-

Introducing AttackIQ’s Flex 2.0

Expanded Visibility and Support for DORA and NIST CSF

SANTA CLARA, Calif.--(BUSINESS WIRE)--AttackIQ®, the leading independent vendor of breach and attack simulation (BAS) solutions and a founding research partner of the MITRE Engenuity Center for Threat-Informed Defense (CTID), today unveiled Flex 2.0. This agentless BAS solution empowers organizations to rapidly and effectively assess their security posture on demand.

Flex 2.0 introduces significant enhancements, including:

  • Insights Dashboard: This comprehensive tool provides actionable performance insights. New features like Test Performance Scoring and Performance by MITRE Tactic offer a clear, simplified view of overall security performance, driving continuous improvement.
  • DORA Test Package: Aligned with the Digital Operational Resilience Act (DORA), the DORA test packages enable financial institutions to gain visibility into their cybersecurity posture against DORA requirements using the AttackIQ BAS platform. There are two DORA test packages available, Basic and Advanced, catering to different testing needs.
  • NIST CSF Test Package: Based on the NIST Cybersecurity Framework (CSF) 2.0, the NIST test packages operationalizes NIST requirements on the AttackIQ BAS platform, providing a starting point for organizations to assess their security within the "Protect" function. There are two NIST CSF test packages available, Basic and Advanced, providing increasing degrees of testing capability.
  • Expanded Testing: A multitude of new assessments target emerging threats and commonly used adversary tactics, techniques, and procedures, while enhanced security baselines test critical controls like network security, next-generation firewalls, and endpoint detection and response.

"Many organizations struggle to keep pace with evolving threats due to the challenges of security control testing, leaving them vulnerable to attack," said Carl Wright, Chief Commercial Officer of AttackIQ. "Flex 2.0 addresses this challenge by providing on-demand, actionable insights. Our new Insights Dashboard empowers security teams to improve their overall security performance, while our expanding compliance test packages help organizations mitigate risk and avoid costly penalties.”

AttackIQ Flex 2.0 leverages advanced adversary emulation based on the MITRE ATT&CK framework to rigorously test security controls. Its user-friendly platform delivers comprehensive adversary campaign testing, detailed performance metrics, and actionable recommendations. With a flexible, pay-as-you-go model and easy deployment, Flex is accessible to organizations of all sizes.

Pricing and Availability

AttackIQ Flex 2.0 is available now to Flex customers.

More details are available here: https://www.attackiq.com/products/flex/

To schedule a demo or speak with sales contact sales@attackiq.com.

About AttackIQ

AttackIQ, the leading independent vendor of breach and attack simulation solutions, built the industry’s first Breach and Attack Simulation Platform for continuous security control validation and improving security program effectiveness and efficiency. AttackIQ is trusted by leading organizations worldwide to plan security improvements and verify that cyber defenses work as expected, aligned with the MITRE ATT&CK framework.

The company is committed to supporting its MSSP partners with a Flexible Preactive Partner Program that provides turn-key solutions, empowering them to elevate client security. AttackIQ is passionate about giving back to the cybersecurity community through its free award-winning AttackIQ Academy and partnership with MITRE Engenuity’s Center for Threat-Informed Defense.

For more information visit www.attackiq.com. Follow AttackIQ on Twitter, LinkedIn, and YouTube.

Contacts

Allison Knight
10Fold for AttackIQ
attackiq@10fold.com

AttackIQ


Release Versions

Contacts

Allison Knight
10Fold for AttackIQ
attackiq@10fold.com

Social Media Profiles
More News From AttackIQ

DISA Selects AttackIQ as the Department of War's Enterprise Platform for Adversarial Exposure Validation

LAS VEGAS--(BUSINESS WIRE)--AttackIQ, the leader in threat-informed Continuous Threat Exposure Management (CTEM), today announced that after a lengthy analysis of alternatives, the Defense Information Systems Agency (DISA) has selected AttackIQ as the enterprise platform for Adversarial Exposure Validation (AEV) across the Department of War (DoW). The deployment establishes a common operational capability that enables all DoW components to continuously validate the effectiveness of its cyber de...

AttackIQ Introduces AVA

SANTA CLARA, Calif.--(BUSINESS WIRE)--AttackIQ, the leader in threat-informed Continuous Threat Exposure Management (CTEM), today announced AVA Agentic OS, an agentic operating system designed to operationalize Continuous Threat Exposure Management. CTEM has emerged as the strategic framework for managing cyber risk, yet many organizations continue to struggle to operationalize CTEM across fragmented security technologies, disconnected workflows, and manual processes. Security teams have invest...

AttackIQ Named to 2026 MES Midmarket 100 List for Second Consecutive Year, Recognizing Continued Leadership in Operationalizing CTEM for Midsize Enterprises

SANTA CLARA, Calif.--(BUSINESS WIRE)--AttackIQ, a leader in adversary-informed Continuous Threat Exposure Management (CTEM), announced today that MES Computing, a brand of The Channel Company, has highlighted AttackIQ on its 2026 MES Midmarket 100 list. The annual MES Midmarket 100 recognizes technology vendors with deep knowledge of the unique IT needs of midmarket organizations. These vendors are committed to delivering future-focused products and services that support growth, innovation, and...
Back to Newsroom