57 UpGuard Testimonials

Industry
Company Size
15 per page
  • 15
Reset
  • “I take a deep dive into the technical features to help the vendor when I send a remediation request.”

  • "Having a system like UpGuard helps us sleep at night because we always know if we’ve overlooked any vulnerabilities."

  • “The UpGuard user experience was much nicer than other platforms and easier to use, while other platforms felt more outdated and not as friendly.”

  • “We had no way of determining the overall maturity of a vendor. So we had no way of estimating and comparing security maturity between vendors when going to tender.”

  • “We used UpGuard because it was an easily-delegated, easily-deployed product which did what we needed it to do."

  • “It’s important for us to monitor our vulnerabilities and security ratings because our insurers expect us to effectively protect and secure their data.”

  • "Before UpGuard, conducting proper research for each vendor would eat up a lot of time – Does it comply with our requirements? Where is their data located? Do they have privacy policies."

  • "This multinational provides a wide range of financial services. UpGuard helps prevent data breaches, by continuously scanning their own, as well as third-party vendors helps de-risk their exposure to suppliers and enables them to be proactive in managing third-party vendor risk."

  • "We did a group diff with UpGuard and quickly discovered that one of our web servers had a different configuration from the other six supporting the application. We restored that server’s configuration and things were back to normal. We couldn’t have done that without UpGuard.”

  • "Open-Xchange uses a vulnerability scanner across the organization’s internal and external attack surfaces. While the scanner provides in-depth coverage, it doesn’t have asset discovery capabilities. It can only monitor what we know. It doesn’t have a perfect register of where every IT asset is, especially as we use dozens of …

  • “If they had a potential accounting impact, then we would insist on a SOC 1, Type 2 or SOC 2, Type 2. If they did not have an accounting impact, we had a phone call or sent a questionnaire.”

  • “I look at the newsfeed to see if any companies we do business with have had a cybersecurity incident.”

  • "With a perfectly tuned container system, you can have as many as four-to-six times the number of server application instances as you can using Xen or KVM VMs on the same hardware."

  • "If a vendor score drops below 600, we know there is a security issue with that vendor and we work with them to remediate that."

  • “We have set up notifications with UpGuard, such that if a vendor drops by 5 points, we reach out to the vendor in order to fix those security issues. These are usually issues such as SSL certificates expiring or DNS issues.”