Platform · The inventory that tells the truth

Exposure management

Continuous discovery and ownership for every asset across the five strata, with change tracking that tells you what appeared, what moved and what quietly opened up.

16,567

assets under continuous discovery in the demo tenant

Capabilities

What exposure management actually does

01

Continuous discovery

Registrars, certificate transparency, cloud control planes, API gateways, identity providers and endpoint fleets, swept on a schedule you set.

02

Ownership resolution

Every asset gets a proposed owning team from tags, repository history and deploy identity. A human confirms it once, then it sticks.

03

Change ledger

A dated record of every asset that appeared, changed origin, gained a public route or lost its owner.

04

Shadow surface

Assets that resolve to your organisation but were never registered in your CMDB, flagged separately so they cannot hide in the totals.

In the console

See it working on demo data

  • Discovery runs on registrars, certificate transparency, cloud control planes, identity providers and endpoint APIs.
  • Every asset carries a proposed owner from the day it appears, confirmed once by a human.
  • The change ledger records what appeared, what moved and what quietly gained a public route.
LodemarkDemo tenantNorthfleet Group · 4 cloud accounts · 11 regions · 3 subsidiariesHead of Security OperationsSigned in as Asha Rehman
Asset inventory24 of 24 shown · 16,567 in the full demo tenant
Discovered assets with exposure rating, owning team and open finding count. Select a row for detail.
StratumOwner
partners.northfleet.ioDomains & DNSEdgePlatform Webcritical42024-11-03
nfg-invoice-archiveCrown jewelCloud resourcesCoreFinance Systemscritical32023-02-19
svc-datalake-ingestIdentitiesIdentityData Platformcritical22023-08-27
legacy-edi.northfleet.ioServicesEdgeIntegrationcritical72021-11-19
api.northfleet.io/v2/consignmentsAPIsGatewayFreight Platformhigh62024-04-08
staging.tenders.northfleet.ioDomains & DNSEdgeCommercialhigh52025-06-14
nfg-prod-eks-freightCloud resourcesWorkloadFreight Platformhigh92023-01-11
vpn-ams-02.northfleet.ioEndpointsGatewayNetwork Opshigh32022-09-30
nfg-customer-pii-euCrown jewelCloud resourcesCoreData Platformhigh22022-05-16
ci-runner-fleet-07EndpointsWorkloadDeveloper Experiencehigh42024-07-05
depot-scada-rtd-12EndpointsWorkloadFacilitieshigh22022-08-08
supplier-docs.northfleet.ioDomains & DNSEdgeProcurementhigh42025-01-30
crew-scheduling.northfleet.ioServicesWorkloadPeople Opsmedium22024-01-22
nfg-secrets-prodCrown jewelCloud resourcesCorePlatform Securitymedium12023-04-04
api.northfleet.io/internal/pricingAPIsGatewayCommercialmedium32025-02-27
svc-github-deployIdentitiesIdentityDeveloper Experiencemedium22024-03-13
nfg-analytics-lakeCloud resourcesWorkloadData Platformmedium42023-10-01
sso.northfleet.ioServicesIdentityIdentitymedium22021-07-14
mail-relay-rot-03EndpointsGatewayNetwork Opsmedium32022-02-11
nfg-prod-rds-freightCrown jewelCloud resourcesCoreFreight Platformmedium22022-03-25
a.rehman@northfleet.ioIdentitiesIdentitySecuritylow02021-03-02
careers.northfleet.ioDomains & DNSEdgePeople Opslow12024-09-12
api.northfleet.io/v1/trackingAPIsGatewayFreight Platformlow12022-12-06
nfg-backup-vault-euCrown jewelCloud resourcesCoreInfrastructurelow02023-06-21
Questions

About exposure management

Everything else is in the documentation.

Cloud control planes are polled every 15 minutes, DNS and certificate transparency continuously, and endpoint and identity sources hourly. You can force a sweep at any time.

Next step

Put exposure management against your own estate

A four-week proof of value connects one cloud account, your DNS and your identity provider, and ends with a written readout. Lodemark stays read-only throughout.

Book a walkthroughOpen the console demo

Illustrative product data. Nothing on this site performs a live scan.