
Tandera
Deployment
Overview
About Tandera
Tandera is a pentest workflow platform for offensive security teams. It maps a target's attack surface through automated recon - subdomains, DNS, open ports, web tech, TLS, cloud assets and leaked credentials - and opens a finding automatically when recon matches a known vulnerability.
Findings from 120+ tools (Burp Suite, Nuclei, OWASP ZAP, Caido, Nessus, Nmap, Trivy, sqlmap) normalize into one deduplicated source of truth. Severity, CVSS, EPSS, KEV, CWE, CVE, OWASP, MITRE ATT&CK, compliance mapping, evidence and provenance travel with every finding.
Related findings are chained into attack paths, so a leaked credential that becomes domain admin is shown as the sequence an attacker would actually take - not as four unrelated medium-severity rows.
Reports ship as white-label PDF and PPTX generated straight from the canonical findings. A secure client portal tracks each finding from open to verified, with retests requested and closed in place.
At a glance
Software information
Industries served, licensing and the support Tandera provides.
Industries
- Information-technology-services
- Computer-network-security
Licensing
- Proprietary
- Quote Based
Support
- Support daysMondayTuesdayWednesdayThursdayFridaySupport time07:00 to 19:00 (UTC)
Capabilities
Tandera features
The full feature set, grouped by module.
Workflow Management
- Access Controls
- Business Process Automation
- Compliance Tracking
- Custom Dashboard
- Document Management
- Notifications & Reminders
- Reporting & Analytics
- Task Management
- Workflow Configuration
- AI Features
Plans
Tandera pricing
Works with
Integrations
Tandera connects with the tools your team already uses.