RockITek submitted AttackIQ’s breach and attack simulation product line to the Department of Homeland Security’s Continuous Diagnostics and Mitigation (CDM) Program. In March 2020, AttackIQ was officially added to the Approved Product List (APL) for Phase 1 (asset management) and Phase 3 (network security).
CDM provides federal agencies with capabilities and tools that:
- Find cybersecurity risks on an ongoing basis;
- Prioritize these risks based upon potential impacts; and
- Enable cybersecurity personnel to focus on the most significant problems first.
It reduces cyber risk and provides visibility through automated tools that strengthen the ability to monitor and manage the threat of cyber vulnerabilities.
AttackIQ, the leading independent vendor in the breach and attack simulation market.
The AttackIQ platform delivers immediate visibility into an organization’s security program. AttackIQ’s goal is to mitigate risk and maximize ROI by validating the effectiveness of the organization’s cybersecurity toolchain and security teams. It further provides insights into methods to evolve and enhance the organizational cyber posture through identification of at-risk threat/attack vectors based on the existing security tool architecture and associated configurations.
AttackIQ’s methodology focuses on attack scenarios that provide immediate feedback and insight, along with the ability to track results over time. Scenarios mimic the behavior of real-world malware and attack methodologies, such as those in the MITRE ATT&CK framework. Running scenarios enables the organization to validate security tools’ detection and response and instrument the environment, enabling organizations to confirm the entire cybersecurity tools, processes, and people are functioning as intended.
AttackIQ continuously creates and curates new scenarios based on emerging threats, and provides the source code for each attack scenario, enabling organizations to customize scenarios to their specific environment and needs.
For more information, contact us today!
AttackIQ, a leader in the emerging market of breach and attack simulation, built the industry’s first platform that enables red and blue teams to test and measure the effectiveness of their security controls and staff. With an open platform, AttackIQ supports the MITRE ATT&CK framework, a curated knowledge base and model for cyber adversary behavior used for planning security improvements and verifying defenses work as expected. AttackIQ’s platform is trusted by leading companies around the world. For more information visit http://www.attackiq.com/. Follow AttackIQ on Twitter, Facebook, LinkedIn, Vimeo, and YouTube.
RockITek is a distributor specializing in building and managing purpose-built consortiums that accelerate the adoption of emerging technology in the government space. We collaborate with our partners to create alignment and work together for mutual success. Our portfolio of cybersecurity solutions meet agency mission goals and address government requirements, policies, and processes (e.g., NIST, Zero Trust, GDPR). We are a small business (NAICS 541519) with a GSA Federal Supply Schedule 47QTCA19D0085.