Facebook Google Plus Twitter LinkedIn YouTube RSS 功能表 搜尋 資源 - 部落格資源-線上研討會資源-報告資源 - 活動icons_066 icons_067icons_068icons_069icons_070

現代化攻擊面

所有組織不分大小,都熱切推動數位轉型,以建立新的商業模式和商業生態系統、供應新的產品和服務,並且在數位經濟時代更有效地運作。新的數位運算平台與發展的轉型,諸如雲端、行動、SaaS 與 DevOps,讓這些概念可化為日常運用。所有類型的實體裝置與系統,從企業會議系統到輸電網路,現在都已連網且可程式化,為數位轉型帶來更多機會。

有些人認為這些數位科技就是未來。但真相是,未來就在這裡、就在現在。在 2019 年前,將有超過 90 億的 IoT 裝置部署於企業內,且有超過 90% 的組織已在目前的雲端執行應用程式。

POV 外部(第一份草案)

雖然數位轉型為全世界開啟新的契機,這也成了您要防衛的新的網路攻擊面。

而且這個部分還在持續擴大。

Cyber Exposure 缺口

The tools and approaches organizations are using to understand cyber risk don’t even work in the old world of client/server, on-premises data centers and a linear software development lifecycle where there is less complexity and more control over security.資產不再只是一台筆記型電腦或伺服器。現在的資產綜合了數位運算平台和資產,構成現代化的攻擊面,其中的資產本身和相關聯的弱點都在持續縮放和演化,就像活生生的生物一樣。

Cyber Exposure Gap Graphic

彈性攻擊面也讓組織真正瞭解其特定時間 Cyber Exposure 的能力產生重大缺口。我們稱此為 Cyber Exposure 缺口。

組織試圖用幾種方式關閉 Cyber Exposure 缺口

鎖頭圖示

Throw 100s of security tools at the problem to protect from the ‘threat of the week’, creating siloed visibility, management overhead and reactive firefighting.

CMDB 圖示

Rely on a CMDB to get visibility into asset configuration, but 85 percent of these projects fail in part due to stale data and they weren’t built to discover and map today’s modern assets.

警告圖示

Take a ‘scan the network’ approach to identify vulnerabilities.While this is foundational to understanding your cyber exposure gap, the old “one size fits all” techniques and tools haven’t adapted for the modern attack surface.

若要針對現代化攻擊面關閉 Cyber Exposure 缺口,則沒有任何一招有足夠的洞察能力,也無法專門用於解決問題。

直到現在。

歡迎來到現代 Cyber Exposure 的時代

Cyber Exposure is an emerging discipline for managing and measuring cybersecurity risk in the digital era.Cyber Exposure transforms security from static and siloed visibility into cyber risk to dynamic and holistic visibility across the modern attack surface.Cyber Exposure translates raw vulnerability data into business insights to help security teams prioritize and focus remediation based on business risk.Cyber Exposure provides executives and boards of directors with a way to objectively measure cyber risk to help guide strategic decision making.Just as other functions have a system of record - including ITSM for IT and CRM for Sales - Cyber Exposure solutions will provide Security with a system of record to help them effectively manage and measure cyber risk.

Cyber Exposure builds on the roots of Vulnerability Management, designed for traditional assets such as IT endpoints and on-premises infrastructure, moving from identifying bugs and misconfigurations and expanding to the following:

Live discovery of any digital asset across any computing environment

持續監控風險可視化,評估資產安全或暴露之處,並評估暴露程度

Prioritization of remediation based on business risk

Benchmarking of cyber exposure compared to industry peers and best in class organizations

Measurement of Cyber Exposure as a key risk metric for strategic decision support

Addressing the full
Cyber Exposure 生命週期

發現

Identify and map every asset across any computing environment

評估

Understand the cyber exposure of all assets, including vulnerabilities, misconfigurations and other security health indicators

分析

Understand exposures in context, to prioritize remediation based on asset criticality, threat context and vulnerability severity

修復

Prioritize which exposures to fix first, if at all, and apply the appropriate remediation technique

量度

Measure and benchmark cyber exposure to make better business and technology decisions

每個組織,不分大小,
will be able to confidently answer four questions at all times:

1
哪些地方有網路曝險問題?
2
哪些地方風險較高,應優先處理?
3
Are we reducing our exposure over time?
4
How do we compare to our peers?

Learn more about Tenable.io Lumin, the new Tenable solution that for the first time empowers CISOs to confidently visualize, analyze and measure cyber risk.With the industry's first Cyber Exposure command center, Tenable is arming CISOs to quantify and benchmark their Cyber Exposure.

深入瞭解

如果您盲目飛進寬廣的 Cyber Exposure 缺口中…
…這一點也不安全。

加入這個行動。

Tenable 奠基於創新。我們從 Nessus 開始,建立起全球部署最廣泛的弱點評估解決方案。強力但具備彈性,可適應今日現代化資產特有的要求。現在藉由 Tenable.io,我們提供了世上第一個 Cyber Exposure 平台,為任何運算平台上的任何資產提供能見度。而我們才剛開始…

探索我們的產品 閱讀部落格貼文

免費試用 立即購買

試用 Tenable.io 弱點風險管理

免費試用 60 天

享受對現代化、雲端基弱點風險管理平台的完全使用權限,使您能夠查看和追蹤您的所有資產,且具有無與倫比的準確性。立即註冊並在 60 秒內進行第一次掃描。

購買 Tenable.io 弱點風險管理

享受對現代化、雲端基弱點風險管理平台的完全使用權限,使您能夠查看和追蹤您的所有資產,且具有無與倫比的準確性。立即購買年度訂閱。

65 資產

免費試用 Nessus Professional

免費試用 7 天

Nessus® 是現今市場上最全面的弱點掃描軟體。Nessus Professional 將幫助自動化弱點掃描過程,在您的合規性週期內節省時間,並讓您的 IT 團隊參與其中。