zcrCTEM - Continuous Threat Exposure Management
CTEM platform: EASM maps your attack surface, CAASM finds security-tool coverage gaps and DRP tracks dark web findings, while analysts approve AI proposals.
What does zcrCTEM cover?
zcrCTEM covers the external attack surface (EASM), internal and cloud asset coverage (CAASM), digital risk protection (DRP) and threat intelligence in one console. Compliance reporting for PDPA and CII is available as the separately priced AI & Compliance module.
Does the AI take action on its own?
Only for routine steps you configure, such as running a sync. A ticket or takedown drafted by AI stays a proposal until an analyst approves or rejects it, and every AI answer and draft is recorded in the audit trail with the template and version that produced it.
How does it decide what to fix first?
EASM findings carry a risk score, and findings linked to a CVE show EPSS. You add business context by placing domains in priority tiers such as crown jewels, and the dashboard tracks MTTR for each severity against its SLA.
What happens if a data source stops sending data?
Sync Health tracks every connector and discovery source. If one disconnects, degrades or stops reporting, the console warns that your risk picture may have a blind spot, lists the affected sources and links to Integrations.
Is compliance reporting shown in the public demo?
No. The public demo covers the exposure workspace: EASM, CAASM, DRP, threat intelligence and agentic workflows. PDPA/CII readiness, breach notification drafts and AI compliance reporting belong to the AI & Compliance module; contact zcr to see it.
Can an MSSP run several customers from one console?
Yes. Data is scoped per tenant, analysts switch tenants from the top bar, and each tenant can have its own SSO connections over OIDC or SAML.