Gartner defines adversarial exposure validation (AEV) as technologies that deliver consistent, continuous and automated evidence of the feasibility of an attack. These technologies confirm how potential attack techniques would successfully exploit an organization and circumvent prevention and detection security controls. They achieve this by performing attack scenarios and modeling or measuring the outcome to prove the existence and exploitability of exposures. AEV is generally delivered as a SaaS solution with or without on-premises agents. AEV as a market category replaces breach and attack simulation (BAS) and automated penetration testing and red teaming technology from the 2023 Gartner Hype Cycle (Hype Cycle for Security Operations, 2023). AEV technologies provide automated execution of both simplified and/or extensible attack scenarios. Results data from an executed attack scenario is used for various outcomes, such as: validating a theoretical exposure as real, automating frequent controls testing, improving preventive security posture or improving detection and response capabilities.
IT Security refers to products and services that protect digital systems and data from cyber threats and unauthorized access. This category includes markets that focus on network security, identity management, data protection, and cloud security, enabling organizations to reduce risk, ensure compliance, and operate securely in a digital world.
SIAM refers to the provision of technology consulting, project implementation and operational management services across IT and business process service providers, internally and externally. These services coordinate, integrate service delivery and align service management processes. SIAM aims to achieve seamless end-to-end service outcomes with a single point of accountability in a multisourced IT services environment. SIAM services can be delivered internally; however, we cater to SIAM functions delivered by external SIAM providers. SIAM is typically used in multisourced infrastructure and application outsourcing initiatives. It also applies to business process outsourcing (BPO) and can integrate other business functions, like finance and HR.