Vulnerability Management in the Age of the Incident
This RiskSense Best Practices Webinar will dive into how organizations can reduce incident response costs with proactive vulnerability management. Security patches are an expensive undertaking for an organization, however the positive impacts outweigh the negative. This webinar will provide a framework for you to help make the case for fast patching, remediation, and improved security. We will provide tools, techniques, and processes to reduce the number of security incidents at your organization, and save a substantial amount of money.
RecordedFeb 5 201827 mins
Your place is confirmed, we'll send you email reminders
Learn how validated vulnerability information to prioritized remediation and validation can be accelerated to close the loop faster on security risk. We'll look at the complexities that stand in the way and how to address them through high-fidelity risk-based vulnerability management.
Srinivas Mukkamala, CEO & John Dasher, VP Products & Marketing
A discussion on Risk-Based Application Security with RiskSense CEO & Co-Founder Srinivas Mukkamala. We’ll discuss how web applications have become a leading attack vector, the state of software security today and how application security tools are converging, and of course, how a risk-based approach to dealing with application security is the best and most cost-effective approach going forward.
Srinivas Mukkamala, CEO, John Dasher, VP Products & Marketing
Understanding the threat impact of your application vulnerabilities means you know what’s really important and what should be prioritized. Knowing what actions to take for both the applications and their infrastructure makes for a more compelling value proposition for organizations. Security postures improve, security debt reduced, and the entire process is transparently more cost-effective.
John Dasher, VP of Product Marketing & Wade Williamson, RiskSense Analyst
Stay informed on how your framework development of choice can elevate your threat exposure. We discuss:
- Compounding layers of vulnerabilities within common frameworks
- Vendors with the most weaponized vulnerabilities and the predictability over-time
- Input validation rise to the top weaponized type of vulnerability
Internet-facing assets and applications are more important than ever to keep up to date. RiskSense continues to deliver threat and vulnerability research to help enterprise organizations know their next move against cyber risk.
Srinivas Mukkamala, CEO, John Dasher, VP Products & Marketing
The RiskSense Ransomware Assessment Program evaluates ransomware susceptibility to show you exactly where you have exposure. This webinar will give you a view of the RiskSense Ransomware Dashboard a key aspect of our new service. RiskSense performs expert ransomware-focused penetration testing and regular authenticated vulnerability scans, and correlates that data with rich threat intelligence to identify and prioritize the vulnerabilities that most need remediation. You’ll not only understand your current exposure to the vulnerabilities that enable ransomware attacks, but you’ll understand which preemptive actions are needed to block them.
Time is a critical element in cybersecurity, listen to RiskSense CEO Srinivas Mukkamala talk about achieving 10x the capability within threat and vulnerability management:
- Speed up the prep work, prioritization, and assignment with automation
- Focus analysts on cognitive work and reasoning to take action in a timely manner
- It’s the last-mile activities of patch and risk management that really make a difference
Take 15 minutes and listen to RiskSense Today: Elevating Vulnerability Management with Automation and Orchestration.
Curious about Ransomware? Listen to this podcast featuring RiskSense CEO Srinivas Mukkamala as he talks about this epidemic.
- Find out easy things you can do today to take action
- How the risk of business disruption is getting more attention than data breach risk
- Future prediction of legislative changes regarding ransomware disclosure.
Enjoy RiskSense Today: Ransomware in the Spotlight
In this webinar, we’re joined by Morgan Reed, Chief Information Officer for the State of Arizona. Morgan’s extensive experience in both private enterprise and the public sector puts him in a unique position to help us understand and benefit from how cybersecurity risk is being measured and controlled at the State of Arizona. We’ll discuss relevant cybersecurity risk topics, including his environment, how he views and communicates cybersecurity risk, some frameworks, and how you can go about applying his experience to your own environment, regardless of sector or vertical industry.
Hear from security industry expert from Ovum on moving from silos to collaboration across security and IT teams. For years organizations have leveraged traditional Key Performance Indicators (KPIs) to define success in their Vulnerability Management programs. Unfortunately, this often pitts the security team, who drives the assignment of work, against the overloaded operations team, who performs the work, against one another. The transition to a risk-based approach offers many benefits including more effective communications, a shared understanding of priorities, and a unified sense of purpose. These benefits enable security and operations teams to truly work together to improve the effectiveness of your Vulnerability Management program.
Dr. Srinivas Mukkamala, CEO & Co-Founder of RiskSense
In most cases fraud, risk, and information security functions often only interact in the aftermath of a breach, and security and fraud point solutions typically remain isolated. With maturity in data pipelines, availability of shared data sets across risk, fraud, and information security, AI can be effectively used to detect anomalies and be predictive.
In this webinar, Dr. Srinivas Mukkamala, a recognized expert on AI and neural networks, will discuss how a risk-based approach can facilitate the convergence of cybersecurity and fraud.
Dr. Srinivas Mukkamala, CEO & Co-Founder of RiskSense
Dr. Srinivas Mukkamala will share his views on the most dramatic security threats that will draw more attention in 2019. He will identify why new technologies will begin creating an even more porous and vulnerable IT infrastructure. Consider:
- AI might be your friend but it also powers your foes
- Robotic Process Automation (RPA) another crack in your attack surface
- DevOps Automation tools as targets for administrative controls and chaos
- API Keys becoming the keys to the kingdom
There is hope and Dr. Mukkamala will illustrate how organizations can have improved visibility, detection, remediation, and response when dealing with growing reliance on these technologies in 2019 and beyond.
You’ve gotten what you wished for. Cybersecurity and cyber risk are now board-level issues. Whatever barriers that once existed between business and security have disappeared, and your board is expecting a meaningful conversation on the topic. After all, board members can be held personally liable for business disruptions caused by security issues. Depending on how often these conversations occur, it’s probably safe to assume that the board has a) forgotten what you told them in the last meeting, and, b) wishes you framed your reporting in more of a business context, especially if they don’t have an IT or security background.
In this webinar, we’ll be chatting with Ed Amoroso, former CISO for AT&T and founder and CEO of TAG Cyber. Ed’s extensive experience interacting with board members and recent publications on the topic will serve as the backdrop for walking through a few of his favorite questions that board members should be asking you about cybersecurity risk, and how you can go about providing answers that matter.
Organizations “know” what they need to do. They scan, find piles of vulnerabilities, then rush to patch. But low and behold, they aren't sure that their patching efforts are improving their security posture, and with patch tickets accumulating at an alarming rate, they fall further and further behind. Why? What’s wrong?
Unfortunately, Security and IT teams often find themselves in this unenviable position. The good news is that there’s a movement afoot that can rescue them. In this session you will learn how a risk-based approach to vulnerability management reduces vulnerability fatigue while improving workflow efficiency and personnel productivity in a truly measurable way.
Today's security and IT teams are suffocating under an avalanche of security data. The sheer volume of the data, along with its multiple origins in siloed systems all but guarantee that it lacks context, meaning, and is difficult to make actionable.
Learn how RiskSense harnesses the vulnerability data you have, adds context with threat intel, and incorporates business asset criticality as well as pen test findings to tame your security data tsunami.
Dr. Srinivas Mukkamala, Co-Founder and CEO of RiskSense
The key to effectively reducing the attack surface is remediating exactly the right vulnerability or weakness that will be used by the adversary. While the idea is simple enough, executing on it has proven to be one of the largest challenges facing enterprises.
The impact of this lack of visibility into the attacker journey is that vulnerability remediation strategies are likely unaligned, and therefore ineffective.
There’s no data that supports the hypothesis to align early weaponization to breaches, which makes it hard to know when it is the ideal time to fix the vulnerability or weakness.
Vulnerability prioritization and weaponization prediction must be fueled with data and domain expertise. Fixing thousands of vulnerabilities is not enough. We need to make sure we are fixing the right vulnerabilities, at the right time. In this talk we will cover:
• Quantitative and Qualitative: details on RiskSense threat dataset and data sources that allows us to uniquely separate “signal” from “noise”.
• Unprecedented visibility into attack validation data: from over 10+ years, this enables us to reconstruct the complete attacker journey and understand time-based patterns.
• Insights into Vulnerability life cycle: weaponization and breach latency. This will allow us to determine no engagement vs. engagement from a remediation standpoint.
• Attributes and variables: used for Machine Learning to predict Weaponization and Breach Susceptibility
This presentation will be given by Dr. Srinivas Mukkamala, Co-Founder and CEO of RiskSense. RiskSense’s team was the first to predict WannaCry and has since released Koadic Post Exploitation Command & Control.
With all the news about cyberattacks, it’s easy to feel like there aren’t enough people to cover all of the security bases. This means proper identification and management of threats and vulnerabilities is an absolute necessity to keep risk at its lowest levels.
Join David Monahan, managing research director at leading IT analyst firm Enterprise Management Associates (EMA), and John Dasher of RiskSense, to learn why a threat and vulnerability management solution is a must have for your security portfolio.
During this webinar you will learn:
- How threat and vulnerability management solutions with prioritization improve security operations efficiency
- How to use a threat and vulnerability management and prioritization solution to garner greater support for security and improve security operations and business management alignment
- The top 10 criteria you need to consider when selecting a solution
- How to maintain a risk-based security management program
Dr. Srinivas Mukkamala, CEO and Co-Founder, at RiskSense
How do you handle risk assessment and vulnerability management for IoT when multiple security patterns need assessment? There is a new frontier for security that requires breaking conventional control and mitigation assumptions before a Frankenmonster rises from your IoT project.
In this webinar, RiskSense CEO and Co-Founder Dr. Srinivas Mukkamala will discuss:
- The assessment of chaining together multiple vulnerabilities and the potential exploit path through flexible and fractured design components for IoT.
- Consideration for dynamically changing devices and utilization models that break traditional security and risk assessments.
- IoT risk and the growing need to incorporate threat data, unintentional device use-cases, and the mechanisms to keep constant control of the devices themselves.
Last month, Congress authorized $380 million in federal funding for states to improve and enhance election security. Do you have a plan to take full advantage your allotted funding?
While the priorities for states differ, many experts are recommending careful consideration of cybersecurity improvements as your top priority.
RiskSense would like to invite you to join us this webinar titled "Do More to Safeguard Your Election Systems". In this presentation we will discuss how to improve the security of your election systems, voter registration, and vote tabulation systems. We will suggest industry best practices to establish a more secure, scalable, and more sustainable approach to improving your state’s election security.
Is the status quo really an option? What do maritime stakeholders (shipping companies, terminal operators, cruise lines, port authorities) need to do to prevent, prepare for and respond to the next attack on the horizon?
To coin an old adage that has been used in many sports discussions and is also known as a principal of war, "The best defense is a good offense." This webinar will demonstrate tools and resources that maritime stakeholders can utilize to be Proactive and control their cyber risk.
This webinar, focused on maritime operations, will provide unique insights of the recent cyber events and emerging threats. We will also:
• Discuss nationally-recognized solutions and management approaches that can lead your organization to a proactive and predictive posture with a Cyber Risk Management strategy,
• Include experts from a “bench” of cybersecurity experts that are recognized internationally for their knowledge and skills,
• Demonstrate our Cyber Risk Management platform that can give you the “Situational Analysis and Awareness” that you need in today’s rapidly expanding and complex environment, and
• Learn how we can provide you the same resources that the Department of Defense, NASA, and other federal agencies use and trust, with RiskSense.
Attending this webinar will provide you and your staff valuable insights and offer a course of action that can be a game changer for all maritime organizations
Pioneer in Vulnerability Prioritization and Threat Management
RiskSense®, Inc. provides full-spectrum vulnerability management and prioritization to measure and control cybersecurity risk. The cloud-based RiskSense platform uses a foundation of risk-based scoring, analytics, and technology-accelerated pen testing to identify critical security weaknesses with corresponding remediation action plans, dramatically improving security and IT team efficiency and effectiveness.
The company delivers a fully-informed picture of group, department, and organizational cybersecurity risk with our credit-like RiskSense Security Score (RS3). The RiskSense platform continuously correlates customer infrastructure with comprehensive internal and external vulnerability data, threat intelligence, human pen test findings, and business asset criticality to measure risk, provide early warning of weaponization, predict attacks, and prioritize remediation activities to achieve security risk goals. For more information, visit www.risksense.com or follow us on Twitter at @RiskSense.