New features for attack surface management
Modern attack surfaces are not static. The expansion of the cloud, the proliferation of SaaS, the complexity of identities, and shadow IT are continuously redefining organizational risks. For security leaders, visibility is no longer the main challenge, but rather the ability to operationalize this visibility.
Surface Command was designed to unify intelligence on assets and identities across the entire external attack surface. However, translating this intelligence into executive dashboards or operational reports has often required knowledge of Cypher queries.
Today, this changes: a new feature is introduced that allows creating widget-based filters in Surface Command, enabling teams to build meaningful dashboards for Attack Surface Management (ASM) in just a few minutes, without writing a single query.
For CISOs focused on improving Continuous Threat Exposure Management (CTEM), this is more than just a usability improvement. It is an operational accelerator.
From filters to dashboards, instantly
Security teams already use saved filters on assets and identities to answer critical questions:
- Which high-risk assets are exposed to the Internet?
- Where do privileged identities intersect with exploitable exposures?
- Which business units own unmanaged cloud infrastructure?
- Which third-party SaaS applications expand our attack surface?
Now, these same saved filters can be directly converted into live dashboard widgets. If the team can build a filter table, now they can build a dashboard.
It is no longer necessary to understand query syntax or rely on specialized skills for common reporting needs. With a few clicks, exposure visualizations become shareable and persistent dashboards, based on the same unified data model that powers Surface Command.
Reducing friction in exposure reporting
For many organizations, the barrier to effective exposure management is not visibility, but friction. When creating dashboards requires query skills, reporting slows down, operational teams depend on a small group of advanced users, executive visibility lags behind the reality of exposures, and CTEM initiatives get stuck under complexity.
Filter-based widgets eliminate this bottleneck. Security teams can now create exposure dashboards in a few minutes, enable analysts and vulnerability teams to self-manage, provide consistent reports to management, and standardize exposure visualizations across business units.
This lowers the barrier to building and maintaining exposure intelligence across the organization, and this is crucial when the goal is continuity.
A practical enabler for Continuous Threat Exposure Management (CTEM)
Beyond being a framework, CTEM is a discipline that treats exposure management as a continuous cycle, not as a one-time project. CTEM is commonly organized into five continuous steps:
- Scope: Define what you are focusing on (systems, business services, exposure themes, time horizons).
- Discovery: Identify assets, identities, and exposures within the scope.
- Prioritization: Determine what matters most based on risk and impact.
- Validation: Confirm exploitability and real-world likelihood.
- Remediation: Take action to mitigate exposures.
Editorial Note and Disclaimer
The guides and content published on GoYou are the result of independent research and analysis activities, for informational, educational, and in-depth purposes.
GoYou does not constitute a journalistic publication or an editorial product pursuant to Law No. 62/2001 and does not provide real-time information.
The GoYou project does not provide professional, technical, legal, or financial advice and disclaims any liability for the improper use of the information published.
In the Crypto sector, every investment involves risks: the reader is invited to always inform themselves autonomously before making any decision.
Integration with existing security tools
One of the biggest advantages of filter-based widgets is their ability to seamlessly integrate with existing security tools. Teams can easily connect their dashboards to ticketing systems, vulnerability management tools, and other security platforms. This allows for a unified view of exposures and a faster response to threats.
Advanced customization for expert users
While designed to be accessible, the widgets do not sacrifice power for advanced users. Experts can still use custom queries for complex analysis and advanced correlations. This flexibility ensures that the platform can meet the needs of all team members, from junior analysts to CISOs.
Practical examples of implementation
To demonstrate the effectiveness of filter-based widgets, let's consider some concrete use cases:
- A security team that constantly monitors new assets discovered in a critical business unit can set up a dashboard that displays this information in real time.
- A CISO who wants to track progress in reducing high-risk exposures can use a dashboard that shows the weekly evolution of these threats.
- A vulnerability manager can configure a dashboard that highlights exposures related to privileged identities, facilitating access management and risk mitigation.
Impact on governance and compliance
The ability to maintain persistent and always-updated dashboards has a significant impact on governance and compliance. Teams can easily demonstrate to auditors that they are continuously monitoring exposures and taking the necessary measures to mitigate risks. This simplifies the auditing process and reduces the risk of non-compliance.
Scalability and adaptability
As the organization grows and the attack surface evolves, filter-based dashboards easily adapt. Teams can add new filters, modify existing ones, and scale their visualizations without having to completely rebuild reports. This ensures that the platform remains useful even in dynamic and ever-evolving environments.
Support for strategic decision-making
Dashboards not only support daily operations but also provide valuable insights for strategic decision-making. For example, CISOs can use aggregated data to identify long-term trends, allocate resources more effectively, and justify security investments based on concrete evidence.
A step forward in exposure management
The introduction of filter-based widgets represents a significant step in exposure management. It combines accessibility, power, and scalability in a single solution, making it easier for security teams to operate efficiently and precisely. For CISOs, this means greater ability to operationalize visibility and communicate the value of security throughout the organization.
Next steps for security teams
To make the most of this new feature, security teams should:
- Identify the main focus areas for CTEM and create dedicated dashboards.
- Train team members on using filter-based widgets to ensure widespread adoption.
- Regularly monitor and optimize dashboards to ensure they meet the evolving needs of the organization.
- Use aggregated data to support strategic decisions and justify security investments.