Private preview

External Attack Surface Management

Build a living view of the perimeter your organization exposes.

Poxek EASM continuously builds an outside-in inventory of domains, hosts, certificates, services, cloud edges, and third-party dependencies. Each relationship keeps its source, confidence, ownership state, and change history so teams can distinguish an owned asset from a plausible lead.

Private-preview benchmark

Targets for the private preview.

These figures are private-preview evaluation targets—not measured customer results, guarantees, or contractual SLAs.

≤24 h

Inventory freshness

Preview target for rechecking active assets and placing material perimeter changes into a review queue.

100%

Ownership decisions

Every promoted asset should retain its evidence, confidence, state, business label, and responsible team.

90 days

Comparable history

Private-preview target for reviewing additions, removals, service changes, and attribution decisions over time.

Poxek EASM

Capabilities

Recursive external discovery, evidence-backed attribution, and change tracking for the perimeter nobody owns end to end.

Capabilities

Recursive outside-in discovery

Start with domains, IP ranges, ASNs, cloud tenants, brands, or certificates and follow observable DNS, TLS, hosting, and application relationships to candidate assets.

Capabilities

Evidence-backed attribution

Promote, investigate, or dismiss candidates with a confidence trail, first-seen and last-seen timestamps, business labels, and an accountable owner.

Capabilities

Exposure change detection

Surface new services, certificate changes, expired domains, risky technologies, and assets that disappear or move before the inventory becomes stale.

Operating flow

Evidence moves with the decision.

Seed known organization identifiers
Discover externally observable assets
Correlate relationships and changes
Surface review-ready context

Operational use cases

Where the workflow should earn its place.

Operational use cases

Find shadow and forgotten infrastructure

Trace certificates, DNS records, shared hosting, and brand signals to review assets that never reached the CMDB or vulnerability scanner.

Operational use cases

Map a new business perimeter

Seed an acquisition, subsidiary, or regional brand, separate confirmed inventory from candidates, and assign validation to the right owner.

Operational use cases

Review external change

Give SOC and exposure teams a daily queue of new services, ownership shifts, certificate events, and high-risk changes with the supporting evidence.

Outcome

A reviewable external system of record that shows what changed, why an asset is linked to the organization, and who should make the next decision.

Private preview

Bring the perimeter and the response into the same conversation.

Tell us which operating constraint you need to examine. Private Preview discussions begin with scope, governance, and evaluation context.