> ## Documentation Index
> Fetch the complete documentation index at: https://docs.myrmex.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Athena

> The security posture strategist (GRC) — scores your environment, maps findings to frameworks, and prioritizes remediation.

import { CardGroup, Card, Note } from '@mintlify/components';

**Athena** is the security posture strategist — your governance, risk, and compliance (GRC) specialist. Athena looks across your environment, scores how secure it is, maps what it finds to the frameworks you care about, and tells you what to fix first. Athena is the intelligence behind the **Security Posture** module.

## What Athena Does

<CardGroup cols={2}>
  <Card title="Scores your environment" icon="gauge">
    Produces an overall posture **score from 0 to 100** with a matching **A–F
    grade**, plus per-target breakdowns.
  </Card>

  <Card title="Maps to frameworks" icon="clipboard-check">
    Aligns findings to CIS, NIST, ISO 27001, PCI DSS, SOC 2, MITRE ATT\&CK, AWS,
    FedRAMP, and CISA so you can see compliance at a glance.
  </Card>

  <Card title="Prioritizes remediation" icon="list-ol">
    Ranks findings into a priority queue with recommended actions, so effort goes
    to what matters most.
  </Card>

  <Card title="Gates risk acceptance" icon="file-signature">
    When you accept a risk instead of fixing it, Athena runs the approval —
    documented and signed off.
  </Card>
</CardGroup>

## Scoring and Frameworks

Athena turns a sprawl of findings into a single, readable picture: an overall score and grade for your environment, a breakdown per target, and a compliance view that shows where you stand against each framework. Ask Athena to analyze a target and it explains what's driving the score and which findings weigh most.

## Remediation

Ask Athena to remediate a finding and it hands the work to the right specialist — [Perseus](/documentation/multi-agent-system/agent-endpoint-specialist) on a host, [Hydra](/documentation/multi-agent-system/integration-specialist-agent) on an integration — while tracking the fix against your posture.

## Risk Acceptance

Not every finding gets fixed. When you accept a risk, Athena gates the decision: it generates a risk-acceptance document that has to be signed, and a **critical** finding requires a second approver before the finding is silenced. You can reactivate a silenced finding later if things change.

<Note>
  Risk acceptance is the "AI proposes, you approve" pattern applied to risk —
  Athena prepares the decision, but a human signs off before a finding is
  silenced.
</Note>
