17 modules · one product
Breadth is shipped — not aspirational.
Each module is a full slice — model, repository, API, and frontend page — all reading and writing
the same graph. Mate Security competes with none of the broad-stack modules below.
⚡
NextGen SIEM
Columnar hot tier · full-text search · OCSF-normalised · multiple rule languages across one fabric.
🔗
XDR + Correlation
Five graph-reading agents close every alert with a typed entity subgraph and reasoning trace.
📡
NDR
Deep packet inspection · protocol analysis · PCAP retention · identity-aware east-west visibility.
🛡️
CDR
Cloud Detection & Response across AWS, Azure, GCP — identity, control plane, runtime.
☁️
CNAPP
IaC scan, drift, admission control, posture — ten pages, all wired to the runtime graph.
🔍
CSPM / DSPM
CIS benchmarks · custom policy-as-code · discover · classify · monitor sensitive data.
🎯
CTEM
Five stages: scoping · discovery · prioritization · validation · mobilization — reachability-aware.
🐛
Vulnerability Mgmt
Prioritized by actual blast radius across runtime + code + identity + data — not CVSS in isolation.
{ }
SAST + DAST
SARIF ingest · Gitleaks · Nuclei · OWASP — findings land on the same graph as runtime alerts.
🎭
BAS (ATT&CK)
Coverage map · adversary-emulation test library · CI fails on detection regression.
🪝
Phishing Sim
Templates, schedule, just-in-time training, KPIs — with a native Phish-triage agent.
🧭
Threat Hunting
Natural language → ES|QL / KQL / SPL · notebooks · scheduled hunts on Graph RAG.
🔁
SOAR
Code-first, workflow-orchestrated playbooks — native, not a bolted-on acquisition.
🕰️
Retro Replay
Every new/changed detection auto-replays against 90-day hot/warm and 7-year cold history.
🔒
Forensics
Tamper-resistant artifact vault · hash-chained chain-of-custody · regulator-ready exports.
📋
Declared Incidents
Statutory clocks for CERT-In 6h, DPDP 72h, GDPR, HIPAA — surfaced on the CISO scorecard.