021716attackiqfiredrilldashboard100645194orig
Security

AttackIQ tests networks for known weaknesses attackers exploit

Startup AttackIQ can run attack scenarios against live networks to see whether the defenses customers think are in place are actually doing their job.

The platform, called FireDrill, consists of an agent that is deployed on representative endpoints, and a server that stores attack scenarios and gathers data.

The platform’s function is similar to that of another startup SafeBreach. Both companies differ from penetration testing in that they continuously test networks whereas a pen test gives a snapshot in time with large gaps between each snapshot.

With FireDrill an attack scenario might test whether a company’s data-loss-prevention platform is working as it should. The scenario might have an endpoint access a document, download it and upload it to Dropbox. If the scenario succeeds, FireDrill reports a failure of the DLP; if it is blocked, the test registers as a pass.

The agents run in the background and don’t affect the performance of the machines on which they are running, says Stephan Chenette, the company’s CEO and co-founder.

FireDrill comes with preset scenarios but customers can build their own using a Python software developer’s kit. The company is building communities of interest in which like-minded customers can share the custom scenarios they write, he says. The company updates scenarios as researchers come up with new attack vectors to check out.

Its platform is available either as a cloud service or an on-premises deployment. The SaaS option is hosted in the Amazon Web Services cloud.

The company was founded two and a half years ago by Chenette and Rajesh Sharma who worked together for six years at Websense, which was bought by Raytheon and is now rolled up into Forcepoint.

Based in San Diego, the company has 12 employees but plans to expand to 50 or so by the end of the year, Chenette says.

FireDrill costs $150 per agent per month. FireDrill is available for two-week free trials with unlimited agents.

IDG Insider

PREVIOUS ARTICLE

« Arctic Wolf offers SIEM in cloud

NEXT ARTICLE

IBM launches new mainframe with focus on security »
author_image
IDG News Service

The IDG News Service is the world's leading daily source of global IT news, commentary and editorial resources. The News Service distributes content to IDG's more than 300 IT publications in more than 60 countries.

  • Mail

Recommended for You

Trump hits partial pause on Huawei ban, but 5G concerns persist

Phil Muncaster reports on China and beyond

FinancialForce profits from PSA investment

Martin Veitch's inside track on today’s tech trends

Future-proofing the Middle East

Keri Allan looks at the latest trends and technologies

Poll

Do you think your smartphone is making you a workaholic?