Skip to main content
VinTekh
Honest taxonomy

Platform capabilities

Every analyst category the platform engages with — and our honest role per category. Core native we own the engine. Correlate we ingest someone else's output and weave it into our graph. Reference we surface shallowly. Roadmap we know it exists; we don't deliver it yet. See Service Coverage for the service-level grid.

Core native
35
categories
Correlate
18
categories
Reference
8
categories
Roadmap
7
categories

Security posture10 categories

  • CNAPP

    cnapp
    Correlate / ingest

    Cloud-Native App Protection Platform (umbrella over CSPM+CWPP+CIEM+DSPM+KSPM)

    Our position:We ingest Wiz/Prisma findings; we don't claim CNAPP parity natively.

    1 services tagged →e.g. Security Command Center
  • CSPM

    cspm
    Core native

    Cloud Security Posture Management — misconfig and compliance checks against cloud APIs

    Our position:Azure-native via Defender + Policy + assessments.

    22 services tagged →e.g. VPC, Subnet, Security Group +19 more
  • CWPP

    cwpp
    Core native

    Cloud Workload Protection Platform — runtime + posture for VMs/containers/serverless

    Our position:Partial — playbooks for AKS, App Service, Functions. Runtime depth needs CrowdStrike/Dynatrace agent.

    11 services tagged →e.g. EC2, Auto Scaling Groups, ECS +8 more
  • CIEM

    ciem
    Core native

    Cloud Infrastructure Entitlement Management — least privilege for cloud roles

    Our position:Azure RBAC enumeration native. Attack-path walker roadmap.

    3 services tagged →e.g. IAM, Cloud IAM, Saviynt Identity Cloud
  • DSPM

    dspm
    Correlate / ingest

    Data Security Posture Management — discover, classify, protect data at rest

    Our position:Structure tags + storage exposure native; classification via Wiz.

    9 services tagged →e.g. S3, RDS, Aurora +6 more
  • SSPM

    sspm
    Roadmap

    SaaS Security Posture Management — config of SaaS apps (M365, Salesforce, etc.)

    0 services tagged →no services tagged yet
  • ASPM

    aspm
    Roadmap

    Application Security Posture Management — code-to-runtime correlation

    2 services tagged →e.g. Lambda, ECR
  • KSPM

    kspm
    Core native

    Kubernetes Security Posture Management

    Our position:K8s connector + lateral-movement playbook.

    3 services tagged →e.g. EKS, GKE, Binary Authorization
  • CAASM

    caasm
    Core native

    Cyber Asset Attack Surface Management — unified asset inventory

    Our position:Azure Resource Graph native; multi-cloud roadmap.

    14 services tagged →e.g. EC2, S3, Compute Engine +11 more
  • EASM

    easm
    Correlate / ingest

    External Attack Surface Management — internet-exposed asset discovery

    Our position:We surface PublicIP + Storage publicAccess. External recon via Wiz.

    0 services tagged →no services tagged yet

Security operations9 categories

  • SIEM

    siem
    Correlate / ingest

    Security Information & Event Management — log aggregation + correlation

    Our position:We ingest Sentinel/Splunk events into investigations; we never replace them.

    1 services tagged →e.g. Chronicle
  • SOAR

    soar
    Roadmap

    Security Orchestration, Automation & Response — playbook execution

    Our position:We are advisory only — read-only constitutional. SOAR execution is out of scope by design.

    0 services tagged →no services tagged yet
  • XDR

    xdr
    Correlate / ingest

    Extended Detection & Response — cross-source detection

    0 services tagged →no services tagged yet
  • CDR

    cdr
    Core native

    Cloud Detection & Response

    Our position:Defender for Cloud + Activity Log + our own correlation engine.

    4 services tagged →e.g. Security Hub, GuardDuty, Detective +1 more
  • ITDR

    itdr
    Core native

    Identity Threat Detection & Response

    Our position:Entra-native; richer with CrowdStrike Falcon Identity.

    1 services tagged →e.g. Microsoft Entra ID
  • MDR

    mdr
    Reference / enrich

    Managed Detection & Response — delivery model, not a product

    0 services tagged →no services tagged yet

Identity & access10 categories

  • IAM

    iam
    Core native

    Identity & Access Management

    Our position:Entra native; Okta/Ping/Auth0 via connector.

    16 services tagged →e.g. IAM, Cognito, AWS SSO / IAM Identity Center +13 more
  • PAM

    pam
    Correlate / ingest

    Privileged Access Management — session audit + vaulting

    Our position:CyberArk/Delinea ingest.

    4 services tagged →e.g. Secrets Manager, Secret Manager, CyberArk +1 more
  • IGA

    iga
    Correlate / ingest

    Identity Governance & Administration — entitlement reviews

    Our position:SailPoint/Saviynt ingest.

    2 services tagged →e.g. SailPoint IdentityNow, Saviynt Identity Cloud
  • MFA

    mfa
    Reference / enrich

    Multi-Factor Authentication enrollment / enforcement

    8 services tagged →e.g. Microsoft Entra ID, Okta, Ping Identity +5 more
  • Passwordless

    passwordless
    Reference / enrich

    FIDO2 / WebAuthn / OS-bound credentials

    1 services tagged →e.g. Duo Security (Cisco)
  • IdP

    idp
    Core native

    Identity Provider — SSO source-of-truth

    13 services tagged →e.g. Cognito, AWS SSO / IAM Identity Center, Cloud Identity +10 more
  • CIAM

    ciam
    Reference / enrich

    Customer Identity & Access Management

    8 services tagged →e.g. Cognito, Microsoft Entra B2C, Okta +5 more
  • Directory

    directory
    Core native

    Directory services (AD, LDAP, Entra)

    7 services tagged →e.g. Cloud Identity, Microsoft Entra ID, Entra Domain Services +4 more
  • Federation

    federation
    Core native

    Cross-domain trust (SAML, OIDC, WS-Fed)

    7 services tagged →e.g. AWS SSO / IAM Identity Center, Microsoft Entra ID, Active Directory Federation Services (ADFS) +4 more
  • ISPM

    ispm
    Core native

    Identity Security Posture Management — config + risk of the IdP itself

    3 services tagged →e.g. Microsoft Entra ID, Okta, CyberArk

Vulnerability & exposure5 categories

  • Exposure Mgmt

    exposure_mgmt
    Correlate / ingest

    Aggregated risk across CVE + config + identity + topology

    0 services tagged →no services tagged yet
  • CTEM

    ctem
    Core native

    Continuous Threat Exposure Management

    Our position:Our investigation engine + lateral-movement playbook serves this lens.

    0 services tagged →no services tagged yet
  • Attack Path

    attack_path
    Core native

    Multi-step exploit chain modelling

    Our position:Entitlement graph walk + lateral-movement playbook.

    0 services tagged →no services tagged yet

Observability7 categories

  • APM

    apm
    Correlate / ingest

    Application Performance Monitoring (Dynatrace/Datadog/New Relic)

    0 services tagged →no services tagged yet
  • NPM

    npm
    Core native

    Network Performance Monitoring

    Our position:Network Watcher + flow logs native.

    0 services tagged →no services tagged yet
  • Obs Platform

    obs
    Correlate / ingest

    Umbrella for metrics/logs/traces

    2 services tagged →e.g. CloudWatch Metrics, Cloud Monitoring
  • Log Mgmt

    log_mgmt
    Correlate / ingest

    Log aggregation + search (Splunk/Elastic/Sumo)

    3 services tagged →e.g. CloudTrail, CloudWatch Logs, Cloud Logging
  • Metrics

    metrics
    Correlate / ingest

    Time-series metric stores

    2 services tagged →e.g. CloudWatch Metrics, Cloud Monitoring
  • DEM

    dem
    Roadmap

    Digital Experience Monitoring — synthetic + real-user

    0 services tagged →no services tagged yet

Operations & SRE5 categories

  • AIOps

    aiops
    Core native

    AI-driven correlation + RCA on ops signals

    Our position:Our investigation orchestrator is the start; clustering is roadmap.

    0 services tagged →no services tagged yet
  • Incident Mgmt

    incident_mgmt
    Reference / enrich

    Incident lifecycle (PagerDuty/Opsgenie/ServiceNow ITSM)

    0 services tagged →no services tagged yet
  • RCA

    rca
    Core native

    Root Cause Analysis

    Our position:Strict-JSON LLM with evidence chain + guardrails.

    0 services tagged →no services tagged yet
  • Event Correlation

    event_correlation
    Core native

    Tying alerts together into incidents

    2 services tagged →e.g. CloudTrail, Cloud Logging
  • SRE

    sre
    Core native

    Site Reliability Engineering toolchain (SLOs, error budgets)

    Our position:Module roadmap.

    0 services tagged →no services tagged yet

Topology & CMDB7 categories

  • App Dep Mapping

    adm
    Core native

    Discover which apps depend on which infrastructure

    0 services tagged →no services tagged yet
  • Service Dep Mapping

    sdm
    Core native

    Service-to-service dependency graph

    0 services tagged →no services tagged yet
  • CMDB

    cmdb
    Correlate / ingest

    Configuration Management Database (ServiceNow)

    0 services tagged →no services tagged yet
  • Digital Twin

    digital_twin
    Roadmap

    Live mirror of the production estate

    0 services tagged →no services tagged yet
  • Service Graph

    service_graph
    Core native

    Unified resource+identity+app graph

    Our position:Neo4j backed; viewer roadmap.

    0 services tagged →no services tagged yet
  • Cloud Asset Inventory

    cai
    Core native

    Searchable inventory of every cloud resource

    Our position:Resource Graph native for Azure.

    2 services tagged →e.g. Organizations, Organization
  • Asset Lifecycle

    asset_lifecycle
    Roadmap

    Birth → change → retirement of assets

    0 services tagged →no services tagged yet

Governance & cost6 categories

  • Policy-as-Code

    policy_as_code
    Core native

    Declarative policy (Azure Policy, OPA, Sentinel)

    1 services tagged →e.g. AWS Config
  • Compliance

    compliance
    Core native

    Mapping findings to control frameworks (CIS, NIST, ISO, SOC2, PCI, HIPAA)

    1 services tagged →e.g. AWS Config
  • Guardrails

    guardrails
    Core native

    Preventive vs detective controls inventory

    1 services tagged →e.g. Control Tower
  • FinOps

    finops
    Core native

    Cloud cost management + optimisation

    Our position:Cost recommendations module roadmap.

    0 services tagged →no services tagged yet
  • Cost Governance

    cost_gov
    Core native

    Budget + chargeback + showback

    0 services tagged →no services tagged yet
  • Landing Zone

    landing_zone
    Core native

    Well-architected landing zone scoring

    1 services tagged →e.g. Control Tower

Architecture, advisory & AI9 categories

  • Arch Intelligence

    arch_intel
    Core native

    Discover + assess architecture patterns

    0 services tagged →no services tagged yet
  • Well-Architected

    waf_assess
    Core native

    Five-pillar assessment (security, reliability, cost, performance, ops)

    0 services tagged →no services tagged yet
  • Internal Dev Platform

    idp_platform
    Reference / enrich

    Backstage read

    0 services tagged →no services tagged yet
  • AI Copilot

    ai_copilot
    Core native

    Conversational + reasoning copilot grounded in customer graph

    0 services tagged →no services tagged yet
  • AI Governance

    ai_governance
    Core native

    Inventory + policy for AI workloads + endpoints

    0 services tagged →no services tagged yet
  • AI Risk

    ai_risk
    Core native

    AI-specific risk scoring (model drift, prompt injection, data egress)

    0 services tagged →no services tagged yet

Read-only and advisory by design. Source-of-truth for this taxonomy lives indocs/PLATFORM_TAXONOMY.md — edits flow through code review like any other product change.