TrustRadius: an HG Insights company

SecurityScorecard

Score9 out of 10

7 Reviews and Ratings

What is SecurityScorecard?

SecurityScorecard provides A-F graded security rating scorecards, to drive improved communication, effective compliance reporting, and more informed decision making. These enable enterprises to rate, understand, and continuously monitor the security posture of any organization worldwide, as well as gain visibility of any organization’s security-control weaknesses and vulnerabilities throughout the supplier ecosystem.

Great alternative for Security Ratings

Use Cases and Deployment Scope

We used SecurityScorecard to have an overview and more insights about our public services such as web page and Internet facing applications.

I was very easy to set up, just give them your URLs & Public IP addresses and within a week we were getting results.

To keep track of issues, you can integrate your ticketing system to create new tickets.

You can also request further review if you think there's a false positive, which will affect your overall score.

About the overall score, you get to have a benchmark against similar companies, industry-size.

You're able to create portfolios to keep an eye on your vendors and get an overview about their scores.

One different feature, is the ability to create custom or use templates for Vendor questionnaires (such as PCI, ISO 27K, etc.) For this you'll have to but token, each token equals 1 questionnaire. The platform allows to keep track of requests (date sent, answered, etc.)

Pros

  • Security Ratings
  • Security Assessments
  • Reporting Center

Cons

  • Partner development

Most Important Features

  • Security Ratings

Return on Investment

  • Get insights about our external security posture
  • Actionable tasks to solve

Other Software Used

BitSight Security Ratings, CyberGRX

Deep Review of SecurityScorecard

Use Cases and Deployment Scope

SecurityScorecard provides a full description of all cyber risks related to the custom domain and its 3rd parties/vendors as well. Also, SecurityScorecard provides a detailed electronic questionnaire to be sent to customer's vendors & 3rd parties in order to beget a full view of COMPLIANCE status (GDPR, PCI, and others).

Pros

  • Generates precise security ratings.
  • Allow customers to obtain a full view of its vendors' status of regulatory laws (GDPR, PCI...etc) - when handling an electronic questionnaire.

Cons

  • Pricing could be reviewed for specific industries which were more impacted by the pandemic situation.

Most Important Features

  • They allow us as a reseller to use the platform in order to generate summary reports which are crucial for to be sent to some prospects.

Return on Investment

  • ROI numbers as shown by the Forrester Research caused a positive impact on some of our prospects in Brazil.
  • ROI numbers for using atlas - electronic questionnaire are just amazing. When customer does not need to worry about EXCEL traffic with its vendors asking for info - they feel a strong sense of relief.

Alternatives Considered

BitSight Security Ratings

Other Software Used

Tanium, Thycotic Privilege Manager

SecurityScorecard Helped Start a Conversation with our Customers

Pros

  • Provides good reports
  • Easy to manage and use
  • Tracks in near real time customer changes on the public network

Cons

  • Reports are only available in English.
  • More insights about the dark web would be useful.
  • Tracking of email/pwd leakeage across the organization would be a good-to-have feature.

Most Important Features

  • Reporting
  • Public info scanning
  • OSINT mapping

Return on Investment

  • It help us to sell more services to our customers.
  • It helps to save time with the pre-defined reports.

Alternatives Considered

Anomali ThreatStream