Work in monitoring, vulnerabilities, threats, response, and evidence for corporate environments.
Cybersecurity platform
NeuroScan Professional
A platform for teams that need to know what exists, what to fix first, and how to prove security decisions.
- See
- Assets surface, endpoints, services, and relevant exposures
- Decide
- Priority severity, recurrence, impact, and next action
- Record
- Evidence history, reports, and audit trail
From inventory to evidence, without switching context.
NeuroScan Professional is an authenticated platform for operators, administrators, and security teams. Navigation organizes dashboards, scans, agents, vulnerabilities, incidents, and reports according to modules, profiles, and permissions.
The routine becomes more direct: investigate by source and severity, open details, track owners, register evidence, and turn technical history into operational decisions.
Session, profiles, organizations, modules, and permissions define what each user can see and do.
Dashboards with sections, rows, widgets, and data sources help track risk, agents, and alerts.
Scans, endpoints, containers, monitored assets, alerts, and vulnerabilities are available for filtering and detail.
Cases, tasks, notes, IoCs, assets, evidence, timelines, and reports support the response.
For the operating team
Configurable dashboards for real operations.
The dashboard works with saved configurations, sections, rows, widgets, and data sources. Teams can monitor risk, agents, alerts, trends, and vulnerabilities without being limited to one fixed view.
-
View by source Scanner, endpoints, and containers appear according to enabled modules.
-
Risk and trend Agent, alert, severity, and NeuroRisk widgets help locate risk concentration.
-
Path to detail Lists, filters, tables, and reports lead to triage, investigation, and proof.
NeuroScan tools.
Use cases combine defensive operations, risk management, and authorized Red Team validation. Availability depends on the contract, profile, and user permissions.
Monitoring, detection, and response
- EDR
-
Endpoint detection and response with agents, inventory, file integrity, compliance, alerts, rules, and decoders.
- Agents
- FIM
- Rules
- SIEM
-
Search and correlate alerts, vulnerabilities, and logs with filters, saved queries, and exports.
- Logs
- Queries
- CSV
- SOAR
-
Cases, tasks, notes, IoCs, evidence, SLA, and timeline for response governance.
- Cases
- SLA
- IoCs
- IoT
-
Connected asset inventory and status, alerts, collectors, and operational view.
- Inventory
- Status
- Alerts
- Cluster monitoring
-
Clusters, pods, events, vulnerabilities, network, posture, and patches when enabled.
- Pods
- Events
- Patches
Vulnerabilities, assets, and prioritization
- Dashboard
-
Panels and indicators to track risk, agents, alerts, and trends.
- Widgets
- Sources
- Indicators
- NeuroRisk
-
Risk score by group, agent filters, severities, and exports.
- Score
- Groups
- Export
- Scanner
-
Targets, credentials, and schedules to run scans and generate reports.
- Targets
- Scans
- Reports
- Container Security
-
Image vulnerabilities with CVE, severity, affected packages, and status.
- CVE
- Severity
- Status
- Reports
-
History, module consolidation, layout, email sending, and download.
- Consolidated
- Layout
- Sending
Simulations and external exposure
- DDoS L4/L7
-
Resilience simulations at L4 or L7, with live metrics, operational history, and reports.
- L4/L7
- Metrics
- Reports
- Anti-Phishing
-
Phishing simulation campaigns, user metrics, sending history, and reports.
- Campaigns
- Metrics
- Users
- OSINT
-
External surface reconnaissance with scans, correlations, graph, logs, history, and PDF.
- Graph
- Logs
- Dark Web
-
Leak monitoring, compromise status, details, and export.
- Leaks
- Status
- Export
- Support tools
-
Support for authorized offensive validations and technical checks in enabled environments.
- Red Team
- Network
- Console
Incidents, evidence, and access
- Incident response
-
Involved assets, chain of custody, participants, review, and evidence export.
- Evidence
- Timeline
- Custody
- Blockchain
-
File, report, and evidence verification when the information is available.
- Files
- Reports
- Evidence
- FIDO2 / WebAuthn
-
Authentication and security key registration when the method is enabled.
- Login
- Key
- Invite
- User management
-
Users, invites, roles, permissions, organizations, and online sessions.
- Roles
- Permissions
- Invites
- Settings
-
Email alerts, sending, automated responses, and operational parameters.
- Alerts
- Sending
- Automation
Vortex AI
Cybersecurity assistant with multiple personalities via MCP and a 706-entity Graph RAG. Multi-model orchestration with automatic escalation by complexity, SecAI as reasoning engine, and append-only audit logging.
No console switching. No lost context. No blind spot.
- MCP
- Graph RAG
- Multi-LLM
- SecAI Reasoning
- PT-BR native
- Append-only audit
Next step: live demonstration at your company.
An in-person session to walk through a real scenario in NeuroScan Professional: alert, triage, correlation, assisted response, and executive closing in one presentation flow.
- EDR
- SIEM
- SOAR
- Clusters
- Scanner
- OSINT
- Dark Web
- Vortex AI
- Duration
- 25 min
- Format
- In-person demo
- Delivery
- Real scenario, live
- Next step
- Schedule 1 date
What the team follows during the session
-
Intake
Initial alert
Event intake, triage, and quick criticality reading.
-
Context
Operational correlation
EDR, SIEM, scanner, clusters, OSINT, and Dark Web in the same context.
-
Response
Assisted response
SOAR, cases, evidence, and Vortex AI supporting decisions.
-
Agenda
Next step
Closing with questions, environment fit, and continuity planning.
Institutional
Black Ice Security: technology and operations behind NeuroScan.
Black Ice Security is the StormGroup ecosystem company responsible for NeuroScan Professional. Its team brings together platform development, information security, and specialized operations to support organizations that need to monitor risk, handle vulnerabilities, and respond to incidents with evidence.
In practice, NeuroScan can be delivered with deployment, assisted operation, monitoring, environment analysis, and incident response, keeping product and services under the same governance model.
Platform developed by Black Ice Security to support security management and operations.
Network of professionals in Brazil for deployment, support, and assisted operation.
Platform, monitoring, deployment, and incident response organized under the same governance model.
Strategic Defense Company: a company accredited within Brazil's defense industry ecosystem.
Strategic Defense Product: a defense product considered strategic due to technology content, acquisition difficulty, or critical relevance.
Brazil's Ministry of Defense states that SisCaPED manages ED/EED accreditation and PRODE/PED classification. PED classification does not, by itself, mean operational homologation, security certification, or automatic authorization for public procurement.
Questions before the first conversation.
Common points for buyers, security managers, technical teams, and compliance stakeholders evaluating the platform.
What is NeuroScan Professional?
NeuroScan Professional is a Brazilian cybersecurity platform that brings together Blue Team, Red Team, Dashboard, NeuroRisk, EDR, Scanner, Container Security, SIEM, SOAR, DDoS L4/L7, Anti-Phishing, Dark Web, OSINT, IoT, cluster monitoring, incident response, FIDO2/WebAuthn, blockchain, reports, support tools, user management, settings, and auditable evidence, and presents Vortex AI as an exclusive differentiator.
Who is NeuroScan for?
For security operations, managers, administrators, audit, and compliance teams that need to track risk, investigation, response, and evidence in corporate environments.
What activities does a user perform in the platform?
A user can operate EDR, Scanner, SIEM, SOAR, DDoS L4/L7, Anti-Phishing, Dark Web, OSINT, IoT, cluster monitoring, incident response, FIDO2/WebAuthn, blockchain, reports, evidence, support tools, settings, and access according to module and permission.
Which operational areas does NeuroScan cover?
The platform organizes capabilities into Blue Team, risk, Red Team, and governance. In practice, it covers monitoring, detection, response, vulnerabilities, authorized simulations, external exposure, assets, clusters, identity, reports, settings, and access control.
How does the platform handle incidents and evidence?
The incident response module organizes cases, tasks, notes, IoCs, assets, evidence, timelines, participants, governance, history, and exports, with SLA and review controls when configured.
What can depend on contract, permission, or environment?
Module, route, and action visibility can depend on contract, user permission, environment flags, and technical configuration. This page describes confirmed product capabilities, not automatic availability for every customer.
Does NeuroScan replace security tools?
NeuroScan centralizes operation, investigation, reports, and evidence. Tool replacement depends on each customer's environment, enabled data sources, existing contracts, and security goals.
Talk to the NeuroScan team.
Use the form to request a demonstration, discuss deployment, or evaluate fit for your environment.