Resources
Cybersecurity white papers, data sheets, webinars, videos and more
Resource Library
メディア掲載
ZDNET: 重要インフラの保護における教訓と対策、業界例
近年急速に進展するデジタル化に伴い、サイバーセキュリティへの脅威が急増しています。
Japanese
Press
「小売業界における脅威インテリジェンスレポート」を発表
Learn more in this resource.
Japanese
Blog
2025 Security Predictions: The Forces Reshaping Cybersecurity
What worked in 2024 may not protect you in 2025. Our experts outline what to expect and highlight hidden vulnerabilities to address to keep your company safe from attackers here.
Executive Viewpoint
Supply Chain Cyber Risk
Third-Party Risk Management
Webinars
Haunting Healthcare: Unmask Vulnerabilities and Banish Supply Chain Risks
Learn about the latest cyber risks impacting the healthcare sector. We’ll discuss vulnerabilities, potential threats, and effective strategies to protect sensitive data and strengthen your organization’s security posture.
Healthcare
Third-Party Risk Management
Threat-Informed TPRM
Ebook
Buyer’s Guide: Supply Chain Detection and Response for Financial Services
Supply chain risks have grown in complexity and impact, yet most financial services organizations are struggling to operationalize this aspect of their security programs.
Supply Chain Detection and Response (SCDR) has emerged as a category of solutions for operationalizing the cybersecurity of your organization’s vendors or partners. It’s a transformative technology that enables third-party risk management teams to evolve into supply chain incident responders.
This guide helps you make a more informed decision about evaluating the purchase of an SCDR solution. Key topics include:
What is Supply Chain Detection and Response
How you can justify an SCDR investment and expected benefits
How to estimate the ROI you can realize by adopting SCDR
Evaluating and implementing SCDR at your organization
Financial Services
Third-Party Risk Management
Threat-Informed TPRM
Ebook
Buyer’s Guide: Supply Chain Detection and Response for Healthcare
Supply chain risks have grown in complexity and impact, yet most healthcare organizations are struggling to operationalize this aspect of their security programs.
Supply Chain Detection and Response (SCDR) has emerged as a category of solutions for operationalizing the cybersecurity of your organization’s vendors or partners. It’s a transformative technology that enables third-party risk management teams to evolve into supply chain incident responders.
This guide helps you make a more informed decision about evaluating the purchase of an SCDR solution. Key topics include:
What is Supply Chain Detection and Response
How you can justify an SCDR investment and expected benefits
How to estimate the ROI you can realize by adopting SCDR
Evaluating and implementing SCDR at your organization
Healthcare
Third-Party Risk Management
Threat-Informed TPRM
Ebook
Buyer’s Guide: Supply Chain Detection and Response
Supply chain risks have grown in complexity and impact, yet most organizations are struggling to operationalize this aspect of their security programs.
Supply Chain Detection and Response (SCDR) has emerged as a category of solutions for operationalizing the cybersecurity of your organization’s vendors or partners. It’s a transformative technology that enables third-party risk management teams to evolve into supply chain incident responders.
This guide helps you make a more informed decision about evaluating the purchase of an SCDR solution. Key topics include:
What is Supply Chain Detection and Response
How you can justify an SCDR investment and expected benefits
How to estimate the ROI you can realize by adopting SCDR
Evaluating and implementing SCDR at your organization
Third-Party Risk Management
Threat-Informed TPRM
メディア掲載
EnterpriseZine: 国内データ侵害の4割がサードパーティー由来の攻撃に起因
SecurityScorecardは、「日本におけるサードパーティー由来のサイバーセキュリティ侵害に関するレポート」を発表した。
Japanese
Webinars
TPRM Meets SIRM – Why Both Matter
Learn more in this resource.
メディア掲載
ZDNET: 日本企業のデータ侵害、サードパーティーに由来する割合が高い
企業向けサイバーセキュリティ分析を手掛けるSecurityScorecardは、日本企業では子会社や調達先といったサードパーティーに由来するデータ侵害の割合が高いとする分析結果を発表した。
Japanese
Press
日本におけるサードパーティ由来のサイバーセキュリティ侵害に関するレポートを発表
近年、日本におけるサードパーティを介したサイバー攻撃の割合は、世界平均を大幅に上回っています。本レポートでは、2024年春に発表されたグローバルサードパーティ侵害レポートの分析を基に、日本特有のリスク要因を詳しく調査しました。
Japanese
Research Reports
日本におけるサードパーティサイバーリスクの現状
近年、日本におけるサードパーティを介したサイバー攻撃の割合は、世界平均を大幅に上回っています。本レポートでは、2024年春に発表されたグローバルサードパーティ侵害レポートの分析を基に、日本特有のリスク要因を詳しく調査しました。
このレポートでは以下のポイントを中心に解説しています。
日本でのサードパーティ攻撃経路による侵害の特性と原因
各業界におけるサードパーティリスクの分布
国家支援型攻撃グループの動向と日本における影響
リスク管理を強化するための具体的な推奨事項
製造、自動車、テクノロジー業界など、日本の主要産業における課題を明らかにし、サイバーリスク管理の向上に役立つ洞察を提供します。
レポートの完全版をダウンロードして、詳細なデータと分析をご覧ください。
Japanese
Press
SecurityScorecard Threat Intel Reveals Technology Products as Leading Source of Third-Party Breaches in Japan
SecurityScorecard Threat Intel Reveals Technology Products as Leading Source of Third-Party Breaches in Japan\r\n
Blog
Scorecarder Spotlight: Fabio da Cruz Maciel
Our series “Scorecarder Spotlight” showcases our talented employees and the incredible work they do. Meet Fabio da Cruz Maciel!
Research
The Third-Party Cyber Risk Landscape of Japan
This comprehensive report provides a deep dive into third-party data breaches and third-party cyber risk in Japan. The goal is to provide third-party risk management (TPRM) teams inside and outside Japan with findings that can help them set clearer priorities for the vetting of vendors and other third parties.
Key findings include:
Japan still has a high third-party breach rate (41%): This percentage is somewhat lower than what the global third-party breaches report noted for Japan (48%), probably due to a larger sample size diluting this extreme outlier. 41% is still quite high.
The Japanese industries with the most numerous or frequent third-party breaches include: Manufacturing, Automotive, and Construction (MAC); Technology, Media, and Telecommunications (TMT); and Retail & Hospitality (RH). MAC is a big part of the Japanese economy, whereas TMT and RH have more third-party breaches in particular.
Third-party technology products and services are the top causes of Japan’s third-party breaches (58%): This finding fits global trends, but the percentage of Japan’s third-party breaches attributable to third-party technology is somewhat lower.
Subsidiaries and acquisitions of Japanese companies, primarily overseas, are the other main cause of Japan’s third-party breaches (33%): This risk factor is not unique to Japan but seems to contribute to the country’s high rate of third-party breaches.
Top threats to Japan include ransomware attacks and state-sponsored attacks from Chinese and North Korean groups. While state- sponsored attacks make up a smaller share compared to ransomware, they still account for a significant number of breaches: Third-party attack vectors facilitate attacks on the often harder targets that state-sponsored groups pursue by finding weaknesses in their less secure supply chains.
Download this report to understand the specific risks in Japan.
Research
The Middle East’s Top 100 Companies: Cybersecurity Threat Report
Download the Report Today!This report analyzes the cybersecurity of the top 100 companies in the Middle East by market capitalization. Through comprehensive analysis of their attack surface and reported breaches, SecurityScorecard data scientists uncovered several notable findings concerning third-party risk in the Middle EastKey findings include:
Only 2% of Middle Eastern companies reported a direct breach in the past year, compared to 18% in Europe.
84% of Middle Eastern companies have a breach in their third-party ecosystem, significantly lower than Europe’s 98%.
Telecommunications is the weakest sector, with 86% of companies rated C or lower.
Utilities is the most secure sector, with no companies scoring a C rating or lower and no direct breaches.
To learn more, download the report today.
Press
SecurityScorecard Threat Intel Report: 97% of Top U.S. Retailers Experienced a Third-Party Breach
New report highlights vulnerabilities in retail sector as consumers prepare for busiest shopping season of the year NEW YORK – November 20, 2024 – SecurityScorecard today released new research revealing that 97% of the top 100 U.S. retailers experienced a third-party data breach in the past year, exposing significant vulnerabilities just as consumers prepare for
Webinars
Secure Your Supply Chain: Expanding Your Risk Horizon Beyond Cybersecurity
Learn more in this resource.
Supply Chain Cyber Risk
Third-Party Risk Management
Threat-Informed TPRM
Blog
Vendor Risk Management: The Definitive Guide in 2025
Learn how effective vendor risk management protects your business from cybersecurity threats, compliance failures, and operational disruptions.
Blog
What Is Cyber Risk Management?
Learn what cyber risk management is and why it’s essential for protecting digital assets, reducing threats, and ensuring business resilience.
Blog
A Day in the Life of a CISO: Tackling a Major Vulnerability with Precision
A Day in the Life of a CISO: Tackling a Major Vulnerability with Precision