-
"If a vendor score drops below 600, we know there is a security issue with that vendor and we work with them to remediate that."
-
"Open-Xchange uses a vulnerability scanner across the organization’s internal and external attack surfaces. While the scanner provides in-depth coverage, it doesn’t have asset discovery capabilities. It can only monitor what we know. It doesn’t have a perfect register of where every IT asset is, especially as we use dozens of …
-
“We check the dashboard daily. Our score reflects how well we are doing. The higher the score, the more confident we are in our security posture.”
-
"Vendor Risk helps us manage vendor security performance across a diverse client base. It’s easy to use, and the vendor security questionnaire module helps us track workflows, surface security and prioritise specific risks for remediation."
-
"One thing that's been really impressive has been the continuous little tweaks and new features that the development team has been doing. Those things keep the solution fresh and I find the new features are really, really useful."
-
“Third-party assessments could take up to 20-80 hours per vendor. With hundreds of vendors, it would take a team of two a full year to assess them all.”
-
“UpGuard has been a valuable tool for detecting external security threats without requiring any platform integration. With its automated reports, we are able to quickly take action against potential attacks and categorize risks based on severity. Additionally, UpGuard assists us in assessing the security health of our onboarded vendors and …
-
"We now have an automated, robust process for validating that planned changes are made correctly. That reduces regulatory and operational risk, lowers costs, and allows us to drive continuous improvement."
-
"We can now get comprehensive vulnerability reports, tied directly to specific CIs. Because of this, we’ll also be able to drive end-to-end remediation processes within ServiceNow, and tie this directly back into other areas such as GRC.”
-
“The UpGuard user experience was much nicer than other platforms and easier to use, while other platforms felt more outdated and not as friendly.”
-
“If you’re familiar with Active Directory Group Policy, then UpGuard makes a lot of sense. Ultimately you have this environment and you have this policy you’re applying to it. We’re also using Octopus Deploy and UpGuard uses many of the same methodologies. The two products complement each other.“
-
"By automating cyber risk detection and assessment, UpGuard has helped increase our cybersecurity performance, while getting efficiency through automation."
-
"It becomes easy to monitor hundreds of vendors on the UpGuard platform with instant email notifications if the vendor’s score drops below the threshold set based on risk or business."
-
"Before UpGuard, conducting proper research for each vendor would eat up a lot of time – Does it comply with our requirements? Where is their data located? Do they have privacy policies."
-
“Before using UpGuard, our cyber risk management processes were very immature and still developing. Even after we started using UpGuard, we weren’t leveraging the tools the best we could.”