
Tessera Cyber provides broker-facing external security assessments that identify publicly visible configuration issues and manage remediation follow-up directly with a client's MSP. The service includes one rescan to confirm fixes and delivers a co-branded External Security Remediation Summary, removing the broker from the coordination loop. A single renewal pilot is available for $149 per client.
Funding
Funding not disclosed
Founders
Product
Problem
External security issues are often discovered only during underwriting, after the renewal process has already started, leaving brokers to coordinate between the client, their MSP, and the underwriter. Generic scanners identify problems but do not manage remediation follow-up or confirm that fixes have been completed, forcing brokers into a time-consuming go-between role.
Solution
Tessera Cyber provides a domain-based, non-intrusive external security assessment that identifies publicly visible configuration issues and manages the entire remediation workflow on behalf of the broker. The service works directly with the client's MSP to translate findings into specific actions, tracks follow-up, and confirms externally detectable fixes through one rescan. Brokers receive a co-branded External Security Remediation Summary prepared by Tessera Cyber, eliminating the need for them to chase status updates. The assessment is limited to the agreed domain and checks, with all findings manually reviewed before delivery using a documented methodology.
Target Audience
Primary customers are insurance brokers and underwriters who need external security assessments for client renewals without becoming the coordinator between the client, their MSP, and the underwriting process.
Features
- External security assessment covering headers, TLS/certificate health, SPF/DMARC, exposed-file patterns, vulnerable JS libraries, CORS, and subdomain discovery
- Direct remediation coordination with the client's MSP, including translation of findings into specific actions
- One rescan to confirm externally detectable fixes are complete
- Co-branded External Security Remediation Summary prepared for the broker's firm
- Manual review of all findings using a documented external-assessment methodology
- Client authorization via DNS record, approved admin email, or written authorization through the broker