Resources
Cybersecurity white papers, data sheets, webinars, videos and more
Resource Library
Blog
National Vulnerability Database (NVD) leaves thousands of vulnerabilities without analysis data
The Common Vulnerabilities and Exposures (CVE) List and National Vulnerability Database (NVD) can no longer be considered a single central source of vulnerability truth\r\n
Press
最新調査:攻撃者はサードパーティの脆弱性を悪用してランサムウェア攻撃のステルス性、スピード、インパクトを最大化
Learn more in this resource.
Japanese
メディア掲載
日本経済新聞: 日本のサイバー被害、半数が「取引先経由」 米民間調査
企業のサイバー被害に関する調査をまとめた。
Japanese
Blog
Compliance, collaboration, and communication: The benefits of NIST CSF 2.0
The new NIST CSF 2.0 empowers cybersecurity leaders to proactively address evolving threats and safeguard their organization’s assets, operations, and reputation.
Public Sector
Blog
What is Security Information and Event Management (SIEM)?
Security Information and Event Management (SIEM) has emerged as a critical component of modern cybersecurity strategies. This blog post delves into what SIEM is, its core functionalities, benefits, and why it’s essential for organizations of all sizes.\r\n
Tech Center
Research
Deutschlands Top 100 Unternehmen: Bericht zu Cybersicherheitsbedrohungen
SecurityScorecard veröffentlichte eine umfassende Analyse der Cybersicherheitslandschaft der 100 größten Unternehmen in Deutschland.
Unter Verwendung des weltweit größten proprietären Risiko- und Bedrohungsdatensatzes analysierte SecurityScorecard Cybersicherheitsverstöße in den 100 größten Unternehmen Deutschlands.
Hauptergebnisse:
94% der Unternehmen hatten einen Verstoß in ihrem Drittanbieter-Ökosystem
44% der Top 25 Unternehmen haben einen Scorewert von C oder niedriger
57% des Kommunikationssektors hatten eine Bewertung von C oder niedriger
34% der Unternehmen haben eine Bewertung von C oder niedriger
Nur 65% der Top 100 Unternehmen in Deutschland haben eine Bewertung von A oder B
Blog
Cybersecurity leadership in an era of public-private partnerships
Learn about the shared responsibility between public and private organizations in combating cyber threats.
Public Sector
Webinars
The Founders’ Take: Strategies for Start-Ups & Scaling Up
Learn more in this resource.
Executive Viewpoint
Blog
RSA 2024: The Art of Possible
Get a recap of SecurityScorecard’s trip to RSA 2024!
Blog
SecurityScorecard and Intel: Digging Past the Surface for Enhanced Protection
Explore how SecurityScorecard and Intel can jointly help organizations improve their security posture and controls.
Blog
Using Metrics that Matter to Protect Critical Infrastructure
Critical infrastructure owners and operators face significant challenges with technology, staff resources, and expertise to better manage cyber resilience.
Public Sector
Security Ratings
メディア掲載
ニッキン: セキュリティースコアカード、サイバーリスク即時評価 「第三者」監視で関心高く
SecurityScorecardのサイバー攻撃リスク評価サービスを利用する金融機関が増えている。
Japanese
Press
世界のサードパーティサイバーセキュリティ侵害に関するレポートを発表
Learn more in this resource.
Japanese
動画
SecurityScorecard NVC提供サービスの紹介
SecurityScorecardに関連する、NVCが提供中のサービスについて解説します。
Japanese
Press
SecurityScorecard Wins Multiple Global InfoSec Awards During RSA Conference 2024
SecurityScorecard is the recipient of four Global InfoSec Awards, honoring the most innovative and forward-thinking cybersecurity solutions.
メディア掲載
ITmedia エンタープライズ: S&P 500企業の半数以上が個人情報の流出を経験
SecurityScorecardはS&P 500企業を対象とした脅威脅威調査を発表。
Japanese
Research
Concentrated Cyber Risk in a Global Economy
With knowledge contributions from McKinsey & Company, this threat research uncovers an extreme concentration of cyber risk that poses serious threats to national security and global economies. The research also details a surge in adversaries exploiting third-party vulnerabilities to maximize the stealth, speed, and impact of supply chain cyberattacks.
Other key findings include:
150 companies account for 90% of the technology products and services across the global attack surface.
41% of those companies had evidence of at least one compromised device in the past year.
11% had evidence of a ransomware infection in the past year.
62% of the global external attack surface is concentrated in the products and services of just 15 companies.
The top 15 third parties have below-average cybersecurity risk ratings – indicating a higher likelihood of breach.
Learn more about concentrated cyber risk and how to boost your organization’s resilience.
Supply Chain Cyber Risk
Blog
Examining the Concentration of Cyber Risk: How supply chains and global economies can adapt
This research points to an extreme concentration of cyber risk in just 15 vendors worldwide, while also detailing a surge in adversaries exploiting third-party vulnerabilities.
Third-Party Risk Management
Press
2024 SecurityScorecard Research: Adversaries Exploit Third-Party Vulnerabilities to Maximize the Stealth, Speed, and Impact of Ransomware Attacks
SecurityScorecard announced findings from its 2024 Redefining Resilience: Concentrated Cyber Risk in a Global Economy Research, in association with McKinsey & Company. \r\n\r\nThe threat research uncovers an extreme concentration of cyber risk in just 15 vendors, posing serious threats to national security and global economies. The research also details a surge in adversaries exploiting third-party vulnerabilities to maximize the stealth, speed, and impact of supply chain cyber attacks.
Supply Chain Cyber Risk
Webinars
Implementing the NIST Cybersecurity Framework 2.0 with Confidence
Learn more in this resource.
Executive Viewpoint
Services
事例
株式会社三菱UFJフィナンシャル・グループ 様
NRIセキュアテクノロジーズ株式会社による導入事例
Japanese