ENHUB
← Work

Cybersecurity · Software · AI & Automation

Defscore · Cyber risk platform

Cyber risk, turned into an operating system.

A platform designed to turn fragmented security signals into continuous risk understanding, prioritisation and action.

01The problem

Cybersecurity information is often fragmented across tools, technical reports, organisational policies and compliance assessments.

For many businesses, the challenge is not simply identifying vulnerabilities. It is understanding how technical weaknesses, operational practices and regulatory obligations combine into an overall risk picture.

A security finding has limited value unless an organisation can understand its significance, determine what needs attention and follow progress towards remediation.

02The system

Defscore is being developed as a modular cybersecurity risk management platform.

Its planned architecture brings together several complementary capabilities:

  • Cyber Risk Rating — a unified assessment model designed to translate security findings into an understandable risk score.
  • External Exposure Assessment — evaluation of publicly observable security signals, including domain and infrastructure configuration.
  • NIS2 Adviser — structured assessment of cybersecurity governance and compliance readiness, including identified gaps and remediation planning.
  • Phishing Risk Assessment — evaluation of organisational exposure to phishing-related threats.
  • Endpoint Monitoring — a planned agent-based capability for collecting relevant security information from monitored devices.
  • Risk Reporting — dashboards and reports designed to communicate findings, priorities and recommended actions.

This is a description of the product architecture and development direction, not a claim that every module is already operational.

The goal is to establish a shared operational view of cyber risk rather than a collection of disconnected assessment outputs.

03How it works

The platform is designed around a continuous assessment cycle.

Security information is intended to be collected from authorised assessment sources and, where applicable, organisational responses or monitored endpoints.

Findings can then be evaluated, categorised and related to the areas of the business they may affect.

The assessment model is designed to support a consolidated risk picture while retaining the underlying technical evidence needed to understand individual findings.

Reporting and remediation workflows are intended to turn assessment results into decisions that organisations can act upon.

The modular architecture is designed to allow additional assessment capabilities to contribute to the broader risk model without requiring every organisation to use every module.

04Engineering decisions

One platform, multiple perspectives on risk.

Technical exposure, organisational security practices and regulatory compliance are related, but they are not interchangeable. Defscore is designed to preserve these distinctions while presenting a coherent overall assessment.

Modularity instead of a fixed checklist.

Different organisations have different infrastructure, risk profiles and regulatory obligations. A modular architecture allows assessments to reflect those differences.

Evidence before scoring.

A risk score should be explainable. The design therefore prioritises traceability between findings, assessment criteria and the resulting evaluation.

Automation with accountable decisions.

Automation can reduce repetitive assessment and reporting work, but the system should preserve visibility into why a finding matters and what action is recommended.

05Capabilities involved

  • Cybersecurity

    Risk assessment, exposure evaluation, security monitoring and compliance-oriented workflows.

  • Software

    Platform architecture, modular assessment systems, reporting and operational workflows.

  • AI & Automation

    Intelligent analysis, prioritisation support and automated assessment processes are part of the product's development direction.

06The outcome

Defscore is an evolving product, not a completed deployment with published performance results.

Its intended outcome is a unified environment in which organisations can move from fragmented security information towards structured risk understanding, prioritisation and continuous improvement.

The engineering objective is to make cybersecurity risk easier to understand, manage and act upon — without reducing complex security decisions to an unexplained number.