-
"Our vendor security risk assessments are now a well-oiled machine from where we started using UpGuard."
-
"Open-Xchange uses a vulnerability scanner across the organization’s internal and external attack surfaces. While the scanner provides in-depth coverage, it doesn’t have asset discovery capabilities. It can only monitor what we know. It doesn’t have a perfect register of where every IT asset is, especially as we use dozens of …
-
"Thanks to UpGuard, 640 hours of manual testing were reduced to 30 minutes, getting the datacenter operational on time."
-
"UpGuard was able to give us insight immediately into our online profile and identify our cyber risk."
-
“If they had a potential accounting impact, then we would insist on a SOC 1, Type 2 or SOC 2, Type 2. If they did not have an accounting impact, we had a phone call or sent a questionnaire.”
-
“I take a deep dive into the technical features to help the vendor when I send a remediation request.”
-
“I look at the newsfeed to see if any companies we do business with have had a cybersecurity incident.”
-
"Thanks to UpGuard’s custom questionnaire builder, the custom questionnaire we have created will significantly speed up our vendor assessment process. Many assessments will be reviewed and approved in only half an hour."
-
"This multinational provides a wide range of financial services. UpGuard helps prevent data breaches, by continuously scanning their own, as well as third-party vendors helps de-risk their exposure to suppliers and enables them to be proactive in managing third-party vendor risk."
-
“We knew no one tool would be a silver bullet, but we were looking for a solution that met the majority of our requirements without too much extra customization. When we compared the tools, UpGuard came out on top.”
-
"We now have an automated, robust process for validating that planned changes are made correctly. That reduces regulatory and operational risk, lowers costs, and allows us to drive continuous improvement."
-
"We can now get comprehensive vulnerability reports, tied directly to specific CIs. Because of this, we’ll also be able to drive end-to-end remediation processes within ServiceNow, and tie this directly back into other areas such as GRC.”
-
“We had basic questions regarding business processes and security controls, but wanted to go deeper to provide high-level reporting that provided clarity into the vendor.”
-
"Our complicated environment requires attention to detail when reviewing security risks. We have many cloud-first vendors so the UpGuard platform allows us to be granular and gives us an interesting layered insight on our supply chain that could have a critical impact on our operation. As a telecommunications company providing …
-
“It’s important for us to monitor our vulnerabilities and security ratings because our insurers expect us to effectively protect and secure their data.”