Features

Everything you need for detection coverage.

From infrastructure scanning to SIEM rule generation. Two products, one system of record.

01 Detection Coverage Validator · DCV
01

Multi-cloud scanning

Discover security detections across AWS, Azure, and GCP. GuardDuty, Security Hub, Microsoft Defender, Config Rules, CloudWatch, EventBridge.

02

MITRE ATT&CK mapping

Every detection is automatically mapped to ATT&CK techniques. See which adversary behaviours your environment can detect.

03

Coverage gap analysis

Identify blind spots. Prioritised gap recommendations based on technique prevalence and your environment.

04

Remediation templates

Ready-to-deploy Terraform and CloudFormation templates for every coverage gap. Close gaps in minutes, not days.

05

Compliance mapping

Map coverage to CIS Controls v8, NIST 800-53, and other frameworks. Generate evidence for audits.

06

Coverage trending

Track coverage improvements over time. See posture evolve with every scan and remediation.

02 CloudSigma · Threat intel → Sigma rules
01

AI-assisted rule generation

Paste threat intelligence — CVEs, URLs, or raw text — and get production-ready Sigma rules in seconds. Grounded in 475+ gold rules.

02

475+ gold detection rules

Curated validated rules across 17 platforms — Windows, Linux, Kubernetes, cloud network, and WAF. Every output grounded against real examples.

03

Five SIEM formats

Generate rules for Splunk, Microsoft Sentinel, Google SecOps, Elasticsearch, and OpenSearch. One input, five outputs.

04

CVE auto-enrichment

Submit a CVE ID and CloudSigma enriches it with NVD, vendor bulletins, and security research before generating targeted rules.