TrustRadius: an HG Insights company

Tenable Attack Surface Management

Score6.2 out of 10

2 Reviews and Ratings

What is Tenable Attack Surface Management?

Tenable Attack Surface Management (formerly Tenable.asm, and previously Bit Discovery) is an external attack surface management (EASM) solution that integrates into a vulnerability management platform. Tenable.asm continuously maps the entire internet and discovers connections to internet-facing assets so that users can assess the security posture of the entire external attack surface, or those facets of an organization that face the public, and the Internet. It can be used to access an attack surface map of more than 5 billion assets to discover domains related to assets in the user's inventory, and it offers notifications on changes in the attack surface for continuous monitoring.

Categories & Use Cases

Top Performing Features

  • Vulnerability Classification

    Prioritizing vulnerabilities, to determine which vulnerabilities are most urgent and require a quicker resolution.

    Category average: 8.7

  • Automated Alerts and Reporting

    Systems in place to automatically alert, report, or notify of issues that may need timely remediation.

    Category average: 8

  • IT Asset Realization

    Scans a network to identify hardware and software assets on the network.

    Category average: 8.4

Areas for Improvement

  • Authentication

    Authentication of users and services within a network to prevent vulnerabilities from being introduced to the network.

    Category average: 8.1

  • Configuration Monitoring

    Constant monitoring of a network set up to identify vulnerabilities as they occur within the network or tech stack on the network.

    Category average: 8.3

  • Web Scanning

    Specifically scans webpages for potential threats or vulnerabilities.

    Category average: 7.8

With Tenable Attack Surface Management you can quickly get a complete view of your entire internet facing devices

Use Cases and Deployment Scope

We use Tenable Attack Surface Management to map out our clients' entire public facing real estate. This used to be a tricky and sometimes very time consuming exercise. Tenable Attack Surface Management can track any new changes, which is why it helps save time. All these results can be easily displayed in Dashboards for Technical and Non Technical people, you can also represent Business context by making use of these pre-built dashboards. There are many other benefits, but these are the ones we rely on most.

Pros

  • Maps external facing infrastructure and continuously updates this data
  • Can display the scan results in Business Context to help with management reporting
  • Great Asset Management tool
  • Powerful vulnerability scanning engine

Cons

  • No improvement can be suggested at this moment as it fits our needs and more

Most Important Features

  • The continuous scanning of the internet and then discovering connections between our clients' internet facing devices.
  • Ability to represent the data results with Business Context
  • Asset Management
  • Vulnerability scanning and reporting

Return on Investment

  • This solution is most definitely a great Return on Investment because it can quickly and accurately discover and report on our clients' entire Internet facing real estate. And keep this data updated with any changes.

Other Software Used

Tenable Vulnerability Management, Tenable Nessus, SentinelOne Singularity, Sophos Central Device Encryption, Sophos UTM