What is Qualys CSAM
CyberSecurity Asset Management (CSAM) is a cloud service that allows you to continuously discover, classify, remediate, and measurably improve your organization's cybersecurity posture for internal and external IT assets. Using a combination of Qualys sensors, Cloud Agents, Scanners, and Passive Network Sensors, CSAM collects and analyzes data about assets across hybrid environments.
CSAM delivers up-to-date, comprehensive, and continuous information about your assets and their security and compliance posture. It aggregates and correlates asset data from every source into a single deduplicated profile, enriches it with business context such as owner and criticality, and lets you define alerts and generate reports so you can report on and respond to risk quickly.
Key Features of Qualys CSAM
Everything you need to build, enrich, and act on a complete asset inventory
Asset Inventory
Maintain a real-time asset inventory enriched with context such as hardware, software, and business context.
Learn More →External Attack Surface Management (EASM)
EASM helps you find and monitor external risks before attackers do.
Learn More →Software Inventory
A centralized software inventory to discover applications, track lifecycle, and detect risks and unauthorized software.
Learn More →Web Applications Inventory
Discover and secure all web assets with Qualys Web Application Scanning integration.
Learn More →Open Ports Inventory
Real-time visibility into open ports and services to identify risks across internal and externally exposed assets with EASM.
Learn More →Certificates Inventory
Track SSL/TLS certificates, detect weak configurations, and manage risks with the certificates inventory.
Learn More →Database Inventory
Gives you clear visibility into database assets, helping you discover, classify, and secure them for compliance.
Learn More →Business App Inventory
Business Application Inventory brings business context to your assets, helping you prioritize risk smarter with TruRisk™.
Learn More →Domains Inventory
Monitor internet-facing domains and detect takeover risks.
Learn More →Organization/Subsidiary Inventory
Track external assets by business valuation and prioritize risk with TruRisk™.
Learn More →Static and Dynamic Tags
Organize assets manually or automatically based on rules using static and dynamic tags.
Learn More →Asset Criticality and TruRisk™ Score
Asset Criticality Score (ACS) measures business importance, while TruRisk™ turns it into risk-based remediation priorities.
ACS → TruRisk™ →Software Composition Analysis (SwCA)
Real-time visibility into deeply embedded open-source software packages and commercial software components.
Learn More →Technology Debt (Tech Debt) Report
Stay ahead of technology debt with clear visibility into EOL/EOS assets and their business risk.
Learn More →Reporting
Generate, customize, and schedule reports including Asset Details, Software Details, and Technology Debt.
Learn More →Alerting
Configure rules to monitor critical events based on specific conditions and receive an alert notification when they match.
Learn More →Your CSAM Journey
Click a step below to explore your guided path to a complete asset inventory
How Do I Get Started with CSAM
Follow these steps to set up and start using CSAM
Roles and Permissions
Configure user roles and define the permissions associated with each role.
Dynamic Dashboard
Use dashboards to visualize your assets, see your threat exposure, leverage saved searches, and quickly fix the priority of vulnerabilities.
CSAM APIs
Automate asset discovery and asset data management using CSAM APIs.
Looking for Something Else
Get the most out of your Qualys CSAM with these helpful resources