-
Report details
-
4
Figures
-
0
Tables
-
1
Executive Summary
-
3
Introduction
-
7
Research Findings
-
Security Hygiene and Posture Management Remains One of the Least Mature Areas…
-
2
The External Attack Surface Is Vulnerable and Prone to Exploitation
-
5
Asset Management Depends Upon Tools, Processes, and Cross-department Cooperation
-
Organizations Believe Their Vulnerability Management Programs Are Mature, but…
-
While the Value of Security Testing Is Well Understood, Frequency and Depth Rema…
-
Organizations Will Move Toward Security Observability, Prioritization, and Valid…
-
2
Conclusion
-
Research Methodology
-
Respondent Demographics
|
ESG Research Report: Security Hygiene and Posture Management
Jan 24, 2022
by
Bill Lundell, Jon Oltsik
Security posture management challenges are driven by the growing attack surface. Organizations have accelerated cloud computing initiatives and have been forced to support a growing population of remote users because of the pandemic. Firms are also deploying new types of devices as part of digital transformation initiatives, further exacerbating the growing attack surface, which leads to management challenges, vulnerabilities, and potential system compromises. Meanwhile, security teams are also concerned about recent cybersecurity issues including MS Exchange vulnerabilities, the SolarWinds hack, and the recent Log4j zero-day flaw. As a result, organizations are further assessing security posture management processes, examining vendor risk management requirements, and testing security more frequently.
Page Count: 32
Table of Contents
-
Executive Summary
(1)
-
Introduction
(3)
-
Research Findings
(7)
-
Security Hygiene and Posture Management Remains One of the Least Mature Areas of Cybersecurity
-
The External Attack Surface Is Vulnerable and Prone to Exploitation
(2)
-
Asset Management Depends Upon Tools, Processes, and Cross-department Cooperation
(5)
-
Organizations Believe Their Vulnerability Management Programs Are Mature, but There Is Still Work to Be Done
-
While the Value of Security Testing Is Well Understood, Frequency and Depth Remain Underserved
-
Organizations Will Move Toward Security Observability, Prioritization, and Validation (SOPV) Technologies
-
Conclusion
(2)
-
Research Methodology
-
Respondent Demographics
|
Other Users Also Viewed
Oct 24, 2022
Based upon years of previous research, for most organizations, security operations are in a period of both disarray and transition. While organizations expand the development of digital transformation initiatives, cloud-native application development…
|