Argus Family

Argus DREMP

External Attack Surface Management (EASM) / Cyber Asset Attack Surface Management (CAASM)

External attack surface management (EASM): asset discovery, risk scoring (KEV/CVSS/EPSS), finding lifecycle, continuous monitoring, and operational alerts.

Argus DREMP

What does it do?

Argus DREMP continuously discovers your external attack surface and scores risk. DNS, SSL, HTTP, WHOIS, and subdomain signals merge with provider adapters (Shodan, Vulners, VirusTotal, etc.); KEV/CVSS/EPSS-based prioritization, finding lifecycle, and operational alerts are delivered.

Expected outcome

Outcome: the external inventory stays current and high-risk findings close first.

What problems does it solve?

Unknown subdomain / certificate / exposed service surface

Priority chaos under CVE floods

Discovery reports that never reach operations

Missing maintenance windows and tenant isolation

What is the product strength?

Continuous discovery on a job queue

Unified KEV/CVSS/EPSS risk engine

Multi-tenant RBAC, incidents, and maintenance windows

SeedCom notifications + Argus Identity context

Where is it most effective?

01

Internet-facing multi-domain enterprises

02

SOC teams turning EASM signals into tickets

03

Post-M&A attack-surface inventory

04

Critical services that need continuous monitoring and alerts

Gartner category

External Attack Surface Management (EASM) / Cyber Asset Attack Surface Management (CAASM)

Argus connection

DREMP findings can feed the Argus operations console and Identity risk graph.

Screenshots

Argus DREMP Argus DREMP

Capabilities

ASM monitoring

DNS, SSL, HTTP, WHOIS, and subdomain discovery.

Risk engine

KEV / CVSS / EPSS-based scoring.

Operations

Incidents, alerts, and maintenance windows.

Architecture

DREMP consists of an ASP.NET Core Dashboard + API, worker jobs, and provider adapters (Shodan, Vulners, VirusTotal, etc.). DNS/SSL/HTTP/WHOIS/subdomain discovery runs on a job queue. The risk engine merges KEV/CVSS/EPSS signals. Multi-tenant RBAC, incidents/alerts, and maintenance windows are enforced server-side. SeedCom handles notifications; Argus Identity supplies identity context.

  • Dashboard + API (multi-tenant RBAC)
  • Worker jobs · discovery & scanning
  • Risk engine · KEV / CVSS / EPSS
  • Providers · Shodan / Vulners / VirusTotal
  • SeedCom notifications · Argus Identity

Highlights

  • dremp.seed.tr
  • CVE / TI / phishing candidates
  • Worker job infrastructure
  • Multi-tenant RBAC
  • Provider adapters

Want to evaluate this product?

Contact us for a demo, PoC, or integration discussion.

Contact us