SecuMap Editions
SecuMap ships as a Detection System of Record (DSoR), with capability split across editions rather than gated by seat count.
Choose the edition that fits your operating model: Community, Professional, or Enterprise.
On this page: licensing model, capability matrix, and the fastest path to get started.
Customer-hosted installation is the same for every edition — see how SecuMap is deployed on Architecture.
Licensing model
SecuMap uses capability-based licensing: every edition runs as the same customer-hosted, single-tenant install in your environment. What changes is your signed license file — it enables tier features, integration limits, and optional offline modes. SecuMap is not multi-tenant SaaS and does not use per-user cloud billing.
Packaging, orchestration, connectivity, and data residency are on Architecture — how SecuMap is deployed.
- Same install process for Community, Professional, and Enterprise
- License file governs edition entitlements and limits
- Capability-based licensing
- Community free; Professional and Enterprise via contract
- Upgrade tiers without changing deployment model
- Customer owns application data end-to-end
Community, Professional & Enterprise
Choose the edition that matches team size, integrations, and governance needs. Upgrade as your programme matures.
Community
Professional detection governance baseline for individuals and small teams. Start without a credit card.
Professional
Team collaboration, advanced lifecycle, analytics, BAS-aligned workflows, and broader operational metrics.
Enterprise
Full integrations — STIX/TAXII, CTI management, API keys, webhooks, SSO — plus enterprise-scale governance and support.
Capability matrix
Capabilities by edition. Product enforcement and limits follow your signed license file; contact us for the latest detail for your deployment.
| Category | Capability | Community | Professional | Enterprise |
|---|---|---|---|---|
| Licensing & limits | Licensed users (tier ceiling; may be tightened by license file) | ✓ | ✓ | ✓ |
| Licensing & limits | Licensed detection rules (tier ceiling) | ✓ | ✓ | ✓ |
| Licensing & limits | Licensed data sources (tier ceiling) | ✓ | ✓ | ✓ |
| Core platform | Detection use case lifecycle & governance | ✓ | ✓ | ✓ |
| Core platform | Security product inventory & stewardship | ✓ | ✓ | ✓ |
| Detection engineering | Detection rule bulk import | — | ✓ | ✓ |
| Detection engineering | Detection performance analytics & export | — | ✓ | ✓ |
| Threat intelligence & ATT&CK | Threat intel / ATT&CK imports & campaign imports | — | ✓ | ✓ |
| Threat intelligence & ATT&CK | ATT&CK Navigator layer export | — | ✓ | ✓ |
| Threat intelligence & ATT&CK | STIX indicator authoring (writes) | — | ✓ | ✓ |
| Campaigns & reporting | Threat report uploads | — | ✓ | ✓ |
| Detection programme | Custom detection taxonomy & SLA configuration (mutations) | — | ✓ | ✓ |
| Security products & analytics | Product dashboards, metrics, analytics & health | — | ✓ | ✓ |
| Security products & analytics | Service SLA for products | — | ✓ | ✓ |
| Service KPIs | Service KPI ingestion & CSV templates | — | ✓ | ✓ |
| Integrations | BAS control validation mapping (UI) | — | — | ✓ |
| Integrations | STIX & TAXII feed configuration | — | — | ✓ |
| Integrations | CTI Management (custom lists, impact models, watchlists) | — | — | ✓ |
| Integrations | API keys & programmatic access | — | — | ✓ |
| Integrations | Inbound webhooks (alerts, products, rules, campaigns, telemetry) | — | — | ✓ |
| Enterprise access | Single Sign-On (SSO) / OIDC (e.g. Entra ID, Google, Keycloak) | — | — | ✓ |
Interactive demo
Explore a hosted SecuMap environment with sample data — ideal before you deploy on-premises.
See it in action: open the interactive demo for access details, reset policy, and data disclaimer.