
Vulnerability ManagementSecurity Operations
Lansweeper
Discovers and inventories IT, OT, IoT, and cloud assets, enriched with vulnerability context.
Lansweeper Overview
What it does
Lansweeper is a Cyber Asset Attack Surface Management (CAASM) platform that builds one continuously updated inventory of every technology asset across IT, OT, IoT, and cloud estates, enriched with configuration, lifecycle, and vulnerability context. Its differentiator is full-spectrum discovery: credentialed scanning, passive traffic analysis, cloud APIs, and agents feed a single normalized, deduplicated record set that IT and security teams share. It supplies asset data to security tooling rather than performing patching or threat detection.
How it works
Six collection methods feed the inventory: credentialed active scanning, a Traffic Sensor that identifies devices from network traffic, cloud API connectors for AWS, Azure, and Google Cloud, agents for Windows, macOS, and Linux, imports from systems such as SCCM and Intune, and manual CSV upload. Records are normalized, deduplicated, and federated across installations, then exposed through dashboards, a report builder, IP Range Coverage scoring, diagrams, and Lens Chat natural-language queries. Risk Insights ranks findings using CVSS, EPSS, exploitability signals, and asset criticality, while Flow Builder triggers ticketing, notification, and sync actions from asset events.
Credentials and traction
SOC 2 Type II and ISO/IEC 27001:2022 certified, reviewed against TX-RAMP requirements for Texas public-sector cloud use, and published to the Cloud Security Alliance CAIQ at STAR Level 1. The platform runs in more than 30,000 environments, with customers including Lockheed Martin, Maersk, Hitachi Energy, Warner Music Group, and Red Bull. It targets enterprise IT and security teams, education and public-sector buyers, and managed service providers running distributed hybrid estates.
Key Capabilities
mapped to solution categoriesIngests and normalizes asset records from EDR, CMDB, cloud platforms, vulnerability scanners, and network discovery tools into a unified, deduplicated asset inventory.
Identifies assets not covered by required security controls, endpoints without EDR agents, systems absent from vulnerability scan scope, cloud resources not in CSPM coverage.
Consolidates and maps the scope of known vulnerabilities and exposures across the deduplicated asset inventory, pairing the vulnerability view with control-gap identification: the "scope of vulnerabilities" half of Gartner's CAASM definition that the coverage-gap row alone does not cover.
Provides a structured query interface for ad hoc questions against the unified asset inventory ('which internet-exposed assets are running EOL software?'), without requiring a custom report.
Automates remediation and data-correction actions on identified issues (including write-back to update asset records and CMDB data, and prioritization of necessary remediation and mitigation), going beyond a read-only inventory.
Associates discovered assets with business owners, application teams, and cost centers using directory, CMDB, and cloud tag data.
Compliance
certificationsIntegrations
compatible toolsImplementation & support
Info last updated on July 26, 2026
Vendors
Is this your product?
Claim your profile to connect with the teams looking for your solutions.