Iron Vigil continuously scans your images, cloud, and endpoints for vulnerabilities and misconfigurations — then maps the findings to the compliance frameworks your auditors care about.
Grype-powered scanning of container images and dependencies, with severity, CVSS, and fix versions.
Assume-role into AWS, Azure & GCP and surface misconfigurations against best-practice baselines.
SOC 2, HIPAA, PCI-DSS, ISO 27001, CIS and more — findings mapped to controls, scored over time.
Automatic, agent, and guided evidence collection with a read-only auditor portal.
Cross-platform .NET agent for endpoint posture and evidence, enrolled with auto-expiring tokens.
GitHub, Slack, Jira, SIEM and a public CI security-scan action — wire Iron Vigil into the workflow you already have.