- Home
- Application Security
- Dynamic Application Security Testing
- Secure Decisions ASTAM
Secure Decisions ASTAM
DHS-funded program providing automated AppSec tools across the SDLC.

Secure Decisions ASTAM
DHS-funded program providing automated AppSec tools across the SDLC.
Go Beyond the Directory. Track the Entire Market.
Monitor competitor funding, hiring signals, product launches, and market movements across the whole industry.
Secure Decisions ASTAM Description
Application Security Technologies Assurance Metrics (ASTAM) is a U.S. Department of Homeland Security (DHS) Science and Technology Directorate funded research program developed by Secure Decisions. It aims to improve software security by developing and enhancing technologies that support the secure software development lifecycle (SDLC). ASTAM is composed of several independent capability modules: **Attack Surface Detector (ASD):** Plugins for Burp Suite and OWASP ZAP that use static analysis to enumerate hidden or unlinked endpoints, optional parameters, and data types in web application source code. Available for Struts, Django, Ruby on Rails, ASP.NET MVC/Web Forms, JSP/Java Servlets, and Spring MVC. A CLI version outputs endpoints to JSON for import into Burp or ZAP. **Code Pulse:** Provides insight into code testing coverage during penetration tests. **Hybrid Analysis Mapping (HAM):** Maps results from dynamic and static analysis to improve testing accuracy and coverage. **Application Security Metrics Dashboard and Reporting:** Provides metrics, status tracking, and trend reporting for application security to security analysts and cyber risk managers. **Automated Dynamic Application Pen Testing (ADAPT):** Automates dynamic application penetration testing processes. **ThreatVector / Application Threat Modeling:** Supports threat modeling for applications. **Pen Testing Automation (PTA):** Automates pen testing workflows. **Attack Simulator / Cyber Quantification Framework (CQF):** Simulates attacks and quantifies cyber risk. **Application Security Testing Orchestration (ASTO):** Orchestrates application security testing pipelines. **Combining Network and Application Vulnerabilities:** Correlates network and application-level vulnerability data. **Automated Triage Assistance:** Assists in triaging application security findings.
Secure Decisions ASTAM FAQ
Common questions about Secure Decisions ASTAM including features, pricing, alternatives, and user reviews.
Secure Decisions ASTAM is DHS-funded program providing automated AppSec tools across the SDLC. developed by Secure Decisions. It is a Application Security solution designed to help security teams with App Security, DAST, Static Analysis.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Agentless cloud security platform for risk detection & prevention
Fractional CISO services for B2B companies to build security programs
POPULAR
Real-time OSINT monitoring for leaked credentials, data, and infrastructure
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox