Two Things Every Cyber Asset Attack Surface Management (CAASM) Tool Needs to Get Right
Check Point, Friday, September 25th, 2026
Check Point argues CAASM tools must attach criticality and connection data to assets and refresh continuously to reduce risk.
Check Point argues that Cyber Asset Attack Surface Management (CAASM) tools must go beyond simply listing assets: they need to attach criticality and connection data to every asset from day one and resolve duplicate records, since the same device often appears under different names across endpoint, device management, and directory systems.
In one customer environment running Check Point Exposure Management, only 3.1% of over 200,000 devices and 2.6% of nearly 40,000 users were flagged as genuinely critical.
The post also stresses that inventories must refresh in hours rather than weeks and extend deduplication and coverage to identities, cloud resources, SaaS applications, and misconfigurations.