Tufin adds network insights and business context to vulnerability scans to prioritize remediation and mitigation efforts

For over 15 years protecting some of world’s largest and most complex hybrid networks, we at Tufin have a special appreciation of how a given network configuration impacts an organization’s overall security posture. Today, we announced that we are combining this insight with the results of vulnerability scans to enable users to improve their security posture. By looking at vulnerability severity and CVSS scores through the lens of network access to critical assets, security teams can effectively prioritize remediation efforts, and successfully mitigate risk – and that’s where Tufin’s new Vulnerability Mitigation app can help.

Risk-based Remediation & Mitigation

The challenge with vulnerability scans has always been too many critical vulnerabilities are discovered and not enough resources are available to patch them. Organizations need a way to prioritize the vulnerabilities that should be patched first and find a way to mitigate the risk from other vulnerabilities until they can be fully addressed.

Tufin Vulnerability Mitigation app, integrated with leading vulnerability management solutions, including Tenable.io, Tenable.sc, Qualys VMDR, Rapid7 Nexpose, and Rapid7 InsightVM, provides risk-based network insights to help organizations efficiently prioritize remediation and mitigation efforts by enhancing vulnerability data with network insights. By combining vulnerability measures (severity and CVSS scores) with insights into how these vulnerabilities may be accessed and exploited via your network, admins have the context to identify and address vulnerabilities that pose the greatest threat to critical business assets.

The reality is that vulnerabilities with high CVSS scores aren’t necessarily the ones being exploited. For example, a medium-level vulnerability associated with a business asset having multiple access points may be used by an attacker to penetrate your network and move laterally through your network to access other high-value, sensitive assets. As a result, this vulnerability is more prone to exploit by attackers, and consequently, should be considered a high-level priority for remediation or mitigation.

How the Tufin Vulnerability Mitigation App Mitigates Risk

Once installed, the Tufin Vulnerability Mitigation app retrieves vulnerability scan results and displays them in Tufin’s vulnerability dashboard. To save you time and effort, and identify the riskiest vulnerabilities to your business, you can choose to start with high-value network segments first, the same segments/zones that you defined in Tufin SecureTrack.

For MSSPs or large organizations using more than one vulnerability management solution, you can consolidate multi-vendor scan results – all from a single dashboard.

For over 15 years protecting some of world’s largest and most complex hybrid networks, we at Tufin have a special appreciation of how a given network configuration impacts an organization’s overall security posture. Today, we announced that we are combining this insight with the results of vulnerability scans to enable users to improve their security posture. By looking at vulnerability severity and CVSS scores through the lens of network access to critical assets, security teams can effectively prioritize remediation efforts, and successfully mitigate risk – and that’s where Tufin’s new Vulnerability Mitigation app can help.

Risk-based Remediation & Mitigation

The challenge with vulnerability scans has always been too many critical vulnerabilities are discovered and not enough resources are available to patch them. Organizations need a way to prioritize the vulnerabilities that should be patched first and find a way to mitigate the risk from other vulnerabilities until they can be fully addressed.

Tufin Vulnerability Mitigation app, integrated with leading vulnerability management solutions, including Tenable.io, Tenable.sc, Qualys VMDR, Rapid7 Nexpose, and Rapid7 InsightVM, provides risk-based network insights to help organizations efficiently prioritize remediation and mitigation efforts by enhancing vulnerability data with network insights. By combining vulnerability measures (severity and CVSS scores) with insights into how these vulnerabilities may be accessed and exploited via your network, admins have the context to identify and address vulnerabilities that pose the greatest threat to critical business assets.

The reality is that vulnerabilities with high CVSS scores aren’t necessarily the ones being exploited. For example, a medium-level vulnerability associated with a business asset having multiple access points may be used by an attacker to penetrate your network and move laterally through your network to access other high-value, sensitive assets. As a result, this vulnerability is more prone to exploit by attackers, and consequently, should be considered a high-level priority for remediation or mitigation.

How the Tufin Vulnerability Mitigation App Mitigates Risk

Once installed, the Tufin Vulnerability Mitigation app retrieves vulnerability scan results and displays them in Tufin’s vulnerability dashboard. To save you time and effort, and identify the riskiest vulnerabilities to your business, you can choose to start with high-value network segments first, the same segments/zones that you defined in Tufin SecureTrack.

For MSSPs or large organizations using more than one vulnerability management solution, you can consolidate multi-vendor scan results – all from a single dashboard.


*** This is a Security Bloggers Network syndicated blog from Tufin - Cybersecurity & Agility with Network Security Policy Orchestration authored by Ofer Or. Read the original post at: https://www.tufin.com/node/3122