Fortinet enhances FortiRecon to align with CTEM framework

Share

Bangalore: Fortinet, a global leader in cybersecurity, has announced major updates to its FortiRecon platform, aligning it more closely with the continuous threat exposure management (CTEM) framework.

The enhanced platform now combines internal and external attack surface monitoring, adversary-focused intelligence and security orchestration in a unified solution. These features help organisations identify exposures, validate risks and respond faster to reduce the impact of breaches.

“CISOs and security teams are overwhelmed by growing attack surfaces and an endless stream of unprioritised alerts,” said Nirav Shah, Fortinet SVP of Products and Solutions.

“With the latest enhancements to FortiRecon, we’re giving organisations an attacker’s eye view of their internal and external exposures, backed by AI-powered threat intelligence from FortiGuard Labs, real-world validation, and automated response. This allows organisations to cut through the noise, focus on what matters most, and measurably reduce risks and vulnerabilities before attackers can exploit them,” added Shah.

FortiRecon now supports all five CTEM pillars: scoping, discovery, prioritisation, validation and mobilisation. It integrates closely with Fortinet’s AI-driven security operations centre (SOC) platform to enable coordinated remediation between IT and security teams.

Enhancements include:

Attack surface management with severity ratings from the National Vulnerability Database and FortiRecon Active Exploitation for smarter patching

Adversary-centric intelligence from dark web activity, leaked credentials and active vulnerabilities

Brand protection against phishing, rogue apps and impersonation

Security orchestration using automated playbooks for faster response

Existing FortiFlex customers can use credits to deploy FortiRecon Cloud. FortiFlex offers flexible, usage-based licensing for hybrid and multi-cloud environments.

“FortiRecon has elevated the way we deliver managed security services. It enables our teams to provide clients with continuous, contextualised risk insights not just alerts,” said Paul Cragg, CTO – Norm Cyber.