Search

Technical Cyber Security Rating

The Most Comprehensive and Accurate Technical Intelligence.

The Black Kite Technical Rating provides easy-to-understand letter grades and defensible data details behind 20 risk categories. The non-intrusive report passively evaluates third parties, and does not touch an organization’s systems or network assets.

Free Cyber Rating

Easy-to-Understand Letter GradesCalculated by Defensible Data

Black Kite follows and applies commonly-used frameworks developed by the MITRE Corporation for scoring software weaknesses in a consistent, flexible, and transparent manner, converting highly technical terms into simple letter grades.

C+
1X A
3X B
5X C
7X D
8X F
8X more likely to be breached
technical score categories

Vulnerability Prioritization

Black Kite provides a graphical distribution in the form of a heat map to determine the status and severity of each finding. Our platform leverages MITRE and NIST to further confirm the criticality of each threat.

Powerful Performance behind 20 Categories

The total score is a weighted average of 20 category components, providing unmatched breadth and insight into detected vulnerabilities.

Tap on items to learn more.

With Financial Impact Correlations

Now That I Have the Data – What Do I Do With It? Black Kite’s Strategy Report

black kite strategy report simplified

Black Kite’s Strategy Report shares feedback to help executives to understand their cyber risk posture and scale return on cybersecurity investments. The report provides simple steps to help remediate issues and mitigate cyber risks with suppliers and partners. Helpful One-Pager →

Benefits

Receive simple, outlined steps

Multiple formats available for download (PDF, Excel, etc.)

Prioritize tasks based on critically

Trusted by

BCBS
PNC Bank Logo
fannie mae
Markel
Aqua logo
lpl financial

RECENT UPDATES

Infographic: Key Stats from the 2025 Third-Party Breach Report
Infographic: Key Stats from the 2025 Third-Party Breach Report
Written by: Ferhat Dikbiyik, Chief Research & Intelligence Officer Last year saw no shortage of headline-grabb…
Read More
Focus Friday: TPRM Implications of Kubernetes Ingress NGINX, Synology DSM, and Synapse Server Vulnerabilities
Focus Friday: TPRM Implications of Kubernetes Ingress NGINX, Synology DSM, and Synapse Server Vulnerabilities
Written by: Ferdi Gül We can say that March has been one of the critical months in terms of vulnerabilities. In ad…
Read More
Oracle Cloud Breach: Claims, Denials, and the Reality of Cloud Security Risks in TPRM
Oracle Cloud Breach: Claims, Denials, and the Reality of Cloud Security Risks in TPRM
Written by: Ekrem Selçuk Çelik, Ferdi Gül, & Yavuz Han In March 2025, a threat actor known by the alias “rose8…
Read More
Focus Friday: Fortifying TPRM Against Kernel Compromise, Buffer Overflow, and Directory Traversal Vulnerabilities
Focus Friday: Fortifying TPRM Against Kernel Compromise, Buffer Overflow, and Directory Traversal Vulnerabilities
Written by: Ferdi Gül Welcome to this week’s Focus Friday, where we delve into the critical realm of Third-Party R…
Read More
Focus Friday: Third-Party Risks In DrayTek Vigor Routers, VMware ESXi, Apache Tomcat, and Axios HTTP Client Vulnerabilities
Focus Friday: Third-Party Risks In DrayTek Vigor Routers, VMware ESXi, Apache Tomcat, and Axios HTTP Client Vulnerabilities
Written by: Ferdi Gül This week’s Focus Friday highlights critical vulnerabilities impacting widely used technolog…
Read More

Ready to get started?