---
title: 4D Security Graph for Threat Hunting | Wartiva
description: Query endpoints, devices, and networks by relationship, time, and physical location in one security graph. Hunt threats even when endpoints are offline.
url: https://wartiva.com/platform/4d-security-graph.html
updated: 2026-10-07
---

Investigation & Threat Hunting

# 4D Security Graph

Wartiva unifies your environment into one queryable security graph. Every search spans multiple dimensions: the relationships between entities, the time range you care about, and geospatial location. The result turns scattered telemetry into fast, connected answers for investigation and threat hunting.

One security graph, three layers. Wartiva places every entity on the same graph by its relationships, by time, and by physical location, so a single query can cross all three.

Endpoints send only what changed, over TLS 1.2 or later. Wartiva stores identical data once and shares it across every endpoint in your organization, encrypted at rest with AES-256, with keys held in AWS Key Management Service (KMS) in your tenant's region. Search any field, across any relationship.

## When Did It Happen

Search for when any asset was seen in your environment and when it was related to another, so a relationship that existed last Tuesday is just as searchable as one that exists today. Reconstruct exactly what was talking to what at any moment, trace how exposure formed over time, and answer the questions incident response and auditors ask most: what was exposed, and when.

## Turn a Street Address into a Security Query

Search your environment by physical proximity. Ask what assets were near a given address, a facility, or any point on the map, and the graph returns everything within the radius you choose. Scope an incident to a building, spot devices where they shouldn't be, and understand your exposure the way it exists in the physical world.

## Hunt Threats Even When Endpoints Are Off

Wartiva retains the last known state of each of your endpoints in the cloud, so it's always at your fingertips, even when the endpoint is offline.

## Related capabilities

- [Asset Geolocation](https://wartiva.com/platform/asset-geolocation.html): Tie every finding to a physical location, typically within 100 meters.
- [Evidence & Attack Paths](https://wartiva.com/platform/evidence-and-attack-paths.html): Drift detection, captured evidence, and graph-based attack paths.
- [GraphQL API](https://wartiva.com/platform/graphql-api.html): Your whole security graph through one strongly typed API.

## Industries that rely on it

- [Energy & Critical Infrastructure](https://wartiva.com/solutions/energy.html): See the whole attack path, not single findings.
- [Healthcare & Life Sciences](https://wartiva.com/solutions/healthcare.html): Protect PHI at the kitchen table and on devices you can't put an agent on.

## See your environment the way it really exists

Wartiva is in early access. Request your spot and talk to the team that built the endpoint platform they always wished they had.

[Request Early Access](https://wartiva.com/early-access.html)

---

Wartiva is in early access. Request access: https://wartiva.com/early-access.html  
All pages: https://wartiva.com/llms.txt
