I primarily use Fortify Data for financial organizations. It combines attack surface capabilities with dark web information and breach disclosure information to assess vulnerabilities and risks. It also offers internal vulnerability scanning capabilities to provide a comprehensive risk assessment.
SecurityScorecard
SecurityScorecardReviews from AWS customer
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
External reviews are not included in the AWS star rating for the product.
A Powerful Tool for Cyber Risk Management
and Keeping us best in the industry to increase the score.
Excellent site analysis tool
Best tool for security score for Website
SecurityScorecard is a must for prevent breach and improve cyber hygiene across the supply chain
Good, but could use better reporting features
Identify vulnerabilities and increase risk ratings with need for dark web intelligence
What is our primary use case?
What is most valuable?
Fortify Data offers attack surface capabilities that identify vulnerabilities, exposed ports, and dark web information. It also provides breach disclosure information and has the capability for internal vulnerability scanning, which is helpful for a comprehensive risk assessment. It combines threat intel data with vulnerability information to increase risk ratings and provides insights into third-party supply chain risks.
What needs improvement?
The product can be improved by incorporating more data points and intelligence around dark web information and threat data. Adding more features to combine and consolidate internal vulnerability scanning was a beneficial enhancement. There is a need for more active rather than passive third-party risk management features to truly mitigate risks.
For how long have I used the solution?
I have worked with SecurityScorecard for a few years. I started getting more experience with them a couple of years ago and began a relationship with the company about a year ago.
What do I think about the scalability of the solution?
The product is suitable for medium to large businesses, typically with a revenue range from $200 million to a couple of billion dollars. It may not be ideal for Fortune 500 companies due to name recognition and scale.
How are customer service and support?
I would rate them about a six or seven. There are areas for improvement in response times and overall support. They are not a substantial company and are constantly improving, however, they need better organization to support their customer volume.
How would you rate customer service and support?
Neutral
How was the initial setup?
The setup was straightforward. It is easy to set up and can facilitate scanning within minutes.
What about the implementation team?
Deploying usually requires just a couple of people who understand the network and security components.
What was our ROI?
The biggest benefit is visibility, allowing organizations to understand their risks, vulnerabilities, and potential threats. It helps executives make effective decisions on mitigating or accepting risks.
What's my experience with pricing, setup cost, and licensing?
SecurityScorecard is priced in the middle range. There are more expensive and cheaper options available, however, Fortify Data and Censinet are also in the same middle range.
Which other solutions did I evaluate?
I have experience with Censinet and Fortify Data, which can be tailored more specifically to clients compared to SecurityScorecard.
What other advice do I have?
Overall, I would rate SecurityScorecard as a seven out of ten.
It is a good product yet somewhat generic in its capabilities. It has partnered well for third-party capabilities, but newer products are incorporating more AI functionalities.
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Enhance vendor risk management with comprehensive analysis
What is our primary use case?
SecurityScorecard is primarily used for supply chain risk management.
How has it helped my organization?
The product is included in our portfolio as we are a cybersecurity distributor.
What is most valuable?
The features customers are most interested in are third and fourth-party vendor analysis and questionnaires.
For how long have I used the solution?
The product got onboarded a couple of months ago.
What do I think about the stability of the solution?
No one complained about the stability.
What do I think about the scalability of the solution?
The ones that tried it liked it, although some wanted a different solution.
How was the initial setup?
The initial setup takes just a couple of days and doesn't require any installation.
What other advice do I have?
I'd rate the solution eight out of ten.
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Comprehensive Security Monitoring Made Easy
The most valuable feature is the ability to identify if third parties or vendors have digital threats that may impact our company
What is our primary use case?
SecurityScorecard performs deep analysis over the exposed view of data. It creates an external IT assessment of the company in terms of domain and vendor reports. Essentially, it scans the company's landscape, trying to find vulnerabilities and exposed data that may cause digital risks.
What is most valuable?
With SecurityScorecard, the most valuable feature is the ability to identify if third parties or vendors have digital threats that may impact our company. It also scans all internal domains and IPs to find vulnerabilities in the digital landscape. The continuous monitoring capabilities have been beneficial by providing ongoing assessments of potential risks.
What needs improvement?
The pricing of the product needs improvement in Brazil.
For how long have I used the solution?
I have been using SecurityScorecard for the past year.
What do I think about the stability of the solution?
As for stability, it's 99.99% stable.
What do I think about the scalability of the solution?
The scalability of SecurityScorecard is really easy. If the user starts with twenty domains and needs to double, it's already in the platform one just needs to flag a button.
How are customer service and support?
They work pretty fast and have full knowledge of the solution. Personally, I've never had a problem with them. Sometimes there's a little delay because they need to investigate further, but overall, I'm pleased with their support.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup of SecurityScorecard is very easy because it's a SaaS solution. Deployment time depends on the number of companies to be monitored; for fifteen to thirty companies, it might take two or three days, or up to a week.
The vendor helps users deploy the solution and set up functionalities, making it straightforward. Usually, three to four people are involved. The vendor assigns a Customer Success Manager to the end user, who acts as the focal point for support, new questions, and functionalities.
What about the implementation team?
What was our ROI?
The best ROI with SecurityScorecard is when the end user identifies that their vendors or third parties have digital threats that need to be addressed promptly. Preventing digital threats and data leakage from vendors and partners is the best ROI.
What's my experience with pricing, setup cost, and licensing?
The pricing of SecurityScorecard is fair. I would rate it a seven. It's a bit more on the expensive side. In Brazil, for example, making a payment to the vendor involves wire transfers and high taxes, making it more expensive. Selling SecurityScorecard or any American vendor's product in the United States is very different from selling in South America or Brazil.
What other advice do I have?
Overall I would rate the solution a nine out of ten.