Resources
Cybersecurity white papers, data sheets, webinars, videos and more
Resource Library
Blog
What Happens When HTTPS Is Misconfigured? Common Risks and How to Fix Them
HTTPS misconfigurations, like expired certificates or HSTS errors, create serious security risks. Learn the most common issues and how to fix them quickly to protect your web assets.
Cybersecurity
Blog
How Do You Use the SIG Questionnaire for Better Third-Party Risk Assessment?
Learn how to use the SIG Questionnaire to accelerate vendor risk assessments, align with compliance frameworks, and reduce third-party cyber risk.
Tech Center
Blog
Top Free Network-Based Intrusion Detection Systems for Modern Enterprises
Free and open-source network intrusion detection systems (NIDS) can enhance visibility and threat detection.
Blog
What Is PII? How to Protect Personally Identifiable Information in 2025
Personally identifiable information (PII) remains a prime target for threat actors. Learn what qualifies as PII in 2025—and how to defend it.\r\n
Blog
Guide to Developing a Business Continuity Plan
Explore business continuity in cybersecurity. Learn how a continuity plan helps assess threats, reduce risk, and protect operations from attacks.
Blog
Safeguarding Against Subdomain Takeover
Learn what subdomain takeover is and how to prevent it with best practices and continuous monitoring.
メディア掲載
日本経済新聞: NECとKDDI、サイバー防衛でタッグ 国産技術で安保「黒子」に
Learn more in this resource.
Japanese
Blog
What Is a Cyber Threat? What Risk Leaders Need to Know
Learn what cyber threats are, how they work, and why recognizing them is essential to reducing organizational risk.\r\n
STRIKE
SecurityScorecard Advisory: Apache HTTP Server Improper Escaping of Output Vulnerability (CVE-2024-38475) Added to CISA KEV
SecurityScorecard Advisory: Apache HTTP Server Improper Escaping of Output Vulnerability (CVE-2024-38475) \r\n
STRIKE Alert
Blog
Assembling the Dream Team: Building a High-Performing Supply Chain Incident Response Team
This article explores the key elements of building a high-performing supply chain incident response team to effectively mitigate and respond to these threats.
Threat-Informed TPRM
Blog
Scorecarder Spotlight: Chandra Sekhar Betha
Our “Scorecarder Learning & Development Spotlight” series showcases our talented, driven employees, the incredible work they do, and their quest to continue their development as lifelong learners.
Scorecarder Spotlight
Data Sheet
Solution Brief: SecurityScorecard MAX
See how SecurityScorecard MAX strengthens operational resilience, enhances third-party risk management, and mitigates concentrated risk.
Blog
How Do You Back Up Business-Critical Data?
Building a Reliable Backup Strategy Against Cyberattacks and Disruptions Using Best Practices for Cyber Resilience
Enterprise Cyber Risk
MAX
Third-Party Risk Management
Ebook
The Definitive Guide to Building a Supply Chain Incident Response Team
Your organization’s security is only as strong as its weakest link – often found within the expanding network of third-party vendors. This eBook provides a practical blueprint for building a dedicated Supply Chain Incident Response Team to proactively address the escalating threat of supply chain cyberattacks.
Learn how to shift from a purely preventative TPRM strategy to a resilient posture that anticipates and effectively manages security incidents across your vendor ecosystem. We’ll guide you through:
Understanding the evolving threat landscape targeting supply chains.
Justifying the necessity of a focused incident response capability.
Defining the core functions and objectives of your team.
Identifying the essential skills and structuring your ideal team.
Developing actionable and supply chain-specific incident response plans.
Supply Chain Cyber Risk
Third-Party Risk Management
Threat-Informed TPRM
Resources
FBI Warns iPhone, Android Users—Do Not Reply To These Messages
Learn more in this resource.
STRIKE News
Blog
What Do You Do If Your Password Appears in a Data Leak?
7 Steps to Secure Your Digital Life After a Password Breach
Enterprise Cyber Risk
GRC
Phishing
Blog
What Is a Proxy Server? Understanding Security Risks and Corporate Use Cases
How Proxy Servers Work and Why They Matter in Enterprise Security
Third-Party Risk Management
Threat-Informed TPRM
Blog
Fines, Jail Time, and Criminal Charges for DDoS Attacks
Fines, Are DDoS Attacks Illegal? Find out the laws and penalties in this blog.
Security Ratings
Supply Chain Cyber Risk
Third-Party Risk Management
Press
BlinkOps and SecurityScorecard Announce Technical Alliance to Revolutionize Cybersecurity Automation and Risk Management
New York, NY — April 29, 2025 — BlinkOps, the leading AI-powered security automation platform, and SecurityScorecard, the creator of supply chain detection and response (SCDR) solutions, today announced a groundbreaking technical alliance designed to empower organizations with unparalleled visibility, automation, and control over their cybersecurity posture. This partnership integrates BlinkOps’ generative AI-driven automation capabilities with
Press
SecurityScorecard MAX Achieves Explosive 370% YoY Growth, Launches MAX Workstation to Enable Partner-Led Service Delivery
First-to-market supply chain detection and response solution expands to enable service delivery partners SAN FRANCISCO — RSA CONFERENCE 2025 — April 28, 2025 — SecurityScorecard today announced the launch of MAX Workstation, the company’s solution for service providers managing supply chain cyber risk for their clients. As AI changes the landscape for cybersecurity professionals, including
MAX
他社様のブログ
NRI セキュア: サイバー格付けがセキュリティ経営にもたらす価値と、導入前の注意点を徹底解説
Learn more in this resource.
Japanese