AttackIQ is a company that develops an automated validation platform. AttackIQ platform is designed to enable teams to test and measure the effectiveness of their security controls and staff. It automates security assessment by allowing security personnel to either create scenarios or leverage the curated library of existing attack scenarios to continuously attack their environment and expose weaknesses to the security architecture.

HQSan Diego, US

Employees (est.) (Oct 2019)85(+2%)

VP of Engineering
VP of Field Engineering
AttackIQ News and Updates

AttackIQ raises $17.6 million for continuous enterprise security monitoring

AttackIQ says it has secured $17.6 million in venture capital to expand its continuous security monitoring and mitigation tools.

AttackIQ Blogs

Predicting Attack Behavior - Ransomware Patterns Strategic Leaders Need to be Aware of

This is a new series of blogs where I’m going to be writing about “Predicting Attack Behavior”, discussing the anatomy of specific attack categories like ransomware and discussing past and current behavior of such attack categories for the purpose of predicting future behavior and building defensive…

Emulating Attacker Activities and The Pyramid of Pain

Some of you might be familiar with “The Pyramid of Pain”, first introduced in 2013 by security professional David J Bianco when he was focused on incident response and threat hunting for the purpose of improving the applicability of attack indicators.

Case Study - When Threat Intelligence and Red Team Get Married

As the Cybersecurity industry and the talent pool within it is in such high demand, AttackIQ has had a number of customers that have moved from one company to the next, and, as they have moved, have brought AttackIQ as a platform to their new teams as a fundamental decision system to accelerate and …

NASA JPL breaches - A reminder of basic cyber security hygiene

The recent audit report detailing numerous breaches of NASA’s Jet Propulsion Laboratory in the last 10 years was released this month. It’s interesting for a few reasons that I’ll go over in this blog but is also a reminder of the importance of basic cyber security hygiene. What we learned about NASA…

Indicators of Compromise

I am sure that every one of you has heard of IoCs, or Indicators of Compromise. They are the forensics that security investigators look for so they can identify the characteristics of the malicious activity that has already occurred. Some examples of IoCs are: Hash values of files IP addresses u…

Attack Paths and Kill Chains - AttackIQ Contributions to the Verizon 2019 DBIR Report

For the second year in a row, AttackIQ’s observations and analytics have provided the Verizon DBIR team a redacted dataset from our cloud analytics to help find common patterns and observations from emulated attack behavior. Last year, we contributed to a section of the Verizon 2018 Data Breach Inve…
