https://metasecurity.com/cybersecurity-ecosystem/ Welcome to Metasecurity Learn more Metasecurity * Articles * About Sign In Subscribe Sign up Sign in Theme * Articles * About [ ] Open Letters Startups Earnings Cybersecurity Ecosystem Introduction Welcome to Metasecurity's mapping of the cybersecurity ecosystem. This is an ongoing project to capture the layout of the industries that comprise cybersecurity, privacy, and risk. The mapping project is a combination of visuals, definitions, and examples from each area of the ecosystem. Seeing the ecosystem from multiple views is the most practical approach to grappling with the enormity of it all. A table of contents is available to help you navigate through the mapping. It's large, and there is no way to simplify it without losing important details. Various image formats and source files are also available at the bottom. You're welcome to use them as you please. For more background on the thought process behind the project, check out the introductory article: Mapping the Cybersecurity Ecosystem An introduction to Metasecurity's cybersecurity ecosystem mapping project. It's time to reframe our view of cybersecurity and move our thinking from industries to ecosystems. [favicon]MetasecurityCole Grolmus [v1_-Cybers] I hope you find this useful as you build your understanding of cybersecurity and plot your course towards work that matters to you. [Ecosystem-Map--v3-_DRAFT-1] Access Control Authentication Adaptive Authentication Overview: Authentication policies dynamically triggered based on user context (e.g. location, device, etc.). Example(s): SecureAuth, Okta Biometrics Overview: Use of physical or behavioral traits to authenticate and verify identity. Example(s): Clear, Prove, Keyless Federated Identity Overview: Multiple authentication systems share identity data using pre-defined contracts and attribute mappings. Common standards include SAML and OAuth 2.0. Example(s): Okta, Ping Identity, Stytch, WorkOS Multi-Factor Authentication (MFA) Overview: Authentication that combines two or more authentication requirements (e.g. password and one-time token) for increased security. Example(s): Duo Security, Authy, Trusona Single Sign-On (SSO) Overview: User authentication to multiple systems with a single session. Historically implemented with agents using web-based sessions. Example(s): Oracle Access Management, Symantec SiteMinder Social Login Overview: Sign in to third party sites using authentication from social networks. Example(s): Facebook Login, Sign in with Slack Authorization Data Access Governance Overview: Systems for gaining visibility and enforcing access control policies on unstructured data (spreadsheets, documents, PDFs, etc.). Example(s): Varonis, StealthBits, SailPoint File Access Manager, Immuta Directory Services Overview: A repository for collecting information about users, devices, and resources for authentication and authorization. LDAP is a common standard for directory services. Example(s): Microsoft Active Directory, ForgeRock Directory Services, JumpCloud Identity Governance and Administration (IGA) Overview: Systems for administering accounts and credentials, access provisioning, and identity governance. Example(s): SailPoint, Oracle Identity Governance Privileged Access Management (PAM) Overview: Systems for managing privileged (elevated) access for users, shared accounts, secrets, keys, and other high risk credentials. Example(s): CyberArk, BeyondTrust, HashiCorp Vault Customer Identity (CIAM) Overview: Systems for controlling customer access to applications and managing customer profile information. Example(s): Okta, ForgeRock, Ping Identity Identity Proofing Overview: A service used for verifying a user's identity based on life history or other data aggregated from public and proprietary data sources. Example(s): Trulioo, Jumio, Checkr, Truework, AU10TIX --------------------------------------------------------------------- Application Security API Security Overview: Processes and tools for preventing and monitoring malicious attacks and misuse of APIs. Example(s): Salt Security, Wallarm, 42Crunch Bot Management Overview: Techniques and tools for assessing website bots and blocking malicious activity. Example(s): PerimeterX, Netacea, Imperva Advanced Bot Detection, Shape Security Software Composition Analysis Overview: Processes to identify use of open source software in a codebase to evaluate security, quality, licensing, and other software supply chain risks. Example(s): Veracode, WhiteSource, Sonatype, Cloudsmith Static and Dynamic Application Security Testing (SAST/DAST) Overview: Methodologies and tools for identifying security vulnerabilities in applications. Example(s): Snyk, Acunetix, Stackhawk, Cobalt Strike Web Application Firewall (WAF) Overview: Systems to protect web applications or APIs against exploits, bots, and attacks that compromise the security and availability of web applications. Example(s): F5 Advanced WAF, Signal Sciences, Cloudflare Web Application Firewall, Reblaze --------------------------------------------------------------------- Blockchain and Web3 Overview: Tools for securing and managing risks on blockchain and Web3 platforms. Example(s): valid.network, Fireblocks, GK8, NuID, Remme --------------------------------------------------------------------- Cloud Security Cloud Access Security Brokers (CASB) Overview: Platforms to help secure and manage use of cloud-based SaaS applications and infrastructure. Example(s): Netskope, Bitglass, McAfee MVISION Cloud Container and Workload Protection Overview: Processes and tools for securing containers and workloads within different cloud environments. Example(s): Orca, Aqua, Portshift, Intezer Protect Management and Compliance Overview: Continuous management, monitoring, policy enforcement, and compliance for cloud environment configurations. Example(s): Bridgecrew, CloudCheckr, Cloudanix, Stacklet, Armor Micro-Segmentation Overview: Techniques and tools to logically divide networks into security segments at the workload level with specific controls based on the risk and requirements of each segment. Example(s): Guardicore --------------------------------------------------------------------- Certifications and Training Certifications Overview: Official cybersecurity professional credentialing programs offered by governing bodies. Example(s): Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified Ethical Hacker (CEH) Training Overview: Education and learning courses or materials about cybersecurity-related topics. Example(s): SANS Institute, The Cyber Mentor, Cybrary --------------------------------------------------------------------- Cyber Crime Advanced Persistent Threats (APT) Overview: Organized groups of threat actors who gain unauthorized access to networks for political or economic reasons. Example(s): Cozy Bear, Double Dragon Botnets Overview: A network of compromised devices under the organized control of an attacker. Example(s): Mirai, Necurs, Bredolab Dark Web Overview: A hidden area of internet sites and services, accessible only from a specialized web browser or proxy. Example(s): The Hidden Wiki, ProPublica, Daniel, Silk Road Fraud and Scams Overview: Content, phishing, spam, and other fraudulent activity intended to trick users into sharing sensitive information. Example(s): Marketplace Fraud, Account Takeover (ATO), Employment Scams Malware Overview: Intrusive software developed by cybercriminals to steal data or damage systems and networks. Example(s): Pegasus, Petya, Morris worm Ransomware Overview: A specific type of malware and associated techniques for restricting access to data or other resources until a ransom is paid. Example(s): REvil, WannaCry, DarkSide --------------------------------------------------------------------- Fraud and Transaction Security Overview: Systems and processes to monitor, detect, prevent, and remediate fraudulent transactions and activities. Example(s): Sift, Riskified, Deduce, Arkose Labs, BioCatch, Bolt Fraud Protection, MagicCube, Shift, Datavisor, Alloy --------------------------------------------------------------------- Governance, Risk, and Compliance Governance GRC Overview: Systems to automate and integrate enterprise, operational, and IT risk management processes and data. Example(s): RSA Archer, LogicGate, ServiceNow GRC Metrics and Dashboards Overview: Tools used to track and display key performance indicators to measure cybersecurity risk and effectiveness. Example(s): UpGuard, custom internal dashboards Policies and Procedures Overview: Written documents and tools for managing rules for individuals accessing an organization's systems and data. Example(s): SANS Security Policy Templates, Zavanta, Tugboat Logic Information Security Policy Generator Security Awareness Overview: Training, instruction, and tools to educate users within an organization how to protect themselves and the company's assets from loss or harm. Example(s): KnowBe4, CybSafe, Living Security Segregation of Duties (SOD) Overview: Automated enforcement of shared responsibilities among multiple people for execution of critical processes. Reduces fraud and errors. Example(s): SAP Access Control, Pathlock Standards and Frameworks Overview: Documented guidance for policies and controls to systematically manage security and risk. Example(s): NIST Special Publication 800-53, ISO 27002, ISACA COBIT Risk Cyber Insurance Overview: Specialty business insurance for protection against cybersecurity-related losses, including data breaches, ransomware, and other incidents. Example(s): AIG Cyber Insurance, Chubb Cyber Insurance, Liberty Mutual Cyber Liability Enterprise Risk Management Overview: Identification, management, and remediation of company-wide risk at an executive level. Example(s): COSO ERM Integrated Framework, ISO 31000 Risk Ratings Overview: Assessment and quantification an organization's cybersecurity risk level. Example(s): BitSight, SecurityScorecard, Corax Compliance Auditors and Assessors Overview: Firms authorized to conduct independent reviews and certify compliance with regulations and standards. Example(s): PwC - Trust Solutions, Deloitte - Audit & Assurance, EY - Assurance, KPMG - Audit, Trustwave Compliance Automation Overview: Tools for automating compliance processes and continuous controls monitoring. Example(s): Vanta, Secureframe, Tugboat Logic, Drata, Very Good Security Regulations Overview: Official rules to enforce laws created by governments. Implemented and maintained by authorized government agencies. Example(s): HIPAA, Sarbanes-Oxley (SOX), General Data Protection Regulation (GDPR) Third Party Assurance Overview: An examination of a service provider's services, internal controls, and risks conducted by a third party on behalf of customers. Results are documented in a compliance report. Example(s): SOC 2, ISO 27001 --------------------------------------------------------------------- Government and NGOs Agencies Overview: Government agencies specializing in cybersecurity policy, research, and protection. Example(s): National Security Agency (NSA), Cybersecurity & Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), National Institute of Standards and Technology (NIST) International Organizations Overview: International government organizations specializing in cybersecurity policy, research, and protection. Example(s): INTERPOL, NATO Cyber Defence, United Nations Office of Counter-Terrorism NGOs Overview: Nonprofit organizations specializing in cybersecurity policy, research, and protection. Example(s): Electronic Frontier Foundation (EFF), Internet Watch Foundation (IWF), Information Security Forum (ISF), Center for Internet Security (CIS) Universities Overview: Cybersecurity research and education programs at public and private universities. Example(s): Citizen Lab, Stanford Internet Observatory, Cybersecurity at MIT Sloan --------------------------------------------------------------------- Infrastructure Security Network Security DDoS Mitigation Overview: Services to throttle and prevent distributed denial of service attack disruptions. Example(s): Cloudflare DDoS Protection, Radware Cloud DDoS Protection Service, Akamai Prolexic DNS/DHCP/IPAM Overview: Services and administration for DNS, DHCP, and IP addressing used on a network. Example(s): OpenDNS, Cloudflare DNS, BlueCat Firewalls Overview: Network security devices to regulate network traffic based on rules. Example(s): CheckPoint Firewall, Cisco Secure Firewall, F5 Advanced Firewall Manager, Palo Alto Networks Next-Generation Firewall Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) Overview: Systems to monitor and prevent network traffic matching recognized security threat profiles. Example(s): CheckPoint Intrusion Prevention System, Cisco Secure IPS, Juniper SRX Network Access Control (NAC) Overview: Systems that provide visibility and control of devices accessing a network. Example(s): Aruba Secure Network Access Control, Netshield, Portnox Secure Networking Overview: Policies, processes, and tools to augment networking with additional security controls. An adjacent domain with several features related to cybersecurity. Example(s): Exinda Network Orchestrator, Forescout Secure Web Gateway Overview: Systems to filter user-initiated internet traffic and enforce corporate and regulatory content policies. Example(s): Authentic8, Palo Alto Networks Prisma Access, Menlo Secure Web Gateway, Zscaler SSL Visibility Overview: Tools that provide visibility into encrypted network traffic for monitoring and threat analysis. Example(s): F5 SSL Orchestrator, Broadcom SSL Visibility Appliance Virtual Private Networks (VPN) Overview: Systems that enable users to securely and privately browse public internet sites and access private networks across a public network. Example(s): NordVPN, ProtonVPN, PulseSecure Wireless Security Overview: Prevention of damage and unauthorized access via wireless networks. Example(s): 7SIGNAL, WatchGuard Secure Wi-Fi, Aruba Wireless Endpoint Security Application Control Overview: Approach and tools for protecting against execution of malware and unapproved applications on endpoints. Example(s): Thycotic Privilege Manager, McAfee Application and Change Control, VMware Carbon Black App Control Endpoint Detection and Response Overview: Tools installed on endpoints to record key activity for monitoring and threat investigations. Example(s): SentinelOne, Cybereason, Tanium Threat Response, Sophos Intercept X Endpoint Endpoint Protection Overview: Software to protect endpoints from threats, including malware, ransomware, phishing, and data theft. Example(s): Kaspersky, CrowdStrike Falcon Endpoint Protection, SparkCognition DeepArmor Host Intrusion Prevention System (HIPS) Overview: Endpoint-based intrusion detection and prevention system to monitor and analyze internals and network traffic on the endpoint for prevention and detection of threats. Example(s): McAfee Host Intrusion Prevention Secure Desktop Overview: Management of endpoints for containment of threats and secure enterprise network access. Example(s): Hysolate, Absolute, Ivanti Data Center Security Backup and Recovery Overview: Processes and tools for creating, storing, and restoring copies of data to protect against data loss. Example(s): Veritas, Rewind, Hewlett Packard Enterprise Data Protection Secure Storage Overview: Processes, hardware, and facilities for maintaining data security and integrity. Example(s): Commvault, Veeam, Iron Mountain Messaging Security Overview: Processes and tools to secure and protect messaging and communication infrastructure, primarily focused on email-based threats. Example(s): ProofPoint Email Security and Protection, GreatHorn, IRONSCALES, Area 1 --------------------------------------------------------------------- Investors Angel Investors Overview: Independent individual investors or a group of individual investors who invest capital in early stage cybersecurity companies. Example(s): Silicon Valley CISO Investments, SYN Ventures, Cyber Seed Fund I Private Equity Overview: Late stage private equity firms and investment banks with significant portfolios of cybersecurity companies. Example(s): Thoma Bravo, Vista Equity Partners, Momentum Cyber Venture Capital Overview: Institutional venture capital firms with a significant number of cybersecurity investments and exits. Example(s): Andreessen Horowitz, Sequoia, AllegisCyber Capital, ForgePoint Capital --------------------------------------------------------------------- Media Analysts Overview: Firms and independent analysts covering cybersecurity companies and trends. Example(s): Gartner, Forrester, Metasecurity Books Overview: Authors writing books about cybersecurity topics. Example(s): Bruce Schneier, Matt Bishop, Victoria Baines Events Overview: Conferences and events related to cybersecurity. Example(s): RSA Conference, DEF CON, Oktane News Overview: Media and independent journalists covering cybersecurity news and events. Example(s): CyberWire, This Week In Security, tl;dr sec Publications Overview: Magazines, journals, and other digital media about cybersecurity topics. Example(s): SC Magazine, ISACA Journal, CISO Magazine --------------------------------------------------------------------- Mobile Security Overview: Tools protect sensitive information stored on mobile devices, including smartphones, tablets, and wearables. Example(s): Lookout Mobile Endpoint Security, Deep Instinct Mobile Security, SIRIN LABS --------------------------------------------------------------------- Physical Security Connected Car Security Overview: Protection of vehicle electronic systems, software, and data from malicious attacks. Example(s): Foretellix, SafeRide, Otonomo Connected Home Security Overview: Protection of home electronic systems, software, and data from malicious attacks. Example(s): Bitdefender BOX, CUJO AI, SAM, Plume HomePass Firmware Security Overview: Protecting the firmware of computers or devices from compromise. Example(s): Trapezoid, Eclypsium, Vdoo Internet of Things (IoT) Security Overview: Security for Internet of Things (IoT) devices and connected networks. Example(s): Armis, Regulus, Bastille, Karamba Security Operational Technology (OT) Security Overview: Tools to monitor and control the security of Industrial Control Systems (ICS). Example(s): Claroty, Tenable.ot, Star Lab Supply Chain Security Overview: Identification of threats and reduction of risk across the software and physical supply chain. Example(s): RunSafe, iTrust, Kodiak Hub --------------------------------------------------------------------- Privacy and Data Protection Consumer Liberty Personal Data Economy Overview: Platforms that enable individuals to take ownership of their information and profit from selling data. Example(s): Meeco, digi.me, CitizenMe Privacy Assistants Overview: Tools to help users understand and manage access to their private data. Example(s): MySudo, Have I Been Pwned, Jumbo Regulatory Compliance and Management Consent Management Overview: Systems and processes for notifying users about personal data collection and collecting explicit consent. Example(s): UserCentrics, Osano Data Privacy Request Automation Overview: Processes and tools to support individual requests for personal data and use under data privacy laws. Example(s): Transcend, DataGrail, Metomic Privacy Management Overview: Processes, activities, and tools to support management of privacy legislation and individual data rights. Example(s): OneTrust Privacy Management, TrustArc, WireWheel Privacy By Design Data Anonymization Overview: Tools to redact and anonymize data for safe data sharing. Example(s): Privitar, Hazy, Statice Privacy Developer Tools Overview: Tools to make it easier for developers to incorporate privacy into software and comply with privacy regulations while building and supporting software. Example(s): Ethyca, Tanker, Dataswift Anonymous Communication Overview: Tools and protocols for protecting and anonymizing user internet traffic to conceal location, usage, and identity against network surveillance or traffic analysis. Example(s): The Tor Project, Freenet, Invisible Internet Project (I2P) Database Security Overview: Tools, controls, and processes to protect databases from compromise. Example(s): Fortinet FortiGuard Database Security, IBM Guardium, Baffle Data Discovery and Classification Overview: The process of scanning data sources to find and classify structured and unstructured data, with a focus on sensitive and/or regulated data. Example(s): BigID, ActiveNav, Tanium Reveal, Varonis Data Classification Engine Data Loss/Leakage Prevention Overview: Systems to detect and prevent transmission of sensitive data. Example(s): Code42, Forcepoint Data Loss Prevention, McAfee Total Prevention e-Discovery Overview: Identification, collection, and storage of electronic information for investigations and legal requests. Example(s): Relativity, Logicube, Nuix, Consilio Encryption Overview: Conversion of plaintext data from a readable form to a protected form using keys. Example(s): Boxcryptor, Post-Quantum, Virtru, ID Quantique File Integrity Protection Overview: Solutions to monitor changes in operating system, database, and application files. Example(s): Tripwire File Integrity Manager, Qualys File Integrity Monitoring Public Key Infrastructure Overview: Infrastructure to establish and manage public key encryption for user identities, device identities, and secure end-to-end communications. Example(s): Entrust, Keyfactor, Let's Encrypt, Venafi Rights Management Overview: Software to help companies protect digital content (videos, images, files, etc.) from unauthorized distribution and duplication. Example(s): Vera, Seclore EDRM Secure Collaboration Overview: Platforms for private messaging and information sharing through encrypted communication channels. Example(s): Signal, Mattermost, Silent Circle Tokenization Overview: Processes and tools for transforming sensitive data into a masked value or random string of characters with no meaningful value. Example(s): Skyflow, StrongSalt, Evervault --------------------------------------------------------------------- Professional Services Consulting Boutique Overview: Specialized cybersecurity, privacy, or risk consulting practices within small professional services firms. Example(s): Krebs Stamos Group, Mandiant, Praetorian Large Overview: Cybersecurity, privacy, and risk consulting practices within large professional services firms. Example(s): Accenture, PwC, Deloitte Managed Services Managed Detection and Response (MDR) Overview: Outsourced management and monitoring for advanced cybersecurity functions and systems, including threat intelligence, threat hunting, and incident response. Example(s): eSentire, Arctic Wolf, Red Canary Managed Security Service Provider (MSSP) Overview: Outsourced management and monitoring for basic cybersecurity functions and systems. Example(s): Optiv, IBM, Verizon Outsourcing Overview: External management of specific cybersecurity functions (typically operational tasks). Often focused on cost reduction. Example(s): Wipro, TCS, Infosys Talent Marketplaces Crowdsourcing Overview: Public platforms for specific cybersecurity services, such as bug bounties. Example(s): HackerOne, BugCrowd Freelance Consulting Overview: Platforms for short-term cybersecurity gigs or contracts for 1099 workers through an employer. Example(s): PwC Talent Exchange, EY GigNow, Accenture Contractor Exchange --------------------------------------------------------------------- Security Operations Monitoring and Operations Analytics Overview: Data analytics platforms to proactively monitor and analyze security data. Example(s): Awake, Exabeam, Darktrace Application Performance Monitoring (APM) Overview: Software for application monitoring, tracing, diagnostics, and performance. This domain is adjacent to cybersecurity with some common cybersecurity features. Example(s): Datadog, New Relic, Sentry Data Management Overview: Processes and tools to extract, normalize, and enrich security data from multiple tools. Example(s): Monad Employee Monitoring Overview: Monitoring tools for logging and measuring employee activity and productivity. Example(s): Controlio, TeraMind Network Performance Monitoring Overview: Platforms to visualize, monitor, optimize, troubleshoot, and report on the health and availability of networks. Example(s): NetScout, SolarWinds Network Performance Monitor Security Information and Event Management (SIEM) Overview: Tools to consolidate and correlate log data for identification of security incidents. Example(s): Sumo Logic, LogRhythm, Securonix, Rapid7 InsightIDR, Elastic SIEM User Behavior Analytics (UBA)/User Entity Behavior Analytics (UEBA) Overview: Processes and tools to detect threats based on patterns in user behavior. Example(s): Gurucul, LogPoint, Exabeam Behavioral Analytics Vulnerability Assessment and Management Cyber Range Overview: Platforms for hands-on cybersecurity attack training and practice. Example(s): Hack the Box, Cyberbit Cyber Range Penetration Testing Overview: Intentional attacks on applications, networks, and infrastructure to identify exploitable vulnerabilities. Example(s): Wireshark, Metasploit, NMAP Social Engineering Overview: Techniques to manipulate people into exposing confidential information, allowing unauthorized access, and other human-exploitable vulnerabilities. Example(s): Cofense, Proofpoint Vulnerability Management and Testing Overview: Processes and tools for discovering, classifying, prioritizing, and remediating software and infrastructure vulnerabilities. Example(s): Qualys, Tenable, ThreadFix Change Management Asset Management Overview: Processes and tools for identifying and managing IT assets and their potential security risks. Example(s): Jamf, Axonius, Armis Configuration Management Database (CMDB) Overview: A database for storing information about hardware and software assets. CMDBs are primarily used for IT Service Management; however, much of the data is applicable to security operations. Example(s): ServiceNow CMDB, Solarwinds CMDB, JupiterOne Patch and System Management Overview: Processes and tools for keeping applications and infrastructure up to date with patches to address bugs and vulnerabilities. Example(s): Tanium Patch, Solarwinds Patch Manager, ManageEngine Patch Manager Incident Management and Response Deception Overview: Tools and techniques to deceive and catch attackers by imitating real assets as traps and decoys. Example(s): Canary, Illusive Attack Detection System, TrapX Extended Detection and Response (XDR) Overview: Systems to aggregate and analyze data to improve threat detection and incident response. Example(s): Anomali, Cynet, FireEye XDR Forensics Overview: Tracking and analysis of data on networks, mobile devices, computers, and storage devices for cybercrime investigations. Example(s): AccessData, The Sleuth Kit, EnCase Security Orchestration, Automation, and Response (SOAR) Overview: Systems and processes for collecting data from various security operations sources to define, prioritize, and automate incident response activities and workflows. Example(s): FireEye Helix, Cyware, Swimlane, Tines Threat Intelligence Overview: Collection of intelligence used to understand current or future threats to an organization. Example(s): Recorded Future, RiskIQ, ZeroFox, Digital Shadows --------------------------------------------------------------------- Files The cybersecurity ecosystem mapping is free for you to use and republish. Several variations in multiple file formats are available here. The full ecosystem map was created in a resolution suitable for 24x36 posters. SVG A vector graphic in SVG format for dynamic resizing and printing. PNG A raster graphic in PNG format. PDF A printable graphic in PDF format. Figma The original Figma source file in read-only format. --------------------------------------------------------------------- Credits Multiple sources were used for this meta-analysis of the cybersecurity ecosystem, including the following: * CB Insights: The Periodic Table of Cybersecurity Startups * CTech: Israel's 2020 Cyber Landscape * Foundation Capital: Cybersecurity, The Next Trillion-Dollar Market? * Gartner: Information Technology Glossary * Henry Jiang: Cybersecurity Domain Map * Michael Tefula: The Evolution of Privacy Tech * Momentum Cyber: CyberSCAPE * Okta: Identity and Access Management Glossary * Optiv: Cybersecurity Technology Map, Cybersecurity Dictionary * Redpoint: Introducing Redpoint's Data Security Landscapes * UC Berkeley: SCET Explains -- Cybersecurity Share Metasecurity Metasecurity analyzes the business and strategy of cybersecurity. Menu * Articles * About * Terms of Service * Privacy Policy Stay up to date [ ] Subscribe Email sent. Check your inbox and click the link to sign in. Sorry, something went wrong. Please try again. Copyright (c)2021 Metasecurity Table of Contents You've successfully signed up. Welcome back! You've successfully signed in. You've successfully subscribed to Metasecurity. Your link has expired. Success! Check your email for magic link to sign-in. Success! Your billing info has been updated. Your billing was not updated.