CyberSage, Threat Modeling Automation

Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 30 Current »

CyberSage SAAS Plans

Features

Feature

Standard

Enterprise

Enterprise +

Automated Threat Modeling

(tick)

(tick)

(tick)

Threat Modeling Profiles

 More info

Threat modeling engine uses profiles to build contextualized attack tree and threat model.

5

15

customized

Issues Tracking

 More info

Repo of security weakness found in threat modeling.

(tick)

(tick)

(tick)

AppSec Knowledge Base

 More info

Developers get real-time help to understand the security issues and how to remediate them with the knowledge base (KB) embedded in the threat modeling sessions. KB is based on CWE and OWASP.

(tick)

(tick)

(tick)

Jira Single-Sign-On

 More info

Users log into CyberSage with their Jira accounts. Seamlessly integrates security threat modeling into the development workflow.

(tick)

(tick)

Issues Management in Jira

 More info

Developers manage the life-cycle security tasks using their Jira development workflow.

(tick)

(tick)

Release Management Dashboard

 More info

Support risk-based software release management and CI/CD pipeline.

(tick)

(tick)

ChatGpt Integration

 More info

Support developers with security expertise by integrating with OpenAI ChatGPT. Need customer’s ChatGPT API account.

(tick)

(tick)

Issues Security Risk Rating

 More info

Prioritize remediation of security weaknesses. Risk rating considers both likelihood and impact to business.

Basic

Advanced

Advanced

Risk and Control Repository & Certification

 More info

Threat modeling engine uses risk and control facts to produce the accurate threat model. Security professionals certify these facts to be accurate so these facts are re-used in all threat modeling sessions to produce accurate results.

(tick)

(tick)

Application Inherent Risk Info Repo

 More info

Repository for enterprise applications catalog along with their essential inherent risk info. Can be synchronized with the enterprise’s book of record.

(tick)

(tick)

Create Threat Modeling Policies

 More info

Configure threat modeling profiles for applications when applications and business features change. (Configuration is done with out-of-box profiles set.)

(tick)

Risk and Impact Analysis

 More info

Analyze risks to applications and their business features, establish impacts to business and impact ratings.

(tick)

Reports and Charts

 More info

Graphic reports and charts for real-time security risk status and trends.

(tick)

Security & Admin Controls

Feature

Standard

Enterprise

Enterprise +

Private Cloud Instance

(tick)

(tick)

(tick)

Encryption in transit and at rest

(tick)

(tick)

(tick)

User roles and permissions

Basic

Advanced

Advanced

  • No labels