Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Cloud

10/8/2019
11:45 AM
Dark Reading
Dark Reading
Products and Releases
50%
50%

Xacta.io Leverages Security Data at Scale to Actively Manage Cyber-Risk

Telos Corporation delivers next-generation cyber-risk management platform for complex on-premises, hybrid, and cloud-based environments.

ASHBURN, Va., Oct. 08, 2019 (GLOBE NEWSWIRE) -- Telos ® Corporation, a leading provider of cyber, cloud and enterprise security solutions for the world’s most security-conscious organizations, today announced the general availability of Xacta.io™, the next generation cyber risk management platform.

Designed to address the complexity of managing cyber risk and compliance in modern computing environments – from cloud, multi-cloud and on-premises assets – Xacta.io empowers users to maximize the value of security risk and compliance data to derive intelligence required to actively manage cyber risk. Information gathered by Xacta.io can assist in making decisions pertaining to authorization, remediation prioritization, process and status reporting, resource investments, risk avoidance, and more.

“Security risk and compliance remains a hurdle for cloud adoption,” said John B. Wood, chairman and CEO of Telos. “This task is even more difficult for multi-cloud and hybrid environments.  Automation is critical for gathering, organizing, and operationalizing the data needed to continuously manage cyber risk for regulated and non-regulated industries alike. Xacta.io is specifically designed to address these complex use-cases, which will ultimately help accelerate cloud adoption.”  

Built on a microservices-based, environment-agnostic technology stack, Xacta.io is able to ingest and process data on a massive scale.  Third-party security data sources compatible with Xacta.io include security and vulnerability scanners, endpoint agents, and application programming interfaces (APIs) from cloud service providers.

Complementing the ability to ingest enormous amounts of security data is an advanced visualization dashboard that provides compliance scorecards, regulatory reporting, ad-hoc reporting, analytics and decision support.  Xacta 360 users will also benefit from these enhanced visualization and dashboard capabilities.

"Though compliance management remains a core mission, Xacta.io isn’t just for automation of authorization activities,” said Richard Tracy, CSO of Telos. “Xacta.io will offer much more advanced capabilities, leveraging vast amounts of security and compliance data at scale to enable informed decision-making around cyber risk. Ultimately, Xacta.io will become the hub for all things Xacta, as a flexible platform supporting a broad range of modular services and applications that meet our customers’ cybersecurity requirements.”

Xacta.io will soon include integration with the AWS and Azure clouds, with additional services added over time. For more information, please visit: www.telos.com/xacta.

About Telos Corporation
Telos Corporation empowers and protects the world’s most security-conscious organizations with solutions for continuous security assurance of individuals, systems, and information. Telos’ offerings include cybersecurity solutions for IT risk management and information security; cloud security solutions to protect cloud-based assets and enable continuous compliance with industry and government security standards; and enterprise security solutions to ensure that personnel can work and collaborate securely and productively. The company serves military, intelligence and civilian agencies of the federal government, allied nations and commercial organizations around the world.  The company is a recipient of the prestigious James S. Cogswell Outstanding Industrial Security Achievement Award from the Defense Security Service (DSS), awarded to less than .03% of eligible organizations. For more information, visit www.telos.com and follow the company on Twitter @TelosNews

Contact:
Allison Phillipp
Telos Corporation
Email: [email protected]  
Phone: 703.724.3642

 

Recommended Reading:

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
Special Report: Computing's New Normal, a Dark Reading Perspective
This special report examines how IT security organizations have adapted to the "new normal" of computing and what the long-term effects will be. Read it and get a unique set of perspectives on issues ranging from new threats & vulnerabilities as a result of remote working to how enterprise security strategy will be affected long term.
Flash Poll
The Threat from the Internetand What Your Organization Can Do About It
The Threat from the Internetand What Your Organization Can Do About It
This report describes some of the latest attacks and threats emanating from the Internet, as well as advice and tips on how your organization can mitigate those threats before they affect your business. Download it today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-5615
PUBLISHED: 2020-08-04
Cross-site request forgery (CSRF) vulnerability in [Calendar01] free edition ver1.0.0 and [Calendar02] free edition ver1.0.0 allows remote attackers to hijack the authentication of administrators via unspecified vectors.
CVE-2020-5616
PUBLISHED: 2020-08-04
[Calendar01], [Calendar02], [PKOBO-News01], [PKOBO-vote01], [Telop01], [Gallery01], [CalendarForm01], and [Link01] [Calendar01] free edition ver1.0.0, [Calendar02] free edition ver1.0.0, [PKOBO-News01] free edition ver1.0.3 and earlier, [PKOBO-vote01] free edition ver1.0.1 and earlier, [Telop01] fre...
CVE-2020-5617
PUBLISHED: 2020-08-04
Privilege escalation vulnerability in SKYSEA Client View Ver.12.200.12n to 15.210.05f allows an attacker to obtain unauthorized privileges and modify/obtain sensitive information or perform unintended operations via unspecified vectors.
CVE-2020-11583
PUBLISHED: 2020-08-03
A GET-based XSS reflected vulnerability in Plesk Obsidian 18.0.17 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parameter.
CVE-2020-11584
PUBLISHED: 2020-08-03
A GET-based XSS reflected vulnerability in Plesk Onyx 17.8.11 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parameter.