Resources

Blog

Resource Library

Clear filters

Dark Web Monitoring Against Invisible Cyber Threats

October 10, 2025

Dark Web Monitoring Against Invisible Cyber Threats
Keep your company’s data safe from unseen threats. Our dark web monitoring uncovers stolen credentials and information before cybercriminals can use them.\r\nURL: /blog/dark-web-monitoring/
SIEM vs SOAR: The Key Differences for Modern Security Teams

October 10, 2025

SIEM vs SOAR: The Key Differences for Modern Security Teams
Learn the key differences between SIEM vs SOAR and how these security technologies work together to improve threat detection and response.
The Importance of Email Security

October 10, 2025

The Importance of Email Security
Email security is the practice of safeguarding email accounts. Learn best practices to protect sensitive information and prevent breaches.
What is Zero Trust Architecture? 9 Steps to Implementation

October 10, 2025

What is Zero Trust Architecture? 9 Steps to Implementation
Understanding what a Zero Trust Architecture is and how to implement one can help enhance security. Learn more on SecurityScorecard’s blog.
Attack Surface Management
Tech Center
SecurityScorecard In The News Q3 2025

October 2, 2025

SecurityScorecard In The News Q3 2025
Catch up on SecurityScorecard press coverage from Q3 2025, including TV and podcast interviews, coverage of a new STRIKE Threat Intelligence report on state-aligned cyber operations, North America, EMEA, and APAC media coverage, executive thought leadership, and company acquisition and partnership news.
SecurityScorecard CISO Steve Cobb on CBS: Secret Service Takes Down SIM Farm Threat Near UNGA

October 1, 2025

SecurityScorecard CISO Steve Cobb on CBS: Secret Service Takes Down SIM Farm Threat Near UNGA
SecurityScorecard’s CISO joins CBS News New York to Share Insights on the Secret Service Takedown.
Clarification on npm Supply Chain Incident

September 23, 2025

Clarification on npm Supply Chain Incident
Recently, SecurityScorecard sent a customer communication that incorrectly described the npm supply chain incident as a “CrowdStrike breach.” This was inaccurate, and we want to correct the record.
SecurityScorecard Acquires HyperComply

September 15, 2025

SecurityScorecard Acquires HyperComply
SecurityScorecard acquires HyperComply to reduce manual security questionnaire work by 92% and accelerate vendor onboarding 10x.
What is a Cybersecurity Posture and How Can You Evaluate It?

September 12, 2025

What is a Cybersecurity Posture and How Can You Evaluate It?
Organizations across industries struggle to maintain robust security postures. While tremendous strides have been made in security technology, the fundamentals of establishing and maintaining a strong cybersecurity posture remain elusive for many organizations.
Tech Center
What is HIPAA Compliance? A Complete Guide

September 12, 2025

What is HIPAA Compliance? A Complete Guide
What is HIPAA compliance? Learn essential requirements, common violations, and best practices for healthcare data protection and security.
Tech Center
What is Data Exfiltration and How to Prevent It

September 12, 2025

What is Data Exfiltration and How to Prevent It
Discover what data exfiltration is, the methods attackers use, and the best solutions to prevent data loss, protect devices, and enhance data security.
Tech Center
What is SOC 2 Compliance? A Complete Guide for Security Leaders

September 12, 2025

What is SOC 2 Compliance? A Complete Guide for Security Leaders
What is SOC 2 compliance? This guide explains the audit, the five trust services, and how to get a SOC 2 report for your service organization.
Tech Center
What is Ransomware?

September 12, 2025

What is Ransomware?
Learn what ransomware is, how it works, types, and protection strategies. Comprehensive guide to ransomware prevention and recovery for businesses.
Tech Center
When SaaS Trust Becomes a Threat: Insights from the Salesloft Drift Compromise

September 10, 2025

When SaaS Trust Becomes a Threat: Insights from the Salesloft Drift Compromise
The STRIKE team has been analyzing the Salesloft Drift breach that spread into Salesforce environments. Discover what the breach tells us about supply chain security, how attackers abused OAuth tokens, what data is exposed, and defensive actions to take next.
STRIKE Team
Now You Can See European Union Vulnerability Database (EUVD) IDs in the SecurityScorecard Platform

September 8, 2025

Now You Can See European Union Vulnerability Database (EUVD) IDs in the SecurityScorecard Platform
Third-party risk management is complex as teams often struggle to track vulnerabilities across different data sources and standards. This can be especially challenging when working with vendors in the European Union, who may rely on a different set of databases with naming standards that don’t always align with U.S. standards.
How to Communicate Third-Party Risk to the Board

August 26, 2025

How to Communicate Third-Party Risk to the Board
Learn effective strategies for presenting third-party cyber risks to your board. Expert insights on simplifying complex security data for executive decision-making.
Scorecarder Spotlight: John Gonzalez

August 26, 2025

Scorecarder Spotlight: John Gonzalez
Our “Scorecarder Learning & Development Spotlight” series showcases our talented, driven employees, the incredible work they do, and their quest to continue their development as lifelong learners.
Scorecarder Spotlight
Red Team Cybersecurity: Complete Guide to Red Team Testing

August 18, 2025

Red Team Cybersecurity: Complete Guide to Red Team Testing
Learn what red teaming is, methodology, process, and importance in cybersecurity. Expert insights on red team testing and exercises.
SQL Injection in Cyber Security Prevention Guide

August 18, 2025

SQL Injection in Cyber Security Prevention Guide
Learn how SQL injection in cyber security threatens your data. Discover prevention strategies, attack types, and best practices to secure web applications.
What is Residual Risk in Cybersecurity?

August 18, 2025

What is Residual Risk in Cybersecurity?
Why perfect security is impossible. Understand residual risk cybersecurity and learn to manage what remains after all controls are in place.
FTP Security Risks, Vulnerabilities & Best Practices Guide

August 18, 2025

FTP Security Risks, Vulnerabilities & Best Practices Guide
Learn about FTP security vulnerabilities, risks of unencrypted file transfers, and best practices for secure data transmission alternatives like SFTP.