Products

What Red Pulse assesses, and how it works.

One platform, two halves that mirror each other page for page: an on-prem agent that reads and scores your environment, and a cloud portal where customers, resellers and auditors see the same posture.

How your data flows
Microsoft Servers G Google Agent on-prem ML Local dashboard ML0 8 42 Cloud dashboard AI analysis Red Pulse Red Pulse cloud
Microsoft, servers and Google feed the on-prem agent. The agent serves a local dashboard and syncs two-way with your cloud dashboard, which exchanges with the AI-powered Red Pulse cloud. Collection stays on your network; only results leave.
Frameworks we score

Essential Eight

The ACSC maturity model. Continuous scoring across all eight mitigation strategies, mapped to your target maturity level, with the lowest control setting the score.

ISO/IEC 27001

Information Security Management System. The 93 Annex A controls, inherited from the scan where the agent can verify them and attested where it cannot.

ISO/IEC 42001

AI Management System. Annex A controls plus AI6 governance, covering how your organisation builds, buys and uses AI.

What the agent reads

Identity

Microsoft Entra and Google admin posture: privileged accounts, MFA and two-step coverage, recovery options and stale admins.

Endpoints

Device coverage in three buckets: the direct WinRM agent, Microsoft Intune MDM, and Chrome / Google MDM.

Google Workspace

Workspace hardening checks measured against Google security best practice, alongside the Microsoft side.

AI Posture

AI exposure, governance and coverage scores, plus Shadow AI discovery of the AI tools already in use.

Shadow IT

Unsanctioned apps and services discovered across your Microsoft and Google environment.

Reporting and help

Reports

Exportable framework reports for leadership and auditors, built from your live posture. The cloud portal adds a Write-with-AI panel.

Support

Guidance inside the product and from us. The cloud Support page also has an AI assistant for quick questions.

How Red Pulse works

From install to a posture you can defend, in five steps.

Step 01

Install the agent

An on-prem PowerShell collector runs on your own network and reads your Microsoft and Google environment. Nothing leaves without your say.

Step 02

Scan and score

It probes AD, Entra, endpoints, Intune and Workspace, then scores each framework locally against the control set.

Step 03

See it in the portal

Results push to the cloud portal. Customers, resellers and auditors open the same boards, with the evidence behind each result.

Step 04

Attest the rest

Controls the agent cannot observe are yours to sign off, with evidence stored against each one.

Step 05

Close the gaps

Every gap carries remediation guidance, and your weighted conformance score moves as you fix them.

How attestation works

Some controls the agent proves. The rest, you sign off.

Every control has a status and a source. The status is where the control stands. The source is how it is evidenced: signal means it was inherited from an agent-verified control, and self-attest means you confirm it with evidence.

Conformance is the weighted share met across the framework's controls. Manual controls the scan cannot see sit in ATTEST until you sign them off, with the proof kept in your self-attestation register for the next auditor who asks.

CONFORMANT met
PARTIAL part-met
ATTEST needs your sign-off
ATTESTED signed off, with evidence
GAP not yet covered

See your own posture.

Already a customer? Open the portal. Want pricing scoped to your environment? Tell us what you run.