FinTech Magazine - March 2021 | Page 42

“ One of the key takeaways is the importance of securing every layer of your modern attack surface ”
RAPID7

Victoria

Sitcawich and Bria Gangard from Rapid7 talk about vulnerability management
InsightVM allows the user to understand business risk in the context of their entire digital environment , prioritise their focus , and report on findings to both technical and non-technical stakeholders . “ Not every asset is created equal ; your payroll systems should probably be considered more critical than an individual laptop ,” continues Sitcawich . “ InsightVM translates that security risk into business risk and helps our customers look at key metrics to track success .” InsightAppSec , Grangard explains , is similar : the highestrated DAST ( dynamic application security

“ One of the key takeaways is the importance of securing every layer of your modern attack surface ”

Gartner for three consecutive years , InsightAppSec automatically assesses web applications to identify common vulnerabilities . “ When developing the product we thought , ‘ How can we help test , monitor and ultimately prevent the exploitation of vulnerabilities or weaknesses at the application layer ?’ A lot of components from our InsightAppSec and tCell products come into play here : InsightAppSec brings testing and monitoring together so that clients can understand how their apps are being attacked in real-time .”
When it comes to designing and implementing a quality vulnerability risk management strategy , time is one of the most important factors to consider , not just in ‘ speed of response ’ terms but also overall focus . Rapid7 ’ s five-point process ( identification , assessment , prioritisation , remediation , and measuring progress ) aims to reduce risk through greater environmental visibility and prioritisation acuity , “ Everyone
42 March 2021