HiveSec Contact us
Products Partners Research Trust Company Contact us

The execution and operating platform for security assessment practices.

Partners deploy HiveSec Engine to run their full service catalogue under their own brand. The client relationship remains the partner's. HiveSec Engine executes the assessment; the partner manages the practice.

01

Who operates HiveSec Engine.

A2 · MSSPs

Managed security providers.

MSSPs operate HiveSec Engine to add continuous, lifecycle-tracked assessment to their managed service line. The continuous element is built into the platform: assessments run on a schedule, findings are tracked through to remediation, client engagement is handled on-platform. Because the platform's investigation layer handles the triage that would otherwise fall to analyst time, the MSSP can serve more clients without proportional analyst growth. The client receives confirmed risk in a standing service, not periodic scan reports.

A3 · Brokers

Insurance brokers and underwriters.

Brokers and underwriters operate HiveSec Engine to give their insured organisations a continuous view of cyber posture: as a value-added service, an underwriting input, or both. The portfolio model supports thousands of insured organisations within a single broker account, with per-tenant configuration. Risk signals from the assessment portfolio feed back into the broker's underwriting workflow. For the productised underwriting workflow itself, the score, the queue and mid-term loss control, see HiveSec Engine for Insurance.

A4 · Enterprise teams

Enterprise security teams.

In-house security teams operating an internal assessment practice use HiveSec Engine to deliver continuous, evidence-backed assessment across the organisation's business units and subsidiaries. Each business unit is modelled as a tenant; results, dashboards and case workflows are scoped to that unit. The security function runs the platform; the business units receive the outputs.

02

The operating model.

The platform is built for portfolio operation. Partners, sub-partners and clients are each modelled as tenants within a hierarchy the partner configures and controls.

M1

Tenant hierarchy.

Every participant in the platform (the partner, their sub-partners, their clients) is modelled as a tenant within an organisation hierarchy. The hierarchy supports nesting to multiple levels, allowing partners to represent their own internal structure (regions, practice areas, subsidiary brands) and their clients within it.

M2

Per-tenant configuration.

Branding, communications, integrations, feature availability and assessment cadence are configured per tenant. A partner operating across hundreds of clients does not maintain a single configuration; each tenant carries its own.

M3

Per-tenant communication overrides.

Email templates and client-facing communications can be overridden at the partner level and at the engagement level. Clients of a partner receive communications that carry the partner's brand and tone, not HiveSec Engine's.

M4

Role-based access at three levels.

Platform-level roles for HiveSec Engine operators and partner administrators. Organisation-level roles for the partner's staff. Engagement-level access for users assigned to specific engagements. Access is resolved hierarchically; a partner administrator never sees data outside their own tree.

M5

A complete audit trail.

User actions, assessment events, finding state changes and client communications are all recorded with attribution and timestamp. The audit record supports the partner's internal governance, their clients' compliance requirements, and the procurement scrutiny enterprise engagements demand. Trust →

03

Delivering services through HiveSec Engine.

Every service in the HiveSec Engine for Assurance catalogue runs on the same platform rails: execution, evidence, lifecycle tracking, case workflow, briefings, integration, audit. The catalogue spans the three dimensions of a continuous threat exposure management programme: standing, depth and consequence. A partner operating HiveSec Engine delivers any service in the catalogue to their clients.

04

Extending the catalogue.

The HiveSec Engine for Assurance catalogue grows by addition, and partners are one of the ways it grows. Partners with their own assessment methodologies can extend it: for service categories the platform does not yet cover, or for proprietary approaches a consultancy has developed. Those methodologies run on the same platform rails as the rest.

A methodology brought onto the platform inherits the full operating model: lifecycle-tracked findings, case workflow, briefings to client contacts, integration with the partner's existing tools, audit trail. The partner authors the methodology; HiveSec Engine provides the substrate it runs on.

Partners with engineering capacity can author and onboard methodologies directly; partners without can author them in collaboration with HiveSec Engine's methodology team.

This is what makes HiveSec Engine a long-term platform for a partner's practice. As the partner's practice evolves and new service categories emerge, HiveSec Engine extends with it.

Methodology composition

Methodology authored by the partner. Substrate provided by HiveSec Engine.

Every phase of a methodology (input shape, work performed, structured output, points of expert review) is declared and versioned within the engagement record.

M1Methodology definitionpartner
M2Phase outputs & expert reviewpartner
P1Lifecycle-tracked findingsplatform
P2Case workflow & briefingsplatform
P3Integrations & audit trailplatform
05

Integration with existing systems.

The platform integrates with the ticketing, communication and workflow systems partners and their clients already use.

I1

Configured integrations.

Jira, Slack, ServiceNow and other widely deployed systems are supported as configured integrations. A partner configures the integration once per tenant; findings, status changes and communications flow through automatically.

I2

Per-tenant integration.

A partner's default integration configuration applies across their portfolio. Per-client overrides are supported, so each client can be routed to its own ticketing instance independently of the rest.

I3

An extensible integration surface.

The integration surface is designed for extension. Partners with tooling not yet on the supported list, whether commercial or proprietary, can develop around the platform.

Jira
Slack
ServiceNow
Microsoft Teams
PagerDuty
Splunk
Webhooks · API
By partner request
06

Portfolio scale without portfolio overhead.

SC1

Continuous assessment at scale.

Operators run HiveSec Engine across portfolios of organisations, in some cases numbering in the thousands, without complexity growing in proportion.

SC2

AI investigation at scale, efficiently.

AI investigation runs where it changes the answer. Stable findings that have not materially changed are not re-investigated, so the work scales with what changes in the portfolio, not with its size.

SC3

Scale by configuration.

Onboarding a new client to the platform is a configuration step, not an engineering step. An additional client is not an additional engagement to project-manage by hand.

07

Partnering with HiveSec Engine.

HiveSec Engine partners with consultancies, managed security providers, insurance brokers and underwriters, and enterprise security organisations on commercial terms that suit the partner's scale and the services they deliver.

P1

Engagement model.

Partner conversations open with a discussion of the partner's practice: the services they deliver, where HiveSec Engine fits, and the commercial structure that suits their delivery model.

P2

Onboarding.

HiveSec Engine works with each new partner to configure their tenant: branding and communications, integrations with existing tools, user accounts, and the first cohort of client tenants.

P3

Support.

Partners receive ongoing support from HiveSec Engine's platform and methodology teams.

Partnering

Partner with HiveSec Engine.

Partners use HiveSec Engine to deliver continuous, lifecycle-tracked security assessment to their clients, under their own brand.

Request a partner conversation