FAQ
Continuous Monitoring

What is external evidence collection?

External evidence collection is the systematic gathering of publicly observable technical and business information about an organisation, asset or supplier without relying solely on self-reported answers. Evidence can include DNS records, certificates, exposed services, software, scripts, web technologies, corporate ownership and regulatory information. It should be timestamped, attributable and reviewable so teams can verify why a finding was made. ThingsRecon correlates multiple external signals and preserves the supporting evidence, allowing security and risk teams to validate relationships, monitor change and strengthen assessments or audit records. In practice, teams should record the supporting evidence, confirm ownership and business criticality, and connect the finding to an accountable workflow. This prevents a useful observation from becoming another isolated score or dashboard alert. The strongest implementation combines external intelligence with internal knowledge, supplier engagement and documented risk decisions, creating a view that remains useful as the digital ecosystem changes.