How Secure is Your Namespace?

Take our comprehensive 33-question quiz to assess your organization's namespace security maturity across all 5 phases. Get instant results with personalized recommendations.

Phase 1: DISCOVER

Discovery & Visibility

1 Does your organization maintain a complete inventory of all domains and subdomains?

2 Can you identify all third-party services that create subdomains under your namespace?

3 How often is the Namespace scanned/evaluated?

4 How often do you discover "forgotten" or "unknown" assets in your namespace?

5 Do you have visibility into certificate issuance across your namespace?

6 Can you enumerate all email-sending domains and their SPF/DMARC configurations?

Phase 2: IDENTIFY

Risk Identification

7 Have you experienced a subdomain takeover or dangling DNS incident?

8 Are you in urgent need of finding out how a Zero Day event could be affecting you?

9 How many certificates have expired unexpectedly in the last year?

10 Is your organization aware of upcoming Post-Quantum Cryptography (PQC) requirements and migration deadlines?

11 Do you actively monitor for brand abuse and typosquatting?

12 Have you validated all DNS records to ensure no dangling CNAMEs exist?

13 Do you regularly track exposed staging/development environments?

Phase 3: ANALYZE

Analysis & Prioritization

14 Do you have a risk scoring methodology for namespace assets?

15 Can you identify single points of failure (SPOFs) in your infrastructure?

16 What elements of your Namespace are currently being monitored/evaluated?

17 Do you understand the business impact of each asset in your namespace?

18 Have you mapped namespace risks to compliance requirements?

19 How is your remediation queue prioritized and maintained?

Phase 4: GOVERN

Governance & Control

20 Do you have written policies for subdomain creation?

21 Is there a defined ownership model with clear roles and responsibilities (RACI) for namespace assets?

22 How comprehensive is your namespace supply chain visibility across procurement, legal contracts, and subsidiaries?

23 Do you track your digital correlation to Suppliers' suppliers, and if so do you limit the degrees of separation?

24 Do you understand governance and compliance risks from subsidiaries or entities operating under different geopolitical or regulatory standards?

25 Do you have an automated certificate renewal process?

26 Do you understand what infrastructure and cryptographic updates are required for Post-Quantum Cryptography (PQC) compliance?

27 Are there approval workflows for DNS changes?

28 Can you enforce policies automatically and detect drift?

Phase 5: COMPLY

Compliance & Monitoring

29 Do you have continuous monitoring for namespace changes?

30 Can you demonstrate compliance for audits (GDPR, SOC 2, ISO)?

31 Do you track KPIs for namespace security posture?

32 Have you tested your incident response for namespace attacks?

33 Is namespace security part of your regular security reviews?