Security Stack Logo

Overview

What is Security Stack

Security Stack helps security buyers and evaluators reach decisions they can defend. It hosts a researched catalog of security products, and provides a private workspace to evaluate candidates against custom requirements, build shortlists, and export a procurement-ready brief.

These docs are the methodology record: how the catalog is structured, where the data comes from, and how the matching system turns a requirements brief into a ranked shortlist.

Terminology

A few words carry precise meanings across these pages.

Domain
A broad area of security and the top level of the catalog. Evaluation packs are built per Domain.
Category
A specific market inside a Domain. A product carries one Category tag per market it demonstrably competes in, and features are named consistently within each Category.
Documented feature
A capability recorded on a product listing because there is evidence for it. Features are the unit of evidence the matching system scores.
Outcome
A statement of what you need to be true after you deploy something, written in buyer language. Most are selected from an evaluation pack; you can also write your own.
Evaluation pack
The curated question set for a Domain. The outcomes you select from it become the scoreboard your matches are ranked against.
Requirements brief
The document that records what you need: your selected outcomes, requirements you wrote yourself, and your constraints, like the compliance certifications you require and the integrations a product must offer. You can build one with or without an evaluation pack. The matching system turns your brief into a ranking, and the export lets you save and share the result to feed the rest of your decision process.