See the shape of what's allowed

Upload your security policies. See which ones overlap, which are load-bearing, and which lateral-movement paths your controls do not collectively cover.

Scan my security policies
4 of 37 security controls add zero unique coverage. Vigilia shows you which ones — and which single policy your entire framework depends on.
CISO

“Which of our 37 NIST controls are just dead weight?”

Security Engineer

“Can a guest account reach admin in two steps through our policy gaps?”

Auditor

“Prove our framework has no single points of failure — with evidence, not checklists.”

KEYSTONE
SC-8-ENCRYPT-001 uniquely protects 415,176 states
REDUNDANT
4 controls fully shadowed by broader policies
COVERAGE GAP
Guest→Admin: 2-step coverage gap across 5 controls
HEALTH
Structural health 0.868

Compliance Dead Weight

Which security controls add zero protection? We find the ones fully shadowed by broader policies — and show you exactly which rule makes each one redundant.

Keystone Policies

One policy protecting 415,000 states with no backup. If it fails, the exposure is catastrophic. We find your keystones.

Coverage Gaps

Guest to admin in 2 steps, across 5 controls that do not collectively block the path. See the coverage gaps that sit between your compliant controls.

Policy Drift

Your NIST implementation says one thing. Your actual predicate does another. We catch the mismatch.

Change Impact

What happens if you add a control? Remove one? See the before and after in seconds.

Full Frameworks

NIST 800-53, CIS v8, PCI-DSS v4, ISO 27001. Pre-built packs or upload your own.

How it works

1

Upload your policies

Use the built-in NIST 800-53 pack or upload your own security controls as CSV.

2

We find what matters

Which policies carry the weight, which do nothing, and where your controls do not collectively block lateral movement. No sampling, no approximation.

3

Get your findings

A rule health map. A coverage-gap analysis. A change-impact report. Download as PDF for your next audit committee.

Find blind spots in your security policy stack.

See which controls carry the weight and which ones do nothing. Know what breaks if a regulation changes.

The underlying technology is the subject of 6 UK patent applications filed with the UKIPO. Technology →

Pricing

Start with a 7-day trial. No card required.

Solo

£37/mo
Billed £441/yr
  • All policy packs (NIST 800-53, CIS Controls, PCI-DSS, ISO 27001)
  • Up to 500 rules per analysis
  • PDF analyst report
  • Results history
  • 1 user, 1 domain
Start 7-day trial

Team

£187/mo
Billed £2,241/yr
  • Everything in Solo
  • Unlimited rules per analysis
  • All domains
  • Up to 3 team seats
  • Priority support
Start 7-day trial

Enterprise

from £999/mo
contract-negotiated
  • Everything in Team
  • Self-hosted deployment
  • SSO and air-gapped environments
  • Dedicated support
Contact sales