Capabilities
The security domains CyLook assesses continuously.
Each capability area focuses on the risks that matter most in enterprise environments — and all of them report into one unified view.
Identity Security
Know who holds power in your directory — and how it can be abused.
Active Directory and Microsoft Entra ID remain the primary targets in enterprise attacks. CyLook continuously assesses privileged accounts, authentication weaknesses and configuration issues across both on-premises and cloud identity.
- Privileged group membership and excessive Domain Admin rights
- Kerberoastable and service account exposure
- Password policy weaknesses, non-expiring and empty passwords
- Group Policy security configuration review
- Conditional Access gaps and legacy authentication
- MFA changes and privileged role anomalies in Entra ID
- Real-time alerts on critical identity events
Endpoint & Vulnerability Security
See vulnerable software and local admin exposure across your endpoints.
CyLook maps installed software to known CVEs, highlights local administrator exposure and tracks endpoint compliance — so patching effort goes where it reduces the most risk.
- CVE visibility mapped to installed software, refreshed daily
- Patch prioritization by CVSS score and number of affected systems
- Local administrator exposure and active admin sessions
- Required software policies and compliance status
- Windows and macOS endpoint coverage
- Endpoint compliance scoring and trends
Infrastructure Security
Measure server configuration against CIS-based controls.
Windows and Linux systems drift from secure baselines over time. CyLook assesses server configurations against CIS-based controls and shows compliance per system and across the estate.
- CIS Benchmark controls for Windows, Linux, SQL Server, MySQL, PostgreSQL and Apache
- Compliance scoring per system and across the estate
- Account, firewall and audit policy categories
- Remote inspection of services, processes, event logs, software, users and groups
- Exception management for accepted deviations
Microsoft 365 Security
Keep Exchange Online, your tenant and your domains configured securely.
Email remains the most common entry point. CyLook reviews Exchange Online protection policies, tenant configuration and domain records so weaknesses are found before they are exploited.
- Anti-phishing, anti-spam and anti-malware policy review
- Defender for Office 365 configuration checks
- SPF, DKIM, DMARC, MTA-STS, TLS-RPT and CAA domain records
- Transport rules and mailbox audit logging analysis
- Tenant inventory of users, mailboxes and groups
- Domain health monitoring and expiry alerts
Network & Access Visibility
Find what is on the network, what it exposes and who can access what.
CyLook discovers devices, flags risky services and ports, audits file permissions at scale and monitors SSL/TLS certificates — closing the visibility gaps between infrastructure teams.
- Discovery of unmanaged and newly connected devices
- Alerts for risky exposed services such as SMB, RDP, Telnet, SNMP, FTP and database ports
- Device classification: servers, workstations, printers and network devices
- NTFS and share permission auditing across large file estates
- Orphaned SIDs, stale folders and permission change tracking
- SSL/TLS certificate inventory, expiry and weak configuration detection
See these capabilities in your environment.
Request a demo and we will focus on the domains that matter most to your organization.