Truesec Apps Framework

Security risk assessment

Score a system before an attacker does it for you.

Twelve questions across four domains. You get a weighted risk score, a per-domain breakdown and the findings to act on first.

12 questions~4 minutesNothing is saved — this demo runs in your browser

System under assessment

01

Data & Exposure

What the system holds and who can reach it.

What is the most sensitive data the system processes?

Pick the highest classification, even if it is only a small part of the data.

How is the system exposed to networks?
How is data protected at rest and in transit?
02

Identity & Access

How users and admins authenticate.

Is multi-factor authentication enforced?
How are privileged accounts handled?
How often are user permissions reviewed?
03

Resilience & Response

Backups, logging and incident readiness.

What is the backup and restore situation?
Are security-relevant events logged and monitored?
Is there a tested incident response plan for this system?
04

Supply Chain

Vendors, dependencies and third-party access.

How is the vendor or supplier assessed?
How quickly are critical vulnerabilities patched?
Do third parties have access to the system or its data?
0 of 12 answered