Enterprise Defense.
Mid-Market Price.
No per-seat fees. No hidden costs. Choose the intelligence tier that matches your attack surface.
Sentinel
Essential threat visibility for lean security teams.
Overwatch
Full-spectrum intelligence with deterministic remediation.
Sovereign
Enterprise-grade sovereign intelligence with white-glove onboarding.
Feature Comparison
| Feature | Sentinel | Overwatch | Sovereign |
|---|---|---|---|
| Public IPs monitored | 5 | 50 | Unlimited |
| Domain EASM scanning | 1 | 5 | Unlimited |
| CISA KEV & JPCERT feeds | |||
| Microsoft MSRC feed | |||
| Google / Project Zero feed | |||
| VMware VMSA feed | |||
| Shodan EASM integration | |||
| Deterministic CLI playbooks | |||
| Vendor CSAF enrichment | |||
| Dark web identity monitoring | |||
| Email threat alerts | |||
| Weekly PDF reports | |||
| SOC2 audit trail | |||
| GDPR data deletion | |||
| SOC2 compliance exports | |||
| Multi-tenant isolation | |||
| PII encryption (AES-256) | |||
| Onboarding intelligence brief | |||
| Support | Community | Priority email | 24/7 dedicated |
Frequently Asked Questions
What CISOs ask before deploying Cerulean Overwatch.
Standard scanners (Nessus/Qualys) tell you what is "vulnerable." We tell you what is exploited. By mapping your specific asset versions to geopolitical threat feeds (JPCERT, CISA, MSRC), we filter out the noise and show you only the threats currently being weaponized by adversaries.
No. We are strictly agentless. We use external reconnaissance (via Shodan) and version-matching logic. This means zero performance impact on your production environment and zero risk of breaking your kernel.
Absolutely not. We believe AI hallucinations are a liability in infrastructure defense. Our remediation playbooks are deterministic—they are pulled directly from verified vendor CSAF advisories or human-verified playbooks. Zero hallucination. Zero guesswork.
Every 4 hours. Our global ingestors continuously monitor over 20+ sovereign and vendor feeds to ensure that a zero-day found in Tokyo or Berlin is on your dashboard before the morning coffee.
Yes. We built the platform with compliance by design. We use strict multi-tenancy, immutable audit logs for all administrative actions, and AES-256 encryption for all PII, including identity-monitoring data.
Custom infrastructure or 1,000+ IPs?
We'll scope a tailored deployment for your perimeter.