See every asset.
Grade every risk.
On the infrastructure you have.
EtherSight is a Cyber Asset Attack Surface Management platform for security teams managing real infrastructure — endpoints, network devices, firewalls, virtualisation, identity. Unified visibility, A–F risk grading, and control validation in one operator-grade view.
Plugs into the stack you already operate.
Three pillars, one operator view.
Endpoints, network devices, firewalls, virtualisation hosts and identity — correlated into one asset graph, graded against your control posture, and surfaced as actions you can actually close.
Pull from 10+ connectors across the Microsoft, network and infrastructure stacks. Match across hostname, serial, MAC, IP and Entra ID with a five-step cascade. Hardware specs, installed applications, change history per asset — without an agent on the endpoint.
A configurable risk rule set with asset-class weighting. EDR, patching, encryption, backup-SLA and MFA validated continuously. Live network topology graph with risk-glow highlighting — unique in this category.
Per-asset risk acceptance with audit trail and expiry. Dynamic tagging engine, CIS and NIST framework mapping, five report types. Action centre auto-generates remediation tasks with optional ServiceNow escalation.
Discover. Correlate. Grade. Act.
A scheduled pipeline runs against your connectors. Every asset is reconciled, graded and surfaced with a next action. You stay in control of what's tracked, what's accepted, and what's exempt.
BullMQ schedule — Microsoft 365, Defender, Intune, FortiGate, Proxmox, SolarWinds, UniFi and more. The on-prem gateway reaches systems without cloud APIs.hostname → serial → mac → ip → entra-id. Duplicates collapse. The asset graph stays canonical.asset-class weighting. Output: A–F grade and a control-gap list.ServiceNow for escalation, or work them in-platform. Audit-logged, with sign-off.Built in Britain. Hosted on purpose.
Five tiers, built for MSPs too.
Community for trial, three commercial tiers in the middle, MSP for partners. Pricing is sales-led — talk to us for a quote that fits your estate. Full comparison and FAQ →
- Up to 100 assets
- 5 core connectors
- Risk grading + topology
- Up to 250 assets
- Standard connector set
- Email support
- Up to 500 assets
- All built-in connectors
- On-prem gateway · API access
- ServiceNow integration
- Custom asset cap
- All connectors + premium
- SSO / SCIM · custom DPA
- Dedicated tenancy · UK / EU / US
- Multi-tenant management
- White-label option
- Per-tenant billing
- Partner enablement
Everything your security team will ask for.
All the artefacts up front. Most don't need an NDA. If something isn't published, ask.
Start with the network you've got. Grade what you find.
Request a demo. We'll walk you through your own attack surface — not a sandbox — using the connectors you already have configured.