Today, 33% of CAST clients are part of the Fortune 500, including multiple in the Fortune 10.
Introduced to the market in February 2020, Bishop Fox’s Continuous Attack Surface Testing (CAST) managed security service has emerged as an important subscription service that combines a next-generation attack platform with expert-driven penetration tests that deliver strong visibility into an organization’s security posture.In today’s dangerous threat landscape, CAST helps organizations stay ahead of emerging threats and bad actors. It uncovers an organization's digital footprint, identifying more sophisticated vulnerabilities in a greater number of categories that are not detectable by current commercial scanners, and maintains a detailed map of their entire attack surface drawn from multiple public, private, and commercial data sources and Bishop Fox’s own discovery methods.
CAST identifies issues in five categories of vulnerabilities: insecure applications, bad passwords, misconfiguration, missing patching, and sensitive information leaks. The product continuously identifies potential weakness on the perimeter and passes that information to operators. The operators then leverage data from the platform to perform penetration tests and deliver fully validated, actionable results on the high-risk and critical vulnerabilities that pose the biggest threat to the organization.“The future for CAST’s continued growth is strong as threats to organizations are constantly evolving, and attack surfaces are expanding exponentially,” the company said in its entry. “ In addition to growth from net new customers, 90% of our existing customers have renewed their engagements for at least one more year.”
There are many ways to do DevSecOps, and each organization — each security team, even — uses a different approach. Questions such as how many environments you have and the frequency of deployment of those environments are important in understanding how to integrate a security scanner into your DevSecOps machinery. The ultimate goal is speed […]
It’s Cybersecurity Awareness Month, but security awareness is about much more than just dedicating a month to a few activities. Security awareness is a journey, requiring motivation along the way. And culture. Especially culture.That’s the point Proofpoint Cybersecurity Evangelist Brian Reed drove home in a recent appearance on Business Security Weekly.“If your security awareness program […]
Get daily email updates
SC Media's daily must-read of the most current and pressing daily news