Platform at a Glance
Offload Security is organized into modules that each own a domain of security work — and all feed the same correlated data model, or data lake. This page is a map: what each module does, and where to read more.
How the modules connect
Findings from every source converge in Vulnerability Management, resolve against the Asset Inventory, promote into the Risk Register, update Compliance controls, and generate Evidence and Reports — with AI assisting throughout and Integrations pushing to the systems you already run.
The modules
Detection & scanning
| Module | What it does | Read more |
|---|---|---|
| Cloud Security (CSPM) | Continuous misconfiguration assessment of AWS, Azure, and GCP, with native findings ingestion and drift detection. | Cloud Security |
| Application Security | Web (OWASP ZAP, Nuclei), API, network (Nmap), and SSL/TLS testing of your applications and services. | Security Scanning |
| SAST & Code Security | Static analysis, secrets detection, and IaC scanning of your source and pipelines. | API & Code Scanning |
| SBOM & License Scanning | Software bill-of-materials generation and open-source license compliance across code and container images. | Container Security |
| Container Security | Image scanning across ECR, GCR, ACR, and Docker Hub, with SBOMs, signature verification, and layer secret detection. | Container Security |
| Kubernetes Security | Cluster scanning (kube-bench, Polaris, Kubescape, Trivy) mapped to the MITRE ATT&CK Container Matrix. | Kubernetes Security |
| On-Premises Scanning | Internal network visibility, private URL/API scanning, OpenVAS vulnerability scanning, and Wazuh endpoint/SIEM data — for assets that never leave your network. | On-Premises |
Unify, prioritize & govern
| Module | What it does | Read more |
|---|---|---|
| Vulnerability Management | The unified queue: triage, risk scoring, deduplication, SLA tracking, and remediation guidance across every source. | Vulnerability Management |
| Asset Inventory | A live catalog of resources across clouds, accounts, regions, and the internal network. | Asset Inventory |
| Risk Register | An enterprise risk register auto-minted from findings, with treatment plans and SLAs. | Risk Register |
| Compliance & GRC | Framework tracking (SOC 2, ISO 27001, NIST CSF, PCI-DSS, and more), guided assessments, and drift detection. | Compliance |
| Evidence Management | An auditable evidence vault, captured as work happens and mapped to controls. | Evidence Hub |
| Alerts | Centralized, deduplicated alerting across sources, routable to your notification and SIEM channels. | Notifications |
Act, prove & extend
| Module | What it does | Read more |
|---|---|---|
| Reports | Executive, compliance, and audit reports from live data in PDF, HTML, and Excel. | Vulnerabilities & Risk |
| Knowledge Base | A searchable store of policies, standards, and answers that powers questionnaire auto-fill and AI guidance. | Knowledge Base |
| AI Suggestions & AI-SOC | AI-assisted triage, remediation guidance, control mapping, and incident correlation. | AI-SOC Agents |
| Threat Intelligence | Multi-feed ingestion (CISA KEV, NVD, OTX) with IOC correlation against your assets. | Threat Intelligence |
| SIEM & Integrations | Two-way integration with SIEM/SOAR (Splunk, QRadar, Sentinel, Wazuh), ticketing, IR, and evidence systems. | Integrations |
Solutions by industry
Offload Security maps these modules to the outcomes specific sectors need — from PCI-DSS and audit evidence in banking and financial services to data-protection and internal-network coverage in healthcare and manufacturing. See Solutions by Industry.