Minion by NSS Labs

Gain assurance with control effectiveness validation

Minion by NSS Labs is a managed cybersecurity testing platform that delivers independent, evidence-based validation of security technologies under real-world threat conditions — repeatable, comparable, and audit-defensible.

Noise in → Signal out

IndependentThird-party validation by NSS Labs
ManagedNo internal test lab required
RepeatableVersioned, ground-truthed results
Available Now

A growing family of Minions across the security stack

Minion extends the NSS Labs methodologies into a scalable, appliance-delivered Test-as-a-Service platform. Each Minion validates a specific technology domain, with new domains added as methodologies mature.

SMB Firewall
Streamlined firewall efficacy testing tuned to small-business traffic patterns.
Available now
Cloud Network Firewall
Virtual and cloud-based firewall testing for public-cloud environments.
Available now
Enterprise Firewall
Full enterprise NGFW efficacy and performance validation.
Available now
SSE / SASE
Threat-prevention-focused testing for Security Service Edge platforms.
In development Q3 2026
AI Protection Systems
Validation of external controls — prompt-injection, data-exfiltration, agentic-tool and policy defenses — that sit in front of AI models.
In development Q4 2026
Future Minions
Operational Technology (OT) • Ransomware recovery.
On the roadmap
Performance
Up to 1G & 10G today

Two appliance models cover up to 1 Gbps and up to 10 Gbps of test throughput, with up to 40/100 Gbps on the roadmap.

Cadence
Minutes to a week

From focused runs in minutes to a comprehensive suite in roughly five days — run one-time, quarterly, monthly, or change-driven.

Brand pillars
Detailed • Insightful • Actionable

Managed delivery, real threat samples, results on the dimensions that matter, and engineering- and compliance-ready reporting.

Stop trusting the claim. Start measuring the signal.

Run a focused trial on one high-priority control area and produce an effectiveness report that your security, risk and audit stakeholders will accept as evidence.

Request a meeting