EASM
External Attack Surface Management
EASM focuses specifically on discovering and monitoring assets exposed to the internet from an outside-in perspective. EASM tools scan the public internet for an organization's domains, IPs, certificates, and cloud resources without requiring internal network access.
Cómo se usa en ciberseguridad
Security teams run EASM scans to discover assets they did not know were publicly exposed. Threat intelligence analysts use EASM data to assess how an attacker would view the organization's external footprint. GRC analysts use EASM reports to verify that externally exposed systems comply with security policies and hardening standards.
Las definiciones son explicaciones originales escritas con fines de desarrollo profesional. Para definiciones técnicas autorizadas, consulta NIST, ISO o el organismo de normalización correspondiente.