Live
Astragar at ITC Vegas 2026. Book a meeting with us in Las Vegas →
For Enterprises
Know whether your cyber insurance matches your actual risk.
Find your most material vulnerabilities and sensitive data. Quantify the exposure. Compare it with your cover. Turn policy conditions into controls and maintain the evidence you may need if a claim occurs.
Explore Cyber Insurance Readiness →
For Insurers
Create evidence-backed cyber insurance.
Connect cover to the insured's actual risk. Convert policy conditions into controls the insured can test, evidence and attest. Use that evidence to support underwriting, ongoing risk management, renewals and claims.
Explore Evidence-Backed Insurance →
For Insurers · Treaty
Bring evidence to your own treaty renewal.
We're developing portfolio-level views with early partners: evidence on exposure and control posture across your cyber book, to support treaty placement and renewal with more than loss history alone.
Explore Treaty & Reinsurance →
Identify vulnerabilities, sensitive data and threat scenarios associated with your most important assets.
Quantify vulnerabilities, sensitive data and breach scenarios in financial terms.
Compare potential losses with the limits, sublimits, exclusions and conditions in your actual policy.
Convert important policy conditions into controls that can be assigned, tested, evidenced and attested.
Maintain the evidence trail needed by security, compliance, underwriting, renewal and claims teams.
Risk → $ Exposure → Cover → Controls → Evidence
Make the policy operational
Turn the policy into something you can operate.
Astragar extracts important conditions and requirements from your cyber insurance policy and converts them into controls.
The insured can assign them, test them, attach evidence and attest to them.
The result is a continuously developing evidence record that supports the insured's security programme and gives insurers better information for underwriting, monitoring, renewal and claims.
Cyber insurance policy
↓
Limits · Sublimits · Exclusions · Conditions · Requirements
↓
Astragar
↓
Controls
↓
Test → Evidence → Attest
↓
Underwrite → Monitor → Renew → Claim
For the insured
Reduce the breach. Understand the exposure. Protect the claim.
Connect everyday security work directly to insurance outcomes.
01
Prioritise material vulnerabilities.
02
Identify and quantify sensitive data.
03
Quantify cyber exposure in $.
04
Identify potential insurance gaps.
05
Track important policy requirements.
06
Test relevant controls.
07
Attach evidence and attest.
08
Maintain claims-ready evidence.
Aeguard · AI-agent & endpoint evidence
Evidence doesn't come from questionnaires.
Astragar combines evidence from your vulnerabilities, sensitive data, controls and endpoints.
Aeguard extends that evidence layer to AI-agent behaviour, creating tamper-evident records of what agents were permitted to do and what they actually did.
For the insurer
From point-in-time underwriting to evidence-backed insurance.
01
Underwrite
Understand actual vulnerabilities, sensitive data, controls and financial exposure. Use better evidence to support risk selection and policy design.
02
Monitor
Convert important policy conditions into controls the insured can test, evidence and attest during the policy period. Spot changing risks and control gaps before renewal or a claim.
03
Renew
See how the insured's risk, exposure and control posture changed during the policy period. Use accumulated evidence to support renewal decisions.
04
Claim
Assess the claim against an established evidence trail, rather than reconstructing the insured's security posture after the incident.
Underwrite → Monitor → Renew → Claim
150
conversations with carriers, brokers and enterprises coming out of the Global Insurance Accelerator.
Policy scenario testing · Early access
Don't wait for the breach to test the policy.
We're building scenario testing with early partners: connecting a plausible cyber event to financial loss, your controls and your actual policy, so you can see where cover could fall short before it matters.
Ransomware
Sensitive-data breach
Business interruption
Third-party incident
Critical vulnerability exploitation
AI-agent incident
Illustrative example
Scenario
Ransomware
↓
Modelled loss
$4.2M
↓
Insurance response
$3.0M
↓
Potential exposure gap
$1.2M
Your evidence, not our score
Your risk. Your evidence. Your benchmark.
Astragar doesn't ask you to trust another opaque cyber score.
Risk is calculated from your assets, vulnerabilities, sensitive data, controls and evidence, and measured against your own changing risk profile.
As threats, vulnerabilities, assets and policies change, your exposure is re-measured against your own evidence-based benchmark, rather than relying on generic vendor baselines.
Insurance meets GRC
One control. Many obligations.
Insurance conditions, security controls and compliance frameworks shouldn't be run as separate programmes.
Astragar connects them through common controls and evidence, so the same control, tested once, supports your policy requirements and your frameworks.
Policy requirement
+
NIST · ISO 27001 · SOC 2 · NYDFS · DORA
↓
Common control
↓
Test → Evidence → Attest
Who it’s for
Enterprise
CISO & Security
Prioritise the risks that matter, and show the business and the insurer that controls are working.
Risk & GRC
One set of controls and evidence for policy conditions and frameworks alike.
CFO & Board
Cyber exposure in $, and a straight answer to whether the cover matches it.
Insurance / Risk Manager
Know whether your cover matches your risk, and keep claims-ready evidence.
Insurance
Insurers & Reinsurers
Evidence-backed underwriting, monitoring and renewal, instead of point-in-time questionnaires.
Cyber Underwriters
See the actual risk and control evidence behind the application.
Claims Teams
Assess claims against an established evidence trail, not a reconstruction.
Brokers & MGAs
Tell similar risks apart. Advise on live, evidenced risk, not forms.











