Exploited unpatched vulnerabilities are the main root explanation for profitable assaults, as reported in Sophos’ 2024 Ransomware Report.
The trendy assault floor has expanded past conventional on-premises IT boundaries, with organizations working often unknown numbers of exterior and internet-facing property which can be unpatched or below protected, leaving them weak to cyberattackers.
Given this urgent want, we’re excited to introduce Sophos Managed Risk, powered by Tenable. This new service permits organizations to search out and get rid of blind spots and keep forward of potential assaults by clearly understanding and prioritizing the very best threat exposures, with skilled steering from Sophos’ devoted workforce.
Sophos Managed Danger delivers:
- Assault floor visibility
The trendy assault floor continues to develop past the borders of conventional IT, and most organizations now have internet-facing property they don’t notice they personal, offering straightforward targets for menace actors. Sophos Managed Danger discovers the group’s internet-facing property and analyzes their exterior assault floor. - Steady monitoring
In-house IT and safety groups might lack the deep data and expertise of the exploitation panorama wanted to totally perceive the safety posture of their group’s assault floor. Sophos Managed Danger supplies skilled steering and helps set remediation priorities. - Danger-based vulnerability prioritization
New vulnerabilities are found quicker than most organizations can repair them. Understanding which of them are related and during which order to patch them is a major problem. Sophos Managed Danger identifies and prioritizes exposures utilizing intensive vulnerability protection and risk-based prioritization expertise from Tenable. - Proactive notification of high-risk exposures
Attackers search for weaknesses within the setting lengthy earlier than organizations know they’re there. Figuring out high-risk exposures rapidly is essential. Sophos Managed Danger supplies proactive notification when new vital vulnerabilities are found that have an effect on the group’s property.
“One of many largest challenges organizations face when bettering their safety posture is prioritizing what to deal with first. The sort of steering helps remedy that challenge and reduces the workload for safety groups tasked with tackling vulnerability and publicity administration,” stated Craig Robinson, analysis vp of Safety Companies, IDC. “Options akin to Sophos Managed Danger generally is a differentiator by enabling overwhelmed groups to take a extra holistic method to steady monitoring and menace administration.”
The Sophos-Tenable Alliance
Sophos Managed Danger combines industry-leading expertise from Tenable with menace experience from Sophos, delivered as a proactive assault floor administration service. This distinctive partnership brings collectively two extremely revered cybersecurity market leaders to ship superior safety outcomes for purchasers and companions.
“Sophos and Tenable are two {industry} safety leaders coming collectively to deal with pressing, pervasive safety challenges that organizations repeatedly battle to regulate. We will now assist organizations determine and prioritize the remediation of vulnerabilities in exterior property, gadgets and software program which can be typically neglected. It’s vital that organizations handle these publicity dangers, as a result of unattended, they solely result in extra expensive and time-consuming points and are sometimes the foundation causes of serious breaches,” stated Rob Harrison, senior vp for endpoint and safety operations product administration at Sophos. “We all know from Sophos’ worldwide survey information that 32% of ransomware assaults begin with an unpatched vulnerability and that these assaults are the costliest to remediate. The best safety layers to forestall these points embody an energetic method to bettering safety postures by minimizing the probabilities of a breach with Sophos Managed Danger, Sophos Endpoint, and 24×7 Sophos MDR protection.”
“Whereas the newest zero day might dominate the headlines, the largest menace to organizations, by a big margin, remains to be recognized vulnerabilities – or vulnerabilities for which patches are available,” stated Greg Goetz, vp of worldwide strategic companions and MSSP, Tenable. “A successful method contains risk-based prioritization with context-driven analytics to proactively handle exposures earlier than they turn out to be an issue. Sophos Managed Danger, powered by the Tenable One Publicity Administration Platform, delivers outsourced preventive threat administration, enabling organizations to anticipate assaults and cut back cyber threat.”
Collaborates with the world’s most trusted MDR service
Sophos Managed Danger is offered as an prolonged service with Sophos MDR, which already protects greater than 21,000 organizations globally. The devoted Sophos Managed Danger workforce is Tenable-certified and works intently with Sophos MDR to share important details about zero-days, recognized vulnerabilities and publicity dangers to evaluate and examine probably exploited environments. Organizations profit by means of common interplay, together with scheduled conferences with Sophos specialists to overview current discoveries, insights into the present menace panorama, and proposals for remediation and prioritizing actions.
For instance, when Sophos discovers a brand new high-risk zero-day vulnerability that might depart a corporation uncovered, Sophos Managed Danger scans their property for the opportunity of an exploit and proactively notifies the client. Organizations can join with the Sophos Managed Danger workforce and conveniently handle vulnerability escalation circumstances alongside MDR investigations in a single unified Sophos console.
Accessible quickly
With Sophos Managed Danger specialists offering insights into assault floor vulnerabilities, organizations of all sizes can cut back cyber threat, speed up their patching applications, and enhance insurability. The brand new service will probably be accessible on the finish of April 2024.
To study extra about Sophos Managed Danger and the way it can assist you, visit our website or converse with a safety skilled right this moment.