Cyber Asset Attack Surface Management (CAASM)

The Cyber Asset Attack Surface Management (CAASM) service provides an up-to-date inventory of Servers (physical and virtual), Internet of Things (IoT), and Operational Technology (OT) assets across your entire physical and virtual environment.  By scanning networks and integrating with data sources it continuously maps and monitors UBC's cyber attack surface, identifying exposures, misconfigurations, and policy violations before attackers can exploit them. CAASM integrates with Hybrid Cloud, Endpoint Detection & Response (Servers), University Data CenterEducloud Server ServiceVulnerability Management Solution (VMS)Cyber Reports, and more.

Features and Benefits

  • Automated inventory of your Servers, Internet of Things (IoT), and Operational Technology (OT) that is always up-to-date.
  • Integrates with multiple data sources to enrich and validate IT asset data, reducing blind spots and improving data accuracy.
  • No need to install anything.
  • Enables IT teams to prioritize and remediate cyber risk exposure faster with actionable insights, rather than wasting time with manual IT asset inventories.
  • Robust API available to pull out your IT asset inventory data for use it in automated IT operations workflows.
  • Provides consolidated and detailed IT asset context to your AI agents through an AI native connector.
  • Quickly create EDR gap reports identifying assets with malfunctioning or missing EDR.
  • For IT managers, CAASM delivers control, reduces operational overhead, and strengthens cyber resilience without disrupting existing workflows.
  • Easily and quickly provide up-to-date IT asset inventory information to security programs like the Compliance Support Program (CSP).

Requirements and Eligibility

  • IT Administrators (IT Technical Representatives)
  • IT Managers
  • CAASM is currently scoped to Servers, Internet of Things (IoT), and Operational Technology (OT).  You need to have at least one of those IT assets.

Price

  • No cost.

Learn More

  • The CAASM onboarding process is harmonized with other Continuous Threat Exposure Management (CTEM) services: Vulnerability Management Solution (VMS) and Cyber Reports.  Onboarding to CAASM includes onboarding to the other services.
  • Some configuration of network firewalls and virtualization platforms is required to enable network scanning.

FAQs

Page last updated on September 2, 2026


UBC Crest The official logo of the University of British Columbia. Urgent Message An exclamation mark in a speech bubble. Bluesky The logo for the Bluesky social media service. Bookmark A bookmark in a book. Browser A web browser window. Caret An arrowhead indicating direction. Arrow An arrow indicating direction. Arrow in Circle An arrow indicating direction. Arrow in Circle An arrow indicating direction. Time A clock. Chats Two speech clouds. E-commerce Cart A shopping cart. Facebook The logo for the Facebook social media service. Help A question mark in a circle. Home A house in silhouette. Information The letter 'i' in a circle. Instagram The logo for the Instagram social media service. Linkedin The logo for the LinkedIn social media service. Location Pin A map location pin. Mail An envelope. Menu Three horizontal lines indicating a menu. Minus A minus sign. Pencil A pencil indicating that this is editable. Telephone An antique telephone. Play A media play button. Plus A plus symbol indicating more or the ability to add. Search A magnifying glass. Settings A single gear. Arrow indicating share action A directional arrow. Speech Bubble A speech bubble. Star An outline of a star. Twitter / X The logo for the X (aka, Twitter) social media service. User A silhouette of a person. Vimeo The logo for the Vimeo video sharing service. Youtube The logo for the YouTube video sharing service.