Overview
What is Security Stack
Security Stack helps security buyers and evaluators reach decisions they can defend. It hosts a researched catalog of security products, and provides a private workspace to evaluate candidates against custom requirements, build shortlists, and export a procurement-ready brief.
These docs are the methodology record: how the catalog is structured, where the data comes from, and how the matching system turns a requirements brief into a ranked shortlist.
Catalog
Terminology
A few words carry precise meanings across these pages.
- Domain
- A broad area of security and the top level of the catalog. Evaluation packs are built per Domain.
- Category
- A specific market inside a Domain. A product carries one Category tag per market it demonstrably competes in, and features are named consistently within each Category.
- Documented feature
- A capability recorded on a product listing because there is evidence for it. Features are the unit of evidence the matching system scores.
- Outcome
- A statement of what you need to be true after you deploy something, written in buyer language. Most are selected from an evaluation pack; you can also write your own.
- Evaluation pack
- The curated question set for a Domain. The outcomes you select from it become the scoreboard your matches are ranked against.
- Requirements brief
- The document that records what you need: your selected outcomes, requirements you wrote yourself, and your constraints, like the compliance certifications you require and the integrations a product must offer. You can build one with or without an evaluation pack. The matching system turns your brief into a ranking, and the export lets you save and share the result to feed the rest of your decision process.