セキュリティ対策を攻撃視点とガイドラインで整理し、レポートへ変換する
想定攻撃に対する防御上の弱点を分析し、着手候補を整理。説明・報告・改善検討に使えるレポートを生成するオフライン評価ツール。
Organize security posture by attack scenarios and guidelines, then convert to reports
Analyze defensive gaps against likely attacks, organize suggested actions, and generate reports for communication and planning. Completely offline.
多くのセキュリティ評価ツールは「対策が存在するか」を確認します。しかし実務で必要なのは「想定される攻撃に対して、どこが弱いのか」の整理です。
SecureNavigator は、MITRE ATT&CK の攻撃手法を基に、対策の弱点 → 攻撃の進行経路 → 想定被害をルールベースで分析。防御上の弱点と着手候補を整理し、報告・改善検討に使えるレポートを生成します。
6つの代表的な攻撃シナリオに対して、組織の防御力をステップごとに分析します。
IPA 中小企業向けガイドライン、経産省サイバーセキュリティ経営ガイドライン、NIST CSF 2.0 を参考に対応状況を整理します。
診断結果から「今すぐ」「短期」「中期」「長期」の4段階で着手候補を表示します。
診断結果を PDF / HTML レポートとして出力。説明・報告・改善検討の資料として活用できます。
成熟度詳細、原因と対策テーブルなど、より深い分析を確認できます。
診断・レポートともに日本語と英語に対応しています。
| 機能 | Free | Pro |
|---|---|---|
| 診断(全問回答) | ✓ | ✓ |
| 攻撃シナリオシミュレーション | ✓ | ✓ |
| 対応候補の整理(画面表示) | ✓ | ✓ |
| IPA 中小企業向けガイドライン参考確認 | ✓ | ✓ |
| 経産省サイバーセキュリティ経営ガイドライン参考確認 | — | ✓ |
| NIST CSF 2.0 参考確認 | — | ✓ |
| AI 関連参考確認(NIST AI RMF / 総務省 AI セキュリティガイドライン / UK NCSC Secure AI System Development 関連ガイダンス を参考にした確認結果の表示。準拠・認証・適合判定を示すものではありません) | — | ✓ |
| 高度な分析(成熟度詳細・原因と対策) | — | ✓ |
| ATT&CK テクニック詳細分析 | — | ✓ |
| PDF レポート出力 | — | ✓ |
| HTML / Markdown レポート出力 | — | ✓ |
| ヒアリングシート出力(Excel) | — | ✓ |
| 日本語 / 英語切替 | ✓ | ✓ |
| セッション保存数 | 1件 | 3件 |
※ 診断結果のルールベース分析は参考情報であり、セキュリティ状態の完全性や特定目的への適合性を保証するものではありません。
🔒 完全オフライン動作 — SecureNavigator は外部にデータを送信しません。診断データは利用者のローカル環境にのみ保存されます。
Most security assessment tools verify whether controls exist. But what practitioners need is: "Against likely attacks, where are we weak?"
SecureNavigator uses MITRE ATT&CK techniques to analyze control gaps → potential attack paths → estimated impact through rule-based assessment. It organizes defensive weaknesses and suggested actions into reports you can use for communication and planning.
Analyze your defenses against 6 representative attack scenarios, step by step.
Organize status using IPA SME Guidelines (Japan), METI Cybersecurity Guidelines (Japan), and NIST CSF 2.0 as reference material.
View suggested actions across 4 time horizons: Immediate, Short-term, Mid-term, and Long-term.
Export assessment results as PDF / HTML reports for management communication and improvement planning.
Review detailed maturity breakdown, cause-and-action tables, and deeper analysis.
Both assessment and reports support Japanese and English.
| Feature | Free | Pro |
|---|---|---|
| Full Assessment (all questions) | ✓ | ✓ |
| Attack Scenario Simulation | ✓ | ✓ |
| Action Planning View (on-screen) | ✓ | ✓ |
| IPA SME Guidelines reference checks (Japan) | ✓ | ✓ |
| METI Cybersecurity Guidelines reference checks (Japan) | — | ✓ |
| NIST CSF 2.0 reference checks | — | ✓ |
| AI-related Reference Checks (results referencing NIST AI RMF / Japan MIC AI Security Guidelines / UK NCSC Secure AI System Development guidance. Not an indication of compliance, conformity, or certification) | — | ✓ |
| Advanced Analysis (maturity detail, cause & action) | — | ✓ |
| ATT&CK Technique Detail Analysis | — | ✓ |
| PDF Report Export | — | ✓ |
| HTML / Markdown Report Export | — | ✓ |
| Hearing Sheet Export (Excel) | — | ✓ |
| Japanese / English | ✓ | ✓ |
| Saved Sessions | 1 | 3 |
* Assessment results are rule-based reference information and do not guarantee completeness or fitness for any particular purpose.
🔒 Fully Offline — SecureNavigator never transmits your data. All assessment data is stored only on your local device.