CulperIQ platform

CulperIQ security operations suite

Meridian

Turn security signals into owned work.

Meridian connects detection, exposure, investigation, assessment, and remediation across the environment so operational context stays intact from first signal to final resolution.

MERIDIAN / LIVE WORKSPACE01
Meridian Security Operations workspace showing event investigation activity

Suite architecture

01Security monitoring

02Exposure management

03Assessment operations

Operational security, connected

See the signal. Keep the context. Move the work.

Security programs rarely need another isolated stream of findings. Meridian connects what teams observe with the investigation, ownership, and remediation needed to change the environment.

01

Investigate in context

Bring endpoint, cloud, identity, AI, email, and exposure signals into workflows where analysts can see what happened and what matters next.

02

Prioritize the work

Connect technical findings to affected systems, users, evidence, and ownership so teams can distinguish urgent risk from background volume.

03

Keep remediation live

Move from detection to accountable action without losing the investigation record, current status, or the decisions that shaped the response.

Meridian modules

One suite. Seven operating views.

Each module handles a focused area of security operations while sharing the CulperIQ platform context, permissions, and workflow that keep the broader program connected.

01 / SIEM and event investigation

Security Operations

Detect and respond to security incidents from Aegis endpoints, Microsoft 365, Azure, Google Cloud, AWS, and other external sources and integrations.

Explore Security Operations
Meridian Security Operations workspace showing events and investigation context

02 / AI security and observability

AI Atlas

Monitor organizational AI harness usage for sensitive prompt data, unsafe skills and MCP servers, usage, cost, and personal account activity.

Explore AI Atlas
Meridian AI Atlas workspace showing AI security activity

03 / Continuous exposure management

Vulnerability Management

Use Aegis-powered endpoint visibility, prioritization, and fleet-wide threat hunting to move vulnerability data into accountable work.

Explore Vulnerability Management
Meridian Vulnerability Management workspace showing prioritized vulnerabilities

04 / Cloud security posture management

Kestrel Cloud Security

Benchmark AWS, Azure, Microsoft 365, and Google Cloud, score cloud security posture, and give teams actionable remediation for identified gaps.

Explore Kestrel Cloud Security
Meridian Kestrel dashboard showing cloud posture scores and findings

05 / Breach and dark web exposure

Signals Intelligence

Continuously monitor organizational users and domains across breach data and dark web sources, then connect exposed accounts to response.

Explore Signals Intelligence
Meridian Signals Intelligence workspace showing exposed account data

06 / Email infrastructure assurance

MXSignet

Validate SPF, DMARC, DKIM alignment, DNSSEC, transport security, and more than 100 blacklist sources while tracking meaningful configuration drift.

Explore MXSignet
Meridian MXSignet email security monitoring dashboard

07 / Assessment and remediation management

Assessments

Replace static penetration test reports and remediation spreadsheets with a live record of assessment scope, findings, evidence, ownership, and progress.

Explore Assessments
Meridian Assessments workspace showing findings and remediation progress

The Meridian operating loop

From signal to resolution without the context reset.

Meridian is structured around the actual motion of security work. The record becomes richer as activity moves through the team instead of being rebuilt in every tool.

01

Observe

Continuously collect the activity, posture, and exposure data that defines the operating environment.

02

Investigate

Correlate signals with endpoint, identity, cloud, and organizational context to understand impact.

03

Decide

Prioritize the response, document the reasoning, and assign clear ownership for the next action.

04

Remediate

Track the work through resolution while preserving findings, evidence, and response history.

Built for active defense

One record from detection through resolution.

01

Use one operating record across exposure, investigation, assessments, and remediation

02

Deploy the Aegis agent across Windows, macOS, and Linux endpoints

03

Add modules as the security program expands without rebuilding context

04

Bring secure, task-aware Cody assistance into active security workflows

Also in CulperIQ

Safeguard

Governance, risk, and compliance suite

Connect Meridian security operations to frameworks, controls, risks, technical evidence, vendors, and policy management across the CulperIQ platform.

Explore Safeguard

See Meridian in your environment

Put your security operation on one connected record.

Show us where signals, investigations, and remediation separate today. We will map the Meridian modules to the operating outcomes your team needs.

Request a demo