-

AttackIQ Announces New Architecture and Products to Help Enterprises Fully Automate Continuous Security Validation and Remediation

SANTA CLARA, Calif.--(BUSINESS WIRE)--AttackIQ, the leading independent vendor of breach and attack simulation (BAS) solutions, today announced the launch of AttackIQ Informed Defense, the most significant product release in the company’s history. This new offering is in direct response to the evolution of attackers and their methods in becoming more targeted, sophisticated and automated. To stay ahead of the threat, enterprise security teams need to validate and continually assess that cyber defenses are always optimally configured.

The AttackIQ Informed Defense Architecture (AIDA) enables a transparent and completely manageable attacker kill chain testing methodology. By combining the ability to emulate attacker behavior in the early stages of attack, lateral movement behaviors through communication between test points, and using current and highly integrated network threat packet captures; AIDA affords the most comprehensive automated security testing platform available.

“AttackIQ customers have already enjoyed a testing architecture that allows for red, blue, and purple teams to develop and deploy sophisticated adversary emulation plans in production computing environments from anywhere in the world,” said AttackIQ CEO Brett Galloway. “With AttackIQ Informed Defense, customers will now be able to more closely replicate adversary behaviors by using the AttackIQ test point as an adversary ‘command controller,’ and executing lateral movement, persistence, and other late kill chain techniques, just as an attacker would.”

The AttackIQ Informed Defense solution is built on an industry-first unified architecture that:

  • Allows security teams to take advantage of the most comprehensively MITRE ATT&CK-aligned library of known attacker tactics, techniques and procedures (TTPs), and includes an open platform that enables these TTPs to be tailored or tester defined.
  • Provides an integrated testing architecture that allows customers to closely emulate threat actor behaviors across the entire adversary kill chain. From execution to defense evasion, from credential access to lateral movement, even including attackers living off the land.
  • Invokes the integration of commercially-available network packet capture of threat behaviors that can be passed between these test points which best exercises internal segmentation strategies.
  • Includes external orchestration infrastructure which integrates the ability to test organizational boundary security controls.

Combined with the company’s open system testing approach and validation tests for enterprise and cloud, the AttackIQ Informed Defense solution ensures that customers and partners have the right content and testing methodology at their fingertips.

“AttackIQ’s mission is to help organizations continuously optimize their security program’s effectiveness,” said Chris Kennedy, CISO and VP of Customer Success, AttackIQ. “The best way to do this is with a unified architecture that can test from a point of breach and test in-line security controls in production, at scale, safely. These are two different requirements, and security teams need to be able to do both.”

AttackIQ Informed Defense new solution features include:

  • The ability to promote existing AttackIQ test points staged throughout the production environment to become traffic-replay capable.
  • Intelligent PCAP session replay across inline network devices.
  • Modular infrastructure in service provider cloud IaaS networks that can play the role of an Internet-based entity or target for PCAP replay.
  • Options to add Internet-based roles for geo-testing.
  • Validation of internal security boundaries by using existing systems without having to deploy virtual machines.
  • PCAP library updates with examples of latest malware infections, command and control communications, and other test-ready samples.

The AttackIQ Informed Defense solution will be generally available to customers and partners in Q3 2020.

Customers and partners are welcome to learn how to operationalize MITRE ATT&CK, unlock purple teaming, and evolve their security programs into Threat Informed Defense practices by joining the AttackIQ Academy. Courses are free to attend. To register, visit: https://attackiq.com/academy/.

About AttackIQ

AttackIQ, the leading independent vendor in the emerging market of breach and attack simulation (BAS), built the industry’s first platform that enables red and blue teams to test and measure the effectiveness of their security controls and staff. With an open platform, AttackIQ supports the MITRE ATT&CK framework, a curated knowledge base and model for cyber adversary behavior used for planning security improvements and verifying defenses work as expected. AttackIQ’s platform is trusted by leading companies around the world. For more information visit http://www.attackiq.com/. Follow AttackIQ on Twitter, Facebook, LinkedIn, and YouTube.

Contacts

Emily Ashley
PR for AttackIQ
attackiq@10fold.com
916-710-0950

AttackIQ


Release Summary
AttackIQ announces the launch of new architecture and products to help enterprises automate continuous security validation and remediation.
Release Versions

Contacts

Emily Ashley
PR for AttackIQ
attackiq@10fold.com
916-710-0950

Social Media Profiles
More News From AttackIQ

AttackIQ Appoints William Booth as Senior Director of Product Management

SANTA CLARA, Calif.--(BUSINESS WIRE)--AttackIQ®, the leading vendor of Adversarial Exposure Validation (AEV) solutions and founding research partner of the MITRE Center for Threat-Informed Defense (CTID), today announced it has appointed William Booth as Senior Director of Product Management. In this role, Booth will guide product strategy and innovation across the AttackIQ platform, helping organizations strengthen cybersecurity effectiveness through continuous, data-informed validation. Booth...

AttackIQ Appoints Jon Baker as Vice President of Threat-Informed Defense

SANTA CLARA, Calif.--(BUSINESS WIRE)--AttackIQ®, the leading vendor of Adversarial Exposure Validation (AEV) solutions and founding research partner of the MITRE Center for Threat-Informed Defense (CTID), today announced it has appointed Jon Baker as Vice President of Threat-Informed Defense. In this role, Baker will lead efforts to accelerate the adoption of threat-informed defense, guiding customers with both services and technology to improve security outcomes. Baker joins AttackIQ following...

AttackIQ Appoints Jeffrey Rogers as Vice President of Customer Success

SANTA CLARA, Calif.--(BUSINESS WIRE)--AttackIQ®, the leading vendor of Adversarial Exposure Validation (AEV) solutions and founding research partner of the MITRE Center for Threat-Informed Defense (CTID), today announced it has appointed Jeffrey Rogers as Vice President of Customer Success. In this role, Rogers will lead the company’s customer success strategy, guiding organizations worldwide in building stronger, more resilient cybersecurity programs through adversarial exposure validation. Ro...
Back to Newsroom