Click here to close now.

SYS-CON MEDIA Authors: Blue Box Blog, Carmen Gonzalez, Lori MacVittie, Plutora Blog, Roger Strukhoff

News Feed Item

Skybox Security Introduces Vulnerability Remediation Dashboard in Risk Control 7.0

Skybox Security, the leading provider of risk analytics for cyber security, launched Skybox Risk Control 7.0, a comprehensive vulnerability management solution. Highlighting the Risk Control 7.0 release is a new remediation dashboard, which provides a central view for IT security professionals to effectively monitor and track vulnerability remediation activities in large organizations. Today, hackers frequently exploit vulnerabilities in servers, desktops and network devices to breach information system defenses to launch attacks, spread viruses and malware and steal confidential data.

Skybox’s context-aware remediation approach allows IT practitioners to automatically convert volumes of vulnerability data into detailed remediation instructions, supporting an end-to-end vulnerability management process that is 50 times faster than traditional solutions. Skybox identifies concentrations of vulnerabilities by vendor, business unit, security bulletins, or by geographic location in a company, enabling organizations to reduce overall vulnerability levels quickly, with minimal effort. In addition, Skybox uses attack simulation and its comprehensive view of network topology to identify specific attack vectors against critical assets.

“Skybox Security allows security teams to address and remediate risks every single day,” said Gidi Cohen, CEO of Skybox Security. “Most enterprises take months to discover, prioritize and remediate vulnerabilities, and hackers take advantage of that time lapse. Using Skybox Risk Control for vulnerability management, our customers meet challenging internal requirements to deliver same-day identification and resolution of critical vulnerabilities. This is impossible to achieve using traditional vulnerability management approaches.”

Created for security managers who are responsible for taking action on found vulnerabilities, the remediation dashboard provides a centralized view to monitor and track the vulnerability remediation process against defined service level agreements (SLAs). Security metrics track resolution of vulnerabilities against goals, such as fixing high-priority vulnerabilities within a defined period of time, or achieving a target rate of found versus fixed vulnerabilities, and provide a breakdown of vulnerabilities that meet the SLA and those that do not.

The remediation dashboard guides daily remediation efforts by providing a prioritized list of vulnerabilities and presenting multiple remediation alternatives to block or mitigate known vulnerabilities, such as patching, IPS shielding, configuration changes, or a prioritized list of security bulletins that should be applied.

The remediation dashboard completes Risk Control’s three-step workflow to simplify vulnerability management for enterprise-scale organizations:

  • The Discovery Center provides a centralized view of the initial vulnerability assessment process, including quick access to vulnerability data gathered from third-party scanners or Skybox’s scanless Vulnerability Detector.
  • The Analytics Center uses sophisticated risk analytics and the Skybox Vulnerability Database to eliminate irrelevant vulnerability data and provide an accurate, prioritized picture of risk.
  • Finally, the Remediation Center, featuring the new vulnerability remediation dashboard, supports fast resolution to achieve desired security objectives.

Additional enhancements for Skybox’s vulnerability management solution, based on Risk Control, include Vulnerability Detector, providing scanless non-disruptive vulnerability detection at speeds of 100,000 hosts per hour. By comparison, the typical rate of a traditional active scanner is 250 hosts/hour.

Risk Control’s Vulnerability Detector supports Microsoft Windows, Linux, VMWare, Citrix, Apple Mac OS and various Unix operating systems; network devices from Cisco, Check Point, Juniper Networks, and F5; and popular enterprise end user applications such as web browsers, Microsoft Office, Adobe Flash Player, Adobe Reader, Skype, and Microsoft Lync.

With Skybox’s vulnerability management solution, a leading UK financial services team was able to take action on critical risks the same day the vulnerabilities were detected. And Repsol, a Spanish multinational oil and gas company, has been able to significantly reduce the number of false positives from 20 percent to less than 1 percent, allowing it to focus accurately on high-priority risks.

Skybox will be demonstrating the Risk Control 7.0 and the Remediation Center at RSA Conference USA 2014. For more information, please visit Booth 715, South Hall.

About Skybox Security, Inc.

Skybox Security, Inc. provides the most powerful risk analytics for cyber security, giving security management and operations the tools they need to eliminate attack vectors and safeguard business data and services. Skybox solutions provide a context-aware view of the network and risks that drives effective vulnerability and threat management, firewall management, and continuous compliance monitoring. Organizations in Financial ServicesGovernment, Energy, DefenseRetail, and Telecommunications rely on Skybox Security every day for automated, integrated security management solutions that lower risk exposure and optimize security management processes. For more information visit: www.skyboxsecurity.com.

NOTE: Skybox® Security is a registered trademark of Skybox Security Inc. All other registered and unregistered trademarks herein are the sole property of their respective owners. Product specifications subject to change at any time without prior notice. © 2014 Skybox Security, Inc. All rights reserved.

More Stories By Business Wire

Copyright © 2009 Business Wire. All rights reserved. Republication or redistribution of Business Wire content is expressly prohibited without the prior written consent of Business Wire. Business Wire shall not be liable for any errors or delays in the content, or for any actions taken in reliance thereon.

Latest Stories
Cloud and Big Data present unique dilemmas: embracing the benefits of these new technologies while maintaining the security of your organization's assets. When an outside party owns, controls and manages your infrastructure and computational resources, how can you be assured that sensitive data remains private and secure? How do you best protect data in mixed use cloud and big data infrastructure sets? Can you still satisfy the full range of reporting, compliance and regulatory requirements? In...
Between the compelling mockups and specs produced by your analysts and designers, and the resulting application built by your developers, there is a gulf where projects fail, costs spiral out of control, and applications fall short of requirements. In his session at DevOps Summit, Charles Kendrick, CTO and Chief Architect at Isomorphic Software, will present a new approach where business and development users collaborate – each using tools appropriate to their goals and expertise – to build mo...
Chuck Piluso will present a study of cloud adoption trends and the power and flexibility of IBM Power and Pureflex cloud solutions. Speaker Bio: Prior to Data Storage Corporation (DSC), Mr. Piluso founded North American Telecommunication Corporation, a facilities-based Competitive Local Exchange Carrier licensed by the Public Service Commission in 10 states, serving as the company's chairman and president from 1997 to 2000. Between 1990 and 1997, Mr. Piluso served as chairman & founder of ...
There are lots of challenges in IoT around secure, scalable and business friendly infrastructure for enterprises. For large corporations, IoT implementations are one of the top priorities of the decade. All industries are seeing a competitive need to sustain by investing in IoT initiatives. The value addition comes from improved customer service, innovative product and additional revenue streams. The data from these IP-connected devices can be leveraged for a variety of business applica...
To manage complex web services with lots of calls to the cloud, many businesses have invested in Application Performance Management (APM) and Network Performance Management (NPM) tools. Together APM and NPM tools are essential aids in improving a business's infrastructure required to support an effective web experience... but they are missing a critical component - Internet visibility. Internet connectivity has always played a role in customer access to web presence, but in the past few years u...
Working with Big Data is challenging, especially when decision makers depend on market insights and intelligence from your data but don't have quick access to it or find it unusable. In their session at 6th Big Data Expo, Ian Khan, Global Strategic Positioning & Brand Manager at Solgenia; Zel Bianco, President, CEO and Co-Founder of Interactive Edge of Solgenia; and Ermanno Bonifazi, CEO & Founder at Solgenia, discussed how a revolutionary cloud-based BI along with mobile analytics is already c...
The WebRTC Summit 2015 New York, to be held June 9-11, 2015, at the Javits Center in New York, NY, announces that its Call for Papers is open. Topics include all aspects of improving IT delivery by eliminating waste through automated business models leveraging cloud technologies. WebRTC Summit is co-located with 16th International Cloud Expo, @ThingsExpo, Big Data Expo, and DevOps Summit.
In this session we look at creating interactive communications via the web by adding messaging, file transfer, and group communication (group chat and audio/video conferencing) into the web experience. We will also discuss potential applications of this technology in areas including B2B, B2C, P2P, and gaming. Peter is Technical Director at Acision. He graduated from The University of Edinburgh in 2000 with a BSc (Hons) in Computer Science. After graduation Peter worked on a PSTN switch dev...
Recent technology advances in miniaturization has positioned the wearables as the pinnacle of technology convergence with the human body. We inquire if wearables are mere standard miniaturized devices extended with the connectivity and present our views on considerations like design, applications, performance, efficiency, interoperability, usage scenarios, human device interaction and consequent trade-offs enabling wearables to impart optimal value.
The Internet of Things Maturity Model (IoTMM) is a qualitative method to gauge the growth and increasing impact of IoT capabilities in an IT environment from both a business and technology perspective. In his session at @ThingsExpo, Tony Shan will first scan the IoT landscape and investigate the major challenges and barriers. The key areas of consideration are identified to get started with IoT journey. He will then pinpoint the need of a tool for effective IoT adoption and implementation, whic...
Shipping daily, injecting faults, and keeping an extremely high availability "without Ops"? Understand why NoOps does not mean no operations. Agile development methodologies require evolved operations to be successful. In his keynote at DevOps Summit, David Tesar, Microsoft Technical Evangelist on Microsoft Azure and DevOps, will discuss how Microsoft teams who have made huge progress with a DevOps transformation effectively utilize operations staff and how challenges were overcome. Regardless ...
Software is eating the world. Companies that were not previously in the technology space now find themselves competing with Google and Amazon on speed of innovation. As the innovation cycle accelerates, companies must embrace rapid and constant change to both applications and their infrastructure, and find a way to deliver speed and agility of development without sacrificing reliability or efficiency of operations. In her Day 2 Keynote DevOps Summit, Victoria Livschitz, CEO of Qubell, discussed...
Cloud computing started a technology revolution; now DevOps is driving that revolution forward. By enabling new approaches to service delivery, cloud and DevOps together are delivering even greater speed, agility, and efficiency. No wonder leading innovators are adopting DevOps and cloud together! In his session at DevOps Summit, Andi Mann, Vice President of Strategic Solutions at CA Technologies, explored the synergies in these two approaches, with practical tips, techniques, research data, wa...
SYS-CON Events announced today that AIC, a leading provider of OEM/ODM server and storage solutions, will exhibit at SYS-CON's 16th International Cloud Expo®, which will take place on June 9-11, 2015, at the Javits Center in New York City, NY. AIC is a leading provider of both standard OTS, off-the-shelf, and OEM/ODM server and storage solutions. With expert in-house design capabilities, validation, manufacturing and production, AIC's broad selection of products are highly flexible and are conf...
SYS-CON Events announced today that Vicom Computer Services, Inc., a provider of technology and service solutions, will exhibit at SYS-CON's 16th International Cloud Expo®, which will take place on June 9-11, 2015, at the Javits Center in New York City, NY. They are located at booth #427. Vicom Computer Services, Inc. is a progressive leader in the technology industry for over 30 years. Headquartered in the NY Metropolitan area. Vicom provides products and services based on today’s requirements...