Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

SD Elements helps AppSec teams cope with fast-growing development demands by spelling out which security controls each project needs at the design stage. It follows a Security by Design approach, meaning it looks at architecture, data use, and compliance needs early, identifies relevant risks, and turns them into concrete requirements while changes are still cheap and low-friction. Many teams see security review time drop by 30–50% and fewer late surprises before release. The platform generates project-specific requirements mapped to standards such as NIST, OWASP, PCI, and ISO, and pairs them with concise implementation guidance developers can act on. This lets small AppSec groups support security for portfolios of 100+ applications without adding headcount, while driving consistent, policy-aligned expectations across teams and products instead of ad hoc checklists. SD Elements connects to Jira, CI/CD pipelines, and other engineering tools so security work is delivered and tracked in the same systems developers already use. Traceability is a core capability: every requirement is linked to its underlying risk, relevant standards, and evidence of implementation. AppSec leaders and directors get clear views of coverage, posture, and progress across applications, making it easier to reduce risk, support audits, and report meaningful security metrics to senior leadership.

Description

Vulcan Cyber is changing the way businesses reduce cyber risks through vulnerability remediation orchestration. We help IT security teams to go beyond remedial vulnerability management and help them drive vulnerability mitigation outcomes. Vulcan combines vulnerability and asset data with threat intelligence and customizable risk parameters, to provide risk-based vulnerability prioritization insight. We don't stop there. Vulcan remediation intelligence identifies the vulnerabilities that are important to your business and attaches the necessary fixes and remedies to mitigate them. Vulcan then orchestrates and measures the rest. This includes inputs into DevSecOps and patch management, configuration management and cloud security tools, teams, and functions. Vulcan Cyber has the unique ability to manage the entire vulnerability remediation process, from scan to fix.

API Access

Has API Yes 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

Checkmarx Yes 
Jira Service Management Yes 
ServiceNow Yes 
Tenable Nessus Yes 
Veracode Yes 
Pris IP Manager Yes 
Azure Industrial IoT Yes 
Black Duck No 
Devici Yes 
GitHub Yes 
GitLab Yes 
GroundHog FMS No 
HCL Domino Yes 
Jira Work Management No 
Kovair QuickSync Yes 
OpenText Content Management (Extended ECM) Yes 
Puppet Enterprise No 
Snyk No 
fAST Dynamic Yes 

Integrations

Checkmarx Yes 
Jira Service Management Yes 
ServiceNow Yes 
Tenable Nessus Yes 
Veracode Yes 
Pris IP Manager No 
Azure Industrial IoT No 
Black Duck Yes 
Devici No 
GitHub No 
GitLab No 
GroundHog FMS Yes 
HCL Domino No 
Jira Work Management Yes 
Kovair QuickSync No 
OpenText Content Management (Extended ECM) No 
Puppet Enterprise Yes 
Snyk Yes 
fAST Dynamic No 

Pricing Details

Please contact us for pricing
Free Trial No 
Free Version No 

Pricing Details

$999 / month
Start with the industry's only free vulnerability prioritization engine for risk-based vulnerability management, then move to full vulnerability remediation orchestration for enterprise cyber hygiene and cloud and application security.
Free Trial Yes 
Free Version Yes 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) No 
Online Support Yes 

Customer Support

Business Hours Yes 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person Yes 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) Yes 
In Person No 

Vendor Details

Company Name

Security Compass

Founded

2004

Country

Canada

Website

www.securitycompass.com/sdelements/

Vendor Details

Company Name

Vulcan Cyber

Founded

2018

Country

Israel

Website

vulcan.io

Product Features

Risk Management

Alerts/Notifications No 
Auditing No 
Business Process Control No 
Compliance Management No 
Corrective Actions (CAPA) No 
Dashboard No 
Exceptions Management No 
IT Risk Management No 
Internal Controls Management No 
Legal Risk Management No 
Mobile Access No 
Operational Risk Management No 
Predictive Analytics No 
Reputation Risk Management No 
Response Management No 
Risk Assessment No 

Product Features

Application Security

Analytics / Reporting Yes 
Open Source Component Monitoring No 
Source Code Analysis No 
Third-Party Tools Integration Yes 
Training Resources No 
Vulnerability Detection Yes 
Vulnerability Remediation Yes 

Cloud Security

Antivirus No 
Application Security Yes 
Behavioral Analytics No 
Encryption No 
Endpoint Management No 
Incident Management No 
Intrusion Detection System No 
Threat Intelligence Yes 
Two-Factor Authentication No 
Vulnerability Management Yes 

Cybersecurity

AI / Machine Learning Yes 
Behavioral Analytics No 
Endpoint Management No 
IOC Verification No 
Incident Management No 
Tokenization No 
Vulnerability Scanning Yes 
Whitelisting / Blacklisting No 

IT Management

Capacity Monitoring No 
Compliance Management No 
Event Logs Yes 
Hardware Inventory No 
IT Budgeting No 
License Management No 
Patch Management Yes 
Remote Access No 
Scheduling No 
Software Inventory No 
User Activity Monitoring No 

IT Security

Anti Spam No 
Anti Virus No 
Email Attachment Protection No 
Event Tracking Yes 
IP Protection No 
Internet Usage Monitoring No 
Intrusion Detection System No 
Spyware Removal No 
Two-Factor Authentication No 
Vulnerability Scanning Yes 
Web Threat Management Yes 
Web Traffic Reporting No 

PCI Compliance

Access Control No 
Compliance Reporting Yes 
Exceptions Management No 
File Integrity Monitoring No 
Intrusion Detection System No 
Log Management No 
PCI Assessment Yes 
Patch Management Yes 
Policy Management No 

Risk Management

Alerts/Notifications No 
Auditing No 
Business Process Control No 
Compliance Management No 
Corrective Actions (CAPA) No 
Dashboard Yes 
Exceptions Management No 
IT Risk Management Yes 
Internal Controls Management No 
Legal Risk Management No 
Mobile Access No 
Operational Risk Management No 
Predictive Analytics No 
Reputation Risk Management No 
Response Management No 
Risk Assessment Yes 

Vulnerability Management

Asset Discovery No 
Asset Tagging Yes 
Network Scanning No 
Patch Management Yes 
Policy Management No 
Prioritization Yes 
Risk Management Yes 
Vulnerability Assessment Yes 
Web Scanning Yes 

Alternatives

Fork Reviews

Fork

VerSprite Cybersecurity

Alternatives

Devici Reviews

Devici

Security Compass