This tool is a platform for monitoring and assessing the security posture of organizations and also helps to improve the posture by recommendations
SecurityScorecard
SecurityScorecardExternal reviews
External reviews are not included in the AWS star rating for the product.
A reasonably stable product that provides recommendations to improve the scores
What is our primary use case?
How has it helped my organization?
This tool is a platform for monitoring and assessing the security posture of organizations and also helps to improve the posture by recommendations
What is most valuable?
Security Ratings, Continuous Monitoring, & Benchmarking are most useful
What needs improvement?
SecurityScorecard's technical team's response time is an area that my company expects to be made faster. As per the tool's SLAs, three days is way too much time for a user to wait for a response.
SecurityScorecard is an online scanning tool. Apart from the web scanning feature, SecurityScorecard should be available for use on Android or iOS for app scanning purposes and then provide a status to the user.
From the perspective of a customer, I would always want the price of the solution to be on the cheaper side.
For how long have I used the solution?
I have been using SecurityScorecard for more than two years.
What do I think about the stability of the solution?
Stability-wise, I rate the solution a nine out of ten.
What do I think about the scalability of the solution?
Around three to four people in my company use the product.
My company has no plans to increase the use of the solution.
How are customer service and support?
Apart from the delay in response time, I am happy with SecurityScorecard's technical team.
I rate the technical support an eight out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Long ago, my company used to use another solution.
How was the initial setup?
I rate the product's initial setup phase a nine on a scale of one to ten, where one is a difficult setup phase, and ten is an easy setup process.
The solution is deployed on a multi-hybrid cloud.
The solution can be deployed in hardly two or three hours.
What other advice do I have?
SecurityScorecard has improved our company's vendor risk assessment process since it basically gives us the comparison of the competitors and certain vulnerabilities which we can report from an external view or a third party view, giving us an improvement area to work on, which might we might not have focused a lot, or maybe it might be overlooked upon by us. SecurityScorecard helps our company get better scores. The tools help fix the vulnerabilities, which in turn improves scores, making it a valuable product for us.
A scenario where SecurityScorecard enabled better decision-making for IT projects includes an incident involving a couple of domain names that my company used to use in the past since sometimes we see that some applications were replicated. My company forgot to clean up the DNS names. Once my company gets to know from SecurityScorecard that our application has vulnerabilities, I may not have renewed the certificate considering that the application is no longer in use, owing to which our company might lose track of it, during which SecurityScorecard helps us to do the cleanup. There are many places where the right certificates are not installed, or maybe there is a small application vulnerability, which the tool can catch from the external view. This can be let known to our company since there is an action we take to fix such areas.
Our company operates in the online classified market.
The features of SecurityScorecard that are the most beneficial for security monitoring are the reports generated with the help of external audit and vulnerability assessment.
The platform's grading system helps prioritize our company's security concerns since it helps us in the area of scores and provides the competition score. The tool also provides recommendations to improve the scores, which is helpful.
In the identification of potential threats, SecurityScorecard helps our organization since it does black box analysis. With the black box analysis, the tool helps us in the area of external websites where we cannot do many things directly, after which the tool shares an unbiased status with our company.
SecurityScorecard's reporting capabilities support our company's compliance initiatives since it has a dashboard with credentials through which we can get the vulnerabilities reported. The product should provide an option so that it has the ability to fix the reported vulnerability at the same time that it is reported by allowing users to raise a ticket directly with SecurityScorecard's team. After the aforementioned steps are followed, SecurityScorecard can conduct a scanning process and add up the score, which basically gives me the complete trend by allowing me to say last month's trend versus the current month's trend or maybe the last scan versus the current month's scan.
I would tell those who plan to use the solution that it is a straightforward product to use.
I rate the product a nine out of ten.
Helps identify our environment's vulnerabilities
What is our primary use case?
We use SecurityScorecard for reporting.
How has it helped my organization?
The solution helps identify our environment's vulnerabilities.
What is most valuable?
SecurityScorecard's most valuable feature is easy reporting.
What needs improvement?
The tool needs to have the ability to mitigate vulnerabilities with alternative solutions.
For how long have I used the solution?
I have been working with the solution for three years.
What do I think about the stability of the solution?
I rate SecurityScorecard's stability a seven out of ten.
What do I think about the scalability of the solution?
I rate the solution's scalability a seven out of ten.
How was the initial setup?
SecurityScorecard's deployment is easy.
What was our ROI?
I have seen ROI with the tool's use but cannot quantify it.
What other advice do I have?
I rate the product a seven out of ten.