Attack Surface Estimation Calculator
Industry (Benchmark)
5%/mo
Attack Surface Score34/100
Exposure Score31/100
Risk Levelmedium
Exposuremedium
Reachable20
Critical Exp.3
Risk by Category
Attack Surface Trend (12 Months)
Projected growth at 5%/month across all categories
Surface Breakdown
Public IP Addresses (10)33
Domains (5)32
Cloud Accounts (3)33
SaaS Applications (25)44
Remote Workers (50)34
IoT Devices (10)33
Public-Facing APIs (5)32
Third-Party Integrations (10)38
BYOD Devices (20)31
Peer Comparison (tech)
| Category↕ | Yours↕ | Median↕ | vs Peers↕ |
|---|---|---|---|
| Public IP Addresses | 10 | 15 | Below |
| Domains | 5 | 8 | Below |
| Cloud Accounts | 3 | 5 | Below |
| SaaS Applications | 25 | 40 | Below |
| Remote Workers | 50 | 100 | Below |
| IoT Devices | 10 | 5 | Above |
| Public-Facing APIs | 5 | 12 | Below |
| Third-Party Integrations | 10 | 20 | Below |
| BYOD Devices | 20 | 30 | Below |
Prioritized Reduction Actions
| Action↕ | Impact↕ | Effort↕ | Ratio↓ |
|---|---|---|---|
| Audit and retire unused domains (current: 5) | -2 | low | 2 |
| SaaS rationalization — eliminate redundant applications (current: 25) | -2 | medium | 1 |
| Conduct vendor risk assessments and minimize integrations (current: 10) | -2 | medium | 1 |
| Consolidate or decommission unused public IPs (current: 10) | -2 | medium | 1 |
| Segment IoT on isolated VLANs with monitoring (current: 10) | -2 | medium | 1 |
| Deploy API gateway with auth and rate limiting (current: 5) | -2 | medium | 1 |
| Enforce MDM compliance policies for BYOD (current: 20) | -1 | low | 1 |
| Deploy zero-trust network access for remote workers (current: 50) | -2 | high | 0.7 |
| Consolidate cloud accounts and enforce centralized IAM (current: 3) | -2 | high | 0.7 |
Top Risk Areas
- 1. SaaS Applications (score: 44)
- 2. Third-Party Integrations (score: 38)
- 3. Remote Workers (score: 34)
- 4. Public IP Addresses (score: 33)
- 5. Cloud Accounts (score: 33)
Recommendations
- ● Attack surface is within acceptable bounds. Continue regular assessments.