What problem it solves
Understand the operational pain and the outcome the product is intended to improve.
Read the current web page first for the complete product or service explanation. Downloadable PDFs remain available where an approved secondary document exists.
The resource centre brings together the public product explanation, package relationship, managed-service activity, operating model and scope boundaries.
Use the product page to understand the capability, then use the downloadable document for internal circulation or offline review where available.
Understand the operational pain and the outcome the product is intended to improve.
See the actual capabilities, managed activities, outputs and customer views.
Review the quantities, service responsibilities, dependencies and boundaries confirmed before activation.
Explore Guardian products, Damocles security services, technical methodology and downloadable product briefs.
Use these entry points for platform evaluation, package selection, technical assurance and procurement review before searching the full library.
Understand how Guardian brings security posture, findings, operations, remediation and reporting into one customer workspace.
Compare Guardian Core, Assurance and Managed Defence, including package inclusions, allowance boundaries and separately scoped products or services.
Compare Guardian products by capability, customer experience, Damocles responsibility, evidence, commercial model and scope boundary.
Compare Damocles penetration-testing services and choose the assessment that matches the attack surface or trust boundary you need to validate.
See how Damocles scopes testing, records coverage, uses security frameworks and handles evidence and assurance boundaries.
Start a security or procurement review with public technical evidence, then request controlled architecture, data-handling, supplier or assurance material only where required.
Explore Guardian products, managed capabilities and buyer information.
Agent, collector and log-source health, alert lifecycle, investigation context and provider operations using compatible monitoring connectors.
Asset and vulnerability posture, prioritised remediation, ownership, evidence and resolution review using compatible assessment connectors.
Package Guardian Core with explicit protection, assurance and managed-defence products without hiding components or responsibilities.
Managed WAF policy, tuning, traffic protection, attack visibility, change handling and Guardian follow-up for approved applications.
Continuous monitoring of approved public-facing assets for new or persistent exposure, with accountable remediation and verification.
Damocles monitoring, alert triage, investigation, escalation, action tracking and service reporting through Guardian.
Explore detailed vendor-neutral product briefs covering capability, customer experience, Damocles activity, connectors, onboarding, evidence and responsibilities.
Baseline monitoring for approved public websites with findings, owners, evidence and remediation tracking included in Guardian Core.
Managed DNS policy, malicious-destination blocking, identity context, investigation support and Guardian action follow-up.
Managed endpoint security, operating-system and supported application patching, restart tracking, exceptions and reporting.
Monitor approved domains, staff email addresses and brand terms, then turn material exposure into accountable response.
Compare Guardian Core, Assurance, Managed Defence and the explicit protection, assurance and managed-service products available as add-ons.
Assigned learning, progress, assessment, certificates and human-risk remediation for staff and approved participant experiences.
Deeper active website and API testing with approved profiles, customer-readable evidence, remediation actions and rescans.
Source health, alerts, investigations, escalation, actions and operational reporting through a connector-neutral Guardian operating model.
See how Guardian turns security posture, findings and operational signals into owned remediation, reviewable evidence and clear reporting.
Compare assessment, testing, network-security and managed-security services, then download the detailed technical brief when you need deeper scope information.
Test exposed hosts, services and remote-access paths to identify exploitable weaknesses that could provide an initial foothold or expose sensitive information.
Test representative internal access to expose weak trust boundaries, credentials, services and privilege paths that could turn one compromised device into broader control.
Test the application from public, authenticated, cross-role and integration perspectives to identify weaknesses that could expose accounts, data, privileged functions or business workflows.
Test API endpoints across unauthenticated, authenticated, cross-role and integration contexts to expose access-control, token, input and workflow weaknesses.
Test corporate, guest and representative wireless networks to identify weak authentication, isolation, management and trust paths into connected environments.
Review and test representative Active Directory access to identify credential, delegation, permission and trust paths that could expand one account into wider administrative control.
Test the application package, device behaviour and supporting API interactions to expose weaknesses in storage, transport, platform integration and business workflows.
Review architecture and source code to trace trust boundaries, sensitive data and security-critical functions that runtime testing may not fully expose.
Review cloud identities, configuration, networking, data services and operational controls to expose excessive access, unintended exposure and weak recovery or monitoring paths.
Review plans, roles, access, evidence sources and decision paths through representative scenarios to identify gaps that could delay containment, investigation or recovery.
Compare rulebases, objects, administration and logging with required traffic flows to identify excessive access, stale policy and control gaps.
Compare the intended trust model with routing, firewall policy, management access and representative traffic paths to identify missing boundaries and practical bypass paths.
Review remote-access architecture, identity, device trust and post-connect controls to identify paths that could turn stolen credentials or an unmanaged device into internal access.
Review the source policy, target design and migration controls so required connectivity is preserved while stale, excessive or mistranslated access is identified.
Review representative routers, switches and security appliances against an agreed baseline to identify weak administration, services, protocols and recovery controls.
Review topology, dependencies and high-availability controls, then validate agreed failure scenarios to expose single points of failure and unsafe recovery assumptions.
Review source health, triage, investigation and escalation workflows to identify telemetry gaps, inconsistent decisions and actions that may not reach accountable owners.
Technical guidance explaining how Damocles scopes, assesses and reports security work.
Exact framework versions, testing perspectives, coverage statuses, evidence, mapping types, limitations and review ownership.