Resources

Cybersecurity white papers, data sheets, webinars, videos and more

Resource Library

8 Best Practices for Securing the Internet of Things (IoT)

Blog

8 Best Practices for Securing the Internet of Things (IoT)
The Internet of Things (IoT) is an interconnected network of devices. Discover how your organization can improve your overall IoT security with these best practices.
Tech Center
What is Mobile Forensics? Definition, Processes, & Examples

Blog

What is Mobile Forensics? Definition, Processes, & Examples
The difference between a contained mobile security incident and a company-ending breach often comes down to one thing: how quickly you can get answers. Mobile device forensics techniques proven by every law enforcement agency worldwide can cut your incident response time in… Read More
Tech Center
How To Increase The Value Of Your GRC Platform With Risk Identification And Quantification

Research

How To Increase The Value Of Your GRC Platform With Risk Identification And Quantification
Learn more in this resource.
Attack Surface Management
Enterprise Cyber Risk
Security Ratings
SecurityScorecard and Conference of State Bank Supervisors Partner to Enhance State Financial Regulators’ Cybersecurity Oversight

Press

SecurityScorecard and Conference of State Bank Supervisors Partner to Enhance State Financial Regulators’ Cybersecurity Oversight
SecurityScorecard provides CSBS with support for state financial regulators through insights on cybersecurity health of state financial institutions and access to the leading cybersecurity ratings technology.
Public Sector
SecurityScorecard & ServiceNow

Data Sheet

SecurityScorecard & ServiceNow
Through the integration with ServiceNow Vendor Risk Management, SecurityScorecard vendor security risk ratings are automatically updated within ServiceNow, reflecting the evolving cybersecurity posture of business partners in your third-party ecosystem. Instantly Rate and Understand the Cyber Security Risk of Any Vendor in Your Portfolio.
Supply Chain Cyber Risk
Top 5 Incident Response Best Practices You Should Follow

Blog

Top 5 Incident Response Best Practices You Should Follow
Incident response refers to the collection of active measures taken during a breach in order to halt the attack and mitigate the damage. In this post, we discuss incident response and a handful of best practices to follow.
Tech Center
What is Digital Forensics? Everything You Need to Know: How It Supports Cybersecurity, Incident Response, and Compliance

Blog

What is Digital Forensics? Everything You Need to Know: How It Supports Cybersecurity, Incident Response, and Compliance
Digital forensics is a branch of forensics that focuses on finding, preserving, documenting, and analyzing any criminal evidence stored on digital devices.
Tech Center
Healthcare Software Company Keeps Patient Data Safe With SecurityScorecard

Case Studies

Healthcare Software Company Keeps Patient Data Safe With SecurityScorecard
Access uses SecurityScorecard to gain full visibility into the organization’s cyber risk, allowing the company to quickly identify and remediate vulnerabilities so that hospitals and their patient data stay safe.
Healthcare
Incident Response vs. Disaster Recovery: Key Differences

Blog

Incident Response vs. Disaster Recovery: Key Differences
While they both fight the same threats to protect your business from a security threat and breach, incident response vs. disaster recovery plans have their differences. Learn more.
Tech Center
What is Vendor Tiering? Tips to Improve Your Vendor Risk Management

Blog

What is Vendor Tiering? Tips to Improve Your Vendor Risk Management
Vendor tiering is the process of identifying, analyzing, and classifying vendors based on their security risks. Learn how your business can improve your vendor risk management.
Tech Center
The Value of Communicating Risk Meaningfully Across the Business

Blog

The Value of Communicating Risk Meaningfully Across the Business
While cybersecurity might be under the umbrella of IT, make no mistake: a breach will impact the entire business, making it the entire organization’s responsibility to be able to understand and take action on risk.\r\n\r\nYour organization needs to have a holistic view of risk that can enable technical and business conversations about cyber risk. By understanding not just the nuts and bolts of an exploit, but the impact it can have on employees, customers, and revenue, security experts and business leaders alike can then prioritize actions, budgets, and initiatives.
Tech Center
Cyentia Fast and Frivolous

Research

Cyentia Fast and Frivolous
In many ways, cybersecurity is a race. We race against the actions of malicious adversaries. We race to shore up defenses after the latest headlines of impending cyber doom. We race to fill staffing gaps, streamline processes, and keep up with the latest technologies. We race to assess an ever-growing… Read More
A Detailed Analysis Of The Last Version Of REvil Ransomware

Research

A Detailed Analysis Of The Last Version Of REvil Ransomware
Learn more in this resource.
Cyentia Fast And Frivolous

Research

Cyentia Fast And Frivolous
Pacing Remediation of Internet-Facing Vulnerabilities
日本経済新聞: 大企業のサイバー対策、4割に危険性 車や機械目立つ

メディア掲載

日本経済新聞: 大企業のサイバー対策、4割に危険性 車や機械目立つ
「重要インフラ」に対する脅威が増す中、防御力を強化し、攻撃を受けても速やかに回復できる「サイバーレジリエンス」の重要性が高まっている。本連載は、官民連携時代のセキュリティリーダーシップと重要インフラ保護について解説する。
Japanese
5 Ways to Effectively Prevent Data Leakage

Blog

5 Ways to Effectively Prevent Data Leakage
Explore how you can stop data leakage with a solution that identifies and combats vulnerabilities inherent within your business. Learn more.
Tech Center
KillNet Utilizes CC-Attack: A Quick & Dirty DDoS Method

Blog

KillNet Utilizes CC-Attack: A Quick & Dirty DDoS Method
SecurityScorecard’s analysis of CC-Attack reveals the script automates the process of using open proxy servers to relay attacks.
Cyber Threat Intelligence
STRIKE Team
SecurityScorecard and OneTrust Solution Brief

Data Sheet

SecurityScorecard and OneTrust Solution Brief
Automate and scale your third-party risk management with SecurityScorecard and OneTrust
Supply Chain Cyber Risk
A Deep Dive into Avos Locker Ransomware

Research

A Deep Dive into Avos Locker Ransomware
AvosLocker is a ransomware-as-a-service (RaaS) group that appeared in 2021. The malware can run with one of the following parameters: “–help”, “–path”, “–disabledrives”, “–hide”, “–threads”, “–enablesmb”, “–brutesmb”, and “–nomutex.” The ransomware kills a list of targeted processes, deletes all Volume Shadow Copies using two commands, and clears all Windows event logs. The binary can target the logical drives as well as network shares by specifying proper arguments.
New York Department of Financial Services Establishes First-of-its-Kind Use Case with SecurityScorecard to Modernize Regulatory Oversight

Press

New York Department of Financial Services Establishes First-of-its-Kind Use Case with SecurityScorecard to Modernize Regulatory Oversight
SecurityScorecard, the global leader in cybersecurity ratings, is now working with the New York State Department of Financial Services (DFS) to further support the department’s first-in-the-nation cybersecurity efforts to modernize its supervision process.
SecurityScorecard Launches Cyber Risk Quantification Portfolio Providing Customers Various Models to Conduct Security Cost-Benefit Analysis

Press

SecurityScorecard Launches Cyber Risk Quantification Portfolio Providing Customers Various Models to Conduct Security Cost-Benefit Analysis
SecurityScorecard introduced its Cyber Risk Quantification (CRQ) capabilities, enabling customers to understand cyber risk in financial terms, bring cyber risk into holistic business risk analysis, and assist in the cost-benefit analysis of cyber investment options.