A guided, self-serve walkthrough — check off each step as you go, your progress is saved automatically in this browser.

New to NUURBY? Start here.

Seven steps from "just deployed" to a fully working security operations platform — asset discovery, vulnerability scanning, posture scoring, and instant alerts, all running on your own infrastructure.

0 of 7 steps complete
🎉 You're fully set up — welcome to NUURBY. Head to the Command Center any time for your live security posture.
01

Create your account

If your organization is brand new to NUURBY, sign up here — you'll be your organization's first admin. If your team already has an account, ask whoever set it up to invite you instead of signing up separately (Settings → Users, admin-only).

02

You're already signed in

Once you log in or sign up, every dashboard recognizes you automatically — you'll see your email and a "Log out" link in the top-right corner of every page from here on. No key to copy or re-enter.

Go to Email Triage →
03

Discover your assets

Head to Asset Inventory and run a scan — either an OT/ICS network range you're authorized to scan, or a connected cloud account (AWS, Azure, or GCP). Nothing else on the platform has much to show until this step is done, since almost everything correlates against this inventory.

Go to Asset Inventory →
04

Run your first vulnerability scan

Once assets exist, go to Vulnerabilities and click "Run Scan Now." After that, it re-scans automatically every couple of minutes in the background — no need to trigger it by hand again.

Go to Vulnerabilities →
05

Check your Security Posture

The Command Center gives you one score, 0–100, built transparently from your vulnerability exposure, alert backlog, incident response activity, compliance pass rate, and zero-trust coverage — with a plain-language reason behind every point lost.

Go to Command Center →
06

Install the Chrome extension

Get your posture score, alert counts, and instant desktop notifications right in your browser toolbar — without keeping a tab open. Takes about two minutes to set up.

Get the Extension →
07

Explore Threat Hunting and Compliance

Right-click any IP, domain, or hash to investigate it instantly with the extension, or search directly in Threat Hunting. Compliance gives you a continuously-updated pass rate against NIST CSF, CIS Controls, and SOC 2 — a proxy for a subset of controls, not a certified audit.

Go to Threat Hunting →
What NUURBY Protects You Against
Frequently Asked Questions
I don't have a login yet — what do I do?
You don't — that's no longer how NUURBY works. Each person gets their own login (email + password). If your organization already has a NUURBY account, ask an admin on your team to invite you (Settings → Users). If you're starting fresh, sign up here to create your organization's account.
Do I need to install anything to use NUURBY?
No. Every dashboard runs in any modern browser, no install required. The Chrome extension in Step 6 is optional — a convenience for notifications and quick lookups, not a requirement.
Is my data shared with NUURBY's developers or anyone else?
No. NUURBY runs entirely on your own infrastructure. Nothing about your assets, alerts, incidents, or scan results is sent anywhere except between your browser and your own instance.
A scan finished but found nothing — is that broken?
Usually not. Vulnerability scanning, compliance checks, and posture scoring all correlate against your discovered asset inventory (Step 3) — if that's empty, there's nothing yet to find anything in. Run an asset scan first.
How often does vulnerability scanning run automatically?
Every 2 minutes in the background, once at least one asset scan has been run. You never need to manually re-trigger it after the first time.
Where do I go if something looks wrong or I'm stuck?
Check with whoever manages your NUURBY deployment first — most issues trace back to configuration (access key, environment variables, or the asset inventory being empty). If it's a genuine bug, that's a conversation for whoever maintains the codebase.