IdentitiesOpenWatching
Identity
Every account, human or machine, and what it can reach.
- Sources
- Okta, Entra ID, Google Workspace
- First findings
- under 1 hour
- Fix
- one click or a ticket
SOC 2 Type II · ISO 27001 · 1,400 security teams
SOC 2 Type II · ISO 27001 · 1,400 security teams
Palisade
Palisade
Risk score82/100open
Next page/
Home
Cybersecurity platform
Palisade watches every identity, device and key your company runs on, finds what is exposed and closes it before it turns into a breach.
SOC 2 Type II · ISO 27001 · 1,400 security teams

Sample findings, demo data
Cybersecurity platform
Palisade watches every identity, device and key your company runs on, finds what is exposed and closes it before it turns into a breach.

SOC 2 Type II · ISO 27001 · 1,400 security teams — Sample findings, demo data
Cybersecurity platform
Palisade watches every identity, device and key your company runs on, finds what is exposed and closes it before it turns into a breach.

SOC 2 Type II · ISO 27001 · 1,400 security teams — Sample findings, demo data
Liveexposures closed today
18,402
Across every customer workspace, counted as each one is verified closed.
Trusted by 1,400 security teams
Read their storiesLiveexposures closed today
18,402
Across every customer workspace, counted as each one is verified closed.
Trusted by 1,400 security teams
Read their storiesLiveexposures closed today
18,402
Across every customer workspace, counted as each one is verified closed.
Trusted by 1,400 security teams
Read their storiesLive findings
Palisade does not hand you a list to work through. Each finding arrives with its owner, its fix and a clock, and most are closed before anyone opens a ticket.
LiveFindings · all workspaces
1 open5 Secured
Sample findings, demo data
Live findings
Palisade does not hand you a list to work through. Each finding arrives with its owner, its fix and a clock, and most are closed before anyone opens a ticket.
LiveFindings · all workspaces
1 open3 Secured
Sample findings, demo data
Live findings
Palisade does not hand you a list to work through. Each finding arrives with its owner, its fix and a clock, and most are closed before anyone opens a ticket.
LiveFindings · all workspaces
1 open5 Secured
Sample findings, demo data
Coverage
Every employee, contractor and service account, with what each can reach and when it was last used.
Each device that touches company data, managed or not, with its patch level and lock state.
Buckets, databases, ports and roles across AWS, Azure and Google Cloud, checked against what should be public.
Keys, tokens and passwords in code, build logs and chat, matched to the system they unlock.
IdentityHighContractor · MFA offIdentityHighStale admin accountIdentityMediumShared admin password
EndpointMediumLaptop · 41 days unpatchedEndpointLowBadge left on a desk
CloudCriticalPublic storage bucketNetworkCriticalOpen RDP portCloudMediumIdle database · no owner
SecretCriticalLeaked API keySecretHighPassword on the whiteboardSecretHighToken in a build logCoverage
12301 / 041,284 people and service accounts3 open
Every employee, contractor and service account, with what each can reach and when it was last used.
1202 / 042,031 laptops, phones and servers2 open
Each device that touches company data, managed or not, with its patch level and lock state.
12303 / 043 clouds, 46 accounts3 open
Buckets, databases, ports and roles across AWS, Azure and Google Cloud, checked against what should be public.
12304 / 04412 repositories3 open
Keys, tokens and passwords in code, build logs and chat, matched to the system they unlock.
Coverage
12301 / 041,284 people and service accounts3 open
Every employee, contractor and service account, with what each can reach and when it was last used.
1202 / 042,031 laptops, phones and servers2 open
Each device that touches company data, managed or not, with its patch level and lock state.
12303 / 043 clouds, 46 accounts3 open
Buckets, databases, ports and roles across AWS, Azure and Google Cloud, checked against what should be public.
12304 / 04412 repositories3 open
Keys, tokens and passwords in code, build logs and chat, matched to the system they unlock.
Products
Start with the surface that worries you most. Every product writes into the same findings list, so nothing has to be stitched together later.
1IdentitiesOpenWatching
Every account, human or machine, and what it can reach.
2DevicesOpenWatching
Laptops, phones and servers that have fallen behind.
CloudOpenWatching
Buckets, ports and roles that answer to the whole internet.
Code & secretsOpenWatching
Keys and tokens before they leave the building.
Detection & responseOpenWatching
One timeline from first signal to closed.
Products
Start with the surface that worries you most. Every product writes into the same findings list, so nothing has to be stitched together later.
1IdentitiesOpenWatching
Every account, human or machine, and what it can reach.
2DevicesOpenWatching
Laptops, phones and servers that have fallen behind.
CloudOpenWatching
Buckets, ports and roles that answer to the whole internet.
Code & secretsOpenWatching
Keys and tokens before they leave the building.
Detection & responseOpenWatching
One timeline from first signal to closed.
Products
Start with the surface that worries you most. Every product writes into the same findings list, so nothing has to be stitched together later.
1IdentitiesOpenWatching
Every account, human or machine, and what it can reach.
2DevicesOpenWatching
Laptops, phones and servers that have fallen behind.
CloudOpenWatching
Buckets, ports and roles that answer to the whole internet.
Code & secretsOpenWatching
Keys and tokens before they leave the building.
Detection & responseOpenWatching
One timeline from first signal to closed.
One incident, two endings
A cloud key is pushed to a public repository on a Tuesday afternoon. What happens next depends on whether anyone is watching.
0days before anyone noticed
Without Palisade: Day 212. Found by a customer. Found on day 212
One incident, two endings
A cloud key is pushed to a public repository on a Tuesday afternoon. What happens next depends on whether anyone is watching.
0days before anyone noticed
Without Palisade: Day 212. Found by a customer. Found on day 212
One incident, two endings
A cloud key is pushed to a public repository on a Tuesday afternoon. What happens next depends on whether anyone is watching.
0days before anyone noticed
Without Palisade: Day 212. Found by a customer. Found on day 212
Integrations
Read-only access, no agents to roll out for the first findings. Most teams connect their identity provider and one cloud account in the first hour.
0 / 12 connected· Read-only by default · no credentials stored
Integrations
Read-only access, no agents to roll out for the first findings. Most teams connect their identity provider and one cloud account in the first hour.
0 / 12 connected· Read-only by default · no credentials stored
Integrations
Read-only access, no agents to roll out for the first findings. Most teams connect their identity provider and one cloud account in the first hour.
0 / 12 connected· Read-only by default · no credentials stored
In numbers
Averages across every customer over the last twelve months. Your own numbers sit on the first screen of the product.
Figures are sample data for this template
In numbers
Averages across every customer over the last twelve months. Your own numbers sit on the first screen of the product.
Figures are sample data for this template
In numbers
Averages across every customer over the last twelve months. Your own numbers sit on the first screen of the product.
Figures are sample data for this template
Customers
Four teams, four different problems. Each one started with a sweep and a list they did not expect.
Closed340orphaned accounts closed in week one
Closed3days from patch release to installed
Closed4minutes from alert to contained
Closed11weeks to a clean SOC 2 Type II reportCustomers
Four teams, four different problems. Each one started with a sweep and a list they did not expect.
Closed340orphaned accounts closed in week oneCase 01 · StaffingCalder StaffingWe found 340 accounts that belonged to nobody.Imogen Hartley · Head of ITRead the story
Closed3days from patch release to installedCase 02 · LogisticsNorthwind FreightPatch lag went from 41 days to three.Darius Okafor · Infrastructure LeadRead the story
Closed4minutes from alert to containedCase 03 · HospitalityHarbour & ValeAn open port, closed before breakfast.Sofia Marchetti · Group IT DirectorRead the story
Closed11weeks to a clean SOC 2 Type II reportCase 04 · FintechLumen PaySOC 2 in eleven weeks, with a team of two.Tomás Reyes · CTORead the storyCustomers
Four teams, four different problems. Each one started with a sweep and a list they did not expect.
Closed340orphaned accounts closed in week oneCase 01 · StaffingCalder StaffingWe found 340 accounts that belonged to nobody.Imogen Hartley · Head of ITRead the story
Closed3days from patch release to installedCase 02 · LogisticsNorthwind FreightPatch lag went from 41 days to three.Darius Okafor · Infrastructure LeadRead the story
Closed4minutes from alert to containedCase 03 · HospitalityHarbour & ValeAn open port, closed before breakfast.Sofia Marchetti · Group IT DirectorRead the story
Closed11weeks to a clean SOC 2 Type II reportCase 04 · FintechLumen PaySOC 2 in eleven weeks, with a team of two.Tomás Reyes · CTORead the storyPricing
Move the slider to your headcount. Every plan covers every identity and device those people use.
For companies getting their first clear picture.
$600per month
$5 per seat / month · billed yearly
For teams that have to prove it to an auditor.
$1,080per month
$9 per seat / month · billed yearly
For regulated companies with their own security team.
$1,800per month
$15 per seat / month · billed yearly
More than 1,000 people, or a private data region? Talk to sales
Pricing
Move the slider to your headcount. Every plan covers every identity and device those people use.
For companies getting their first clear picture.
$600per month
$5 per seat / month · billed yearly
For teams that have to prove it to an auditor.
$1,080per month
$9 per seat / month · billed yearly
For regulated companies with their own security team.
$1,800per month
$15 per seat / month · billed yearly
More than 1,000 people, or a private data region? Talk to sales
Pricing
Move the slider to your headcount. Every plan covers every identity and device those people use.
For companies getting their first clear picture.
$600per month
$5 per seat / month · billed yearly
For teams that have to prove it to an auditor.
$1,080per month
$9 per seat / month · billed yearly
For regulated companies with their own security team.
$1,800per month
$15 per seat / month · billed yearly
More than 1,000 people, or a private data region? Talk to sales
What teams say
Security and IT leads on what turned up in week one, and what they stopped worrying about after.
“The first sweep found a global admin who had left the company seven months earlier. That one finding paid for the year.”
“It ranks by what an attacker would do next. My team stopped arguing about severity and started closing things.”
“Our auditor logged in, read the evidence and left. No screenshots, no spreadsheet, no three-week scramble.”
“A key hit a public repository at 2 am. Palisade had it revoked before I had found my glasses.”
“Depot managers fix their own devices now, because the message tells them exactly what to press.”
What teams say
Security and IT leads on what turned up in week one, and what they stopped worrying about after.
“The first sweep found a global admin who had left the company seven months earlier. That one finding paid for the year.”
“It ranks by what an attacker would do next. My team stopped arguing about severity and started closing things.”
“Our auditor logged in, read the evidence and left. No screenshots, no spreadsheet, no three-week scramble.”
“A key hit a public repository at 2 am. Palisade had it revoked before I had found my glasses.”
“Depot managers fix their own devices now, because the message tells them exactly what to press.”
What teams say
Security and IT leads on what turned up in week one, and what they stopped worrying about after.
“The first sweep found a global admin who had left the company seven months earlier. That one finding paid for the year.”
“It ranks by what an attacker would do next. My team stopped arguing about severity and started closing things.”
“Our auditor logged in, read the evidence and left. No screenshots, no spreadsheet, no three-week scramble.”
“A key hit a public repository at 2 am. Palisade had it revoked before I had found my glasses.”
“Depot managers fix their own devices now, because the message tells them exactly what to press.”
Questions
What security and IT teams want to know before they connect the first source.
Connect your identity provider and most teams see their first findings in under an hour. Cloud accounts and device managers each add a few minutes. Nothing is installed on a server to get started.
Read-only access to every source. Fixes that change something, such as revoking a key or disabling an account, use a separate write permission that you grant per action and can remove at any time.
No. Palisade finds what is exposed before an attack and reads from the tools you already run. It sends findings to your SIEM and takes alerts from it, so the two work as one queue.
Each open finding carries a weight from its severity and from what it can reach. The score is the weighted share of your surface that is exposed, from 0 to 100. Closing a critical finding moves it more than closing ten low ones.
In the region you pick at sign-up: the EU, the UK or the US. Enterprise plans can use a private region. Data is encrypted in transit and at rest, and we keep findings, never the content of your files or mail.
Yes. Every finding has an owner taken from your directory or device manager. They get a message in Slack or email with the exact step, and the finding closes itself when the fix lands.
SOC 2, ISO 27001, GDPR and HIPAA out of the box, with each control mapped to live checks. You can add your own controls and map them to the same evidence.
One person in your directory. Service accounts, devices and cloud resources are not counted, however many you have. Yearly billing takes two months off the price.
Questions
What security and IT teams want to know before they connect the first source.
Connect your identity provider and most teams see their first findings in under an hour. Cloud accounts and device managers each add a few minutes. Nothing is installed on a server to get started.
Read-only access to every source. Fixes that change something, such as revoking a key or disabling an account, use a separate write permission that you grant per action and can remove at any time.
No. Palisade finds what is exposed before an attack and reads from the tools you already run. It sends findings to your SIEM and takes alerts from it, so the two work as one queue.
Each open finding carries a weight from its severity and from what it can reach. The score is the weighted share of your surface that is exposed, from 0 to 100. Closing a critical finding moves it more than closing ten low ones.
In the region you pick at sign-up: the EU, the UK or the US. Enterprise plans can use a private region. Data is encrypted in transit and at rest, and we keep findings, never the content of your files or mail.
Yes. Every finding has an owner taken from your directory or device manager. They get a message in Slack or email with the exact step, and the finding closes itself when the fix lands.
SOC 2, ISO 27001, GDPR and HIPAA out of the box, with each control mapped to live checks. You can add your own controls and map them to the same evidence.
One person in your directory. Service accounts, devices and cloud resources are not counted, however many you have. Yearly billing takes two months off the price.
Questions
What security and IT teams want to know before they connect the first source.
Connect your identity provider and most teams see their first findings in under an hour. Cloud accounts and device managers each add a few minutes. Nothing is installed on a server to get started.
Read-only access to every source. Fixes that change something, such as revoking a key or disabling an account, use a separate write permission that you grant per action and can remove at any time.
No. Palisade finds what is exposed before an attack and reads from the tools you already run. It sends findings to your SIEM and takes alerts from it, so the two work as one queue.
Each open finding carries a weight from its severity and from what it can reach. The score is the weighted share of your surface that is exposed, from 0 to 100. Closing a critical finding moves it more than closing ten low ones.
In the region you pick at sign-up: the EU, the UK or the US. Enterprise plans can use a private region. Data is encrypted in transit and at rest, and we keep findings, never the content of your files or mail.
Yes. Every finding has an owner taken from your directory or device manager. They get a message in Slack or email with the exact step, and the finding closes itself when the fix lands.
SOC 2, ISO 27001, GDPR and HIPAA out of the box, with each control mapped to live checks. You can add your own controls and map them to the same evidence.
One person in your directory. Service accounts, devices and cloud resources are not counted, however many you have. Yearly billing takes two months off the price.
Start here
Tell us where to look. We set up a read-only connection with you on a short call, and you see your own findings the same day.
We will sweep
Start here
Tell us where to look. We set up a read-only connection with you on a short call, and you see your own findings the same day.
We will sweep
Start here
Tell us where to look. We set up a read-only connection with you on a short call, and you see your own findings the same day.
We will sweep