Resources

Cybersecurity white papers, data sheets, webinars, videos and more

Resource Library

What Is a Hardware Token? Comparing Authentication Methods

Blog

What Is a Hardware Token? Comparing Authentication Methods
Hardware tokens offer secure multi-factor authentication. Learn the difference between hard and soft tokens and when to use each.
Threat-Informed TPRM
How to Handle PHI Securely and Avoid HIPAA Violations

Blog

How to Handle PHI Securely and Avoid HIPAA Violations
Learn how to protect PHI, meet HIPAA security requirements, and minimize third-party risk. This guide covers encryption, access control, and vendor monitoring strategies.\r\n
How Can You Defend Against Corporate Espionage in a Hyperconnected World?

Blog

How Can You Defend Against Corporate Espionage in a Hyperconnected World?
Corporate espionage is a growing cyber threat. Learn the tools, tactics, and best practices to protect your intellectual property and strategic advantage.
What Is UPnP and Why Is It a Security Risk?

Blog

What Is UPnP and Why Is It a Security Risk?
Universal Plug and Play simplifies connectivity—but it also introduces serious vulnerabilities. Discover what UPnP is, the risks, and how to disable it securely.
Turning Data into Action: Key Findings from the 2025 Global Third-Party Breach Report

Webinars

Turning Data into Action: Key Findings from the 2025 Global Third-Party Breach Report
Learn more in this resource.
MAX
Threat-Informed TPRM
What Does a Data Breach Cost? Key Insights for Cyber Leaders

Blog

What Does a Data Breach Cost? Key Insights for Cyber Leaders
Data breach costs increased in 2024. Explore the direct and hidden costs of cyber incidents and how to reduce your organization’s exposure.
What Are Proxy Browsers? How Cybercriminals Use Them In Attacks

Blog

What Are Proxy Browsers? How Cybercriminals Use Them In Attacks
Learn how proxy browsers enable cybercriminals to disguise their origins, bypass security, and conduct attacks. Explore how to detect and defend against proxy browser misuse.
What Happens When HTTPS Is Misconfigured? Common Risks and How to Fix Them

Blog

What Happens When HTTPS Is Misconfigured? Common Risks and How to Fix Them
HTTPS misconfigurations, like expired certificates or HSTS errors, create serious security risks. Learn the most common issues and how to fix them quickly to protect your web assets.
Cybersecurity
How Do You Use the SIG Questionnaire for Better Third-Party Risk Assessment?

Blog

How Do You Use the SIG Questionnaire for Better Third-Party Risk Assessment?
Learn how to use the SIG Questionnaire to accelerate vendor risk assessments, align with compliance frameworks, and reduce third-party cyber risk.
Tech Center
Top Free Network-Based Intrusion Detection Systems for Modern Enterprises

Blog

Top Free Network-Based Intrusion Detection Systems for Modern Enterprises
Free and open-source network intrusion detection systems (NIDS) can enhance visibility and threat detection.
What Is PII? How to Protect Personally Identifiable Information in 2025

Blog

What Is PII? How to Protect Personally Identifiable Information in 2025
Personally identifiable information (PII) remains a prime target for threat actors. Learn what qualifies as PII in 2025—and how to defend it.\r\n
Guide to Developing a Business Continuity Plan

Blog

Guide to Developing a Business Continuity Plan
Explore business continuity in cybersecurity. Learn how a continuity plan helps assess threats, reduce risk, and protect operations from attacks.
Safeguarding Against Subdomain Takeover

Blog

Safeguarding Against Subdomain Takeover
Learn what subdomain takeover is and how to prevent it with best practices and continuous monitoring.
What Is a Supply Chain Attack?

Blog

What Is a Supply Chain Attack?
Learn how a supply chain attack works, why it’s so dangerous, and what security measures can help protect your organization from hidden threats.
Supply Chain Cyber Risk
Threat-Informed TPRM
日本経済新聞: NECとKDDI、サイバー防衛でタッグ 国産技術で安保「黒子」に

メディア掲載

日本経済新聞: NECとKDDI、サイバー防衛でタッグ 国産技術で安保「黒子」に
Learn more in this resource.
Japanese
What Is a Cyber Threat? What Risk Leaders Need to Know

Blog

What Is a Cyber Threat? What Risk Leaders Need to Know
Learn what cyber threats are, how they work, and why recognizing them is essential to reducing organizational risk.\r\n
SecurityScorecard Advisory: Apache HTTP Server Improper Escaping of Output Vulnerability (CVE-2024-38475) Added to CISA KEV

STRIKE

SecurityScorecard Advisory: Apache HTTP Server Improper Escaping of Output Vulnerability (CVE-2024-38475) Added to CISA KEV
SecurityScorecard Advisory: Apache HTTP Server Improper Escaping of Output Vulnerability (CVE-2024-38475) \r\n
STRIKE Alert
Assembling the Dream Team: Building a High-Performing Supply Chain Incident Response Team

Blog

Assembling the Dream Team: Building a High-Performing Supply Chain Incident Response Team
This article explores the key elements of building a high-performing supply chain incident response team to effectively mitigate and respond to these threats.
Threat-Informed TPRM
Scorecarder Spotlight: Chandra Sekhar Betha

Blog

Scorecarder Spotlight: Chandra Sekhar Betha
Our “Scorecarder Learning & Development Spotlight” series showcases our talented, driven employees, the incredible work they do, and their quest to continue their development as lifelong learners.
Scorecarder Spotlight
Solution Brief: SecurityScorecard MAX

Data Sheet

Solution Brief: SecurityScorecard MAX
See how SecurityScorecard MAX strengthens operational resilience, enhances third-party risk management, and mitigates concentrated risk.
How Do You Back Up Business-Critical Data?

Blog

How Do You Back Up Business-Critical Data?
Building a Reliable Backup Strategy Against Cyberattacks and Disruptions Using Best Practices for Cyber Resilience
Enterprise Cyber Risk
MAX
Third-Party Risk Management