal conditions
Vulnerability Scanning
Discover patch statuses and vulnerabilities
Generative AI
Use AI to generate content in the form of text, images, videos, etc.
Multi-User Collaboration
Two-way actions and communication between multiple users in real time
AI Copilot
A virtual assistant that uses AI to pursue goals and complete tasks on behalf of users
Web-Application Security
Identify and respond to security threats to web applications
Vulnerability Assessment
The process of identifying, quantifying, and prioritizing the vulnerabilities in a system.
Security Auditing
Systematic evaluation of the security of a company's overall security system and situation
Runtime Container Security
Continuously vetting activities within the container application environment including hosts, open ports, protocols and payloads.
Network Scanning
Scanning networks to identify security threats
Password Cracking
Tools for testing the strength of passwords through brute force, dictionary attacks, or other methods.
Simulated Threat Attacks
Controlled, realistic exercises that mimic real cyber threats to test an organization/user's security measures and preparedness.
Certificates
Create and distribute custom certificates for achievements or assessments.
Alerts/Notifications
Alerts or notifications of various types such as pop-up messages, sounds, banners, or badges
Real-Time Data
Receive data and information in real time
Cross-Site Scripting
Security vulnerability that allows attackers to inject malicious scripts into web pages
Exploit Frameworks
Specialized tools and modules to exploit identified vulnerabilities in systems and applications.
Debugging
Detect and remove errors
Generative AI
Use AI to generate content in the form of text, images, videos, etc.
AI Copilot
A virtual assistant that uses AI to pursue goals and complete tasks on behalf of users
For Developers
For the intention to be used by developers
Deployment Management
Manage the processes involved when making the application ready for use
Application Security
Identify and respond to security threats to developed applications
Dashboard
Assembly of graphs and charts for visualizing and tracking statistics/metrics
SQL Injections
Protect against code driven website security attack techniques
Load Balancing
Process of distributing a set of tasks over a set of resources, with the aim of making their overall processing more efficient
Alerts/Notifications
Alerts or notifications of various types such as pop-up messages, sounds, banners, or badges
Vulnerability Scanning
Discover patch statuses and vulnerabilities
Threat Response
Identifying, analyzing, and mitigating security issues and taking appropriate action to protect systems and data from potential harm
API
Application programming interface that allows for integration with other systems/databases
Log Management
Collects and aggregates data from various systems within the IT environment
AI Copilot
A virtual assistant that uses AI to pursue goals and complete tasks on behalf of users


