A clear workflow for the vulnerabilities that matter.
Bring signals from NVD, CISA KEV, EUVD and GitHub together with your inventory, CVSS and EPSS context, alerts and remediation evidence — in one workspace for the team.
- Monitoring from 4 public sources
- Asset inventory and SBOM import
- Alerts, SLA and team workflow
- Reports and API access during trial
Choose the right plan after the trial.
NIS2 · For essential and important entities
Vulnerability management for NIS2.
NIS2 Article 21 requires measures for vulnerability handling and disclosure and for supply-chain security. CVE monitoring, prioritisation, ownership and action history in Awarely Monitor support these internal workflows and the preparation of evidence for reviews.
Monitor does not certify or guarantee NIS2 compliance. Notification of significant incidents to the national CSIRT (in Romania, DNSC) takes place separately.
Explore Monitor for NIS2CRA · For CTOs and product security teams
Prepare your team’s workflow for the CRA.
Public-signal monitoring, prioritisation, ownership and action records support CRA process preparation. Evaluate this workflow with your own inventory and team in the Pro trial.
Monitor supports internal assessment and evidence preparation. Official reporting takes place separately through the SRP; Monitor does not submit notifications to ENISA or guarantee CRA compliance.
Explore Monitor for CRA preparationFrom high CVE volume to explainable decisions.
The platform connects discovery, prioritisation and follow-up in a path that keeps context and responsibility visible.
One multi-source workflow
NVD, CISA KEV, EUVD and GitHub in one coherent review interface.
Prioritisation with context
EPSS estimates probability and does not prove active exploitation; CISA KEV provides the known-exploitation signal.
Inventory and version matching
Import SBOM, package.json or requirements.txt with results clearly labelled by match basis.
Alerts where the team works
Email, Slack, Teams, push and outbound webhook, depending on plan and configuration.
Ownership and internal SLA
Statuses, assignments, notes, timeline and internal remediation windows, separate from statutory NIS2/CRA reporting deadlines.
Exportable evidence
CSV, XLSX, PDF and evidence packs for internal or external review.
Monitor. Prioritise. Prove.
Monitor
Collect CVE information on a scheduled basis from four public sources.
Prioritise
Narrow review to what is relevant for products, versions and risk.
Prove
Keep decisions, ownership and exports needed for review.
Choose the right level for your team.
Try Pro workflows for 14 days with no credit card. Then choose Starter or Pro; access returns to Free without an active subscription.
Starter
For small teams that need monitoring and a shared triage workflow.
- Up to 5 users
- Critical-severity email alerts
- Search, watched filters and Saved Views
- CSV and XLSX export
- 90-day audit history and Evidence Pack
- Statuses, notes, assignment and bulk actions
Pro
For security teams connecting inventory, alerts and evidence.
- Everything in Starter
- Asset inventory and SBOM import
- Version-confirmed CVE matching where source data permits
- Email, Slack, Teams Workflows, push and signed webhook alerts
- SLA tracking, Jira and Linear
- PDF reports and Asset Exposure Evidence Pack
- Assisted enterprise OIDC SSO for Microsoft Entra ID, Okta or Google Workspace
- 12-month retention and API — 50,000 requests/month
Card payments are processed securely and VAT is handled at checkout. Direct B2B invoicing is also available for organisations.
Frequently asked questions about the offer
Need B2B invoicing or a guided evaluation?
We can discuss plan fit, integration, direct invoicing and the information required by your procurement process.
