Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Risk

9/16/2016
08:00 AM
Dark Reading
Dark Reading
Products and Releases
50%
50%

Bay Dynamics Announces Major Enhancements to Flagship Cyber Risk Analytics Platform

New Version of Risk Fabric(R) Prioritizes Threats and Vulnerabilities, Deputizes Line-of-Business Leaders and Automates Cyber Risk Management

SAN FRANCISCO—August 29, 2016—Bay Dynamics® unveiled today a new version of its flagship cyber risk analytics platform, Risk Fabric®, that helps companies measure, communicate and reduce cyber risk. Risk Fabric is the leading solution in the market that automatically delivers prioritized threat and vulnerability information based on the value of assets at risk to line-of-business leaders who are responsible for reducing risk to those assets.

“Risk Fabric has proven to be the leading platform in helping large, Fortune 500 companies prioritize and combat insider and external threats to their most valued assets,” said Ryan Stolte, co-founder and Chief Technology Officer at Bay Dynamics. “Now, we are taking the platform one step further. Security practitioners can say ‘goodbye’ to the daunting, manual process of figuring out which vulnerabilities and threats are the most critical and who is responsible for mitigating them. Risk Fabric automatically delivers prioritized cyber risk information to the stakeholders who govern valued assets at risk and are therefore held accountable for reducing that risk.”

Bay Dynamics Risk Fabric provides three critical components of cyber risk reduction. The platform enables companies to optimize their vulnerability lifecycle management. Security teams are overwhelmed by the mountain of vulnerabilities uncovered by a vulnerability scan. Once they determine which endpoints, systems and applications are vulnerable to an attack, they do not know which steps to take next and in what order. As a result, they spend countless hours manually determining who owns the vulnerable asset, the value of that asset if it were compromised and if there is an active threat to that asset. Risk Fabric automatically compiles and sends that information to the line-of-business application owners who govern the assets at risk so that they can be held accountable for patching the associated vulnerabilities.

Risk Fabric collects and analyzes threat, vulnerability and business context data coming from companies’ existing security tools, adds a layer of user and entity behavior analytics and correlates the different data sources to ultimately enable companies to measure and manage their cyber risk. This comprehensive approach helps companies prioritize their vulnerability lifecycle, prevent credential-based threats such as those coming from insiders and compromised accounts, and prevent software-based threats like malware.

Finally, Risk Fabric bridges the cyber risk reporting gap between security executives and the board of directors. According to a recent survey conducted by Osterman Research, 89 percent of board members say they are very involved in making cyber risk decisions and 74 percent say cyber risk information is reported to them weekly. Risk Fabric produces board-ready cyber risk reports that are traceable, trustworthy and actionable so that boards of directors can make informed decisions to reduce risk.

For more information about Risk Fabric, go to: https://baydynamics.com/risk-fabric/

About Bay Dynamics

Bay Dynamics® is a cyber risk analytics company that helps companies measure, communicate and reduce cyber risk. The company’s flagship analytics software, Risk Fabric®, automates the process of analyzing security information so that it’s traceable, trustworthy and prioritized. The platform makes cyber risk everyone’s business – from employees to line-of-business application owners to the board – and actively engages all parties in measurably reducing it. Bay Dynamics enables some of the world’s largest organizations to understand the state of their cyber security posture, including contextual awareness of what their insiders, vendors and bad actors are doing, which is key to effective cyber risk management. For more information, please visit www.baydynamics.com.

 

Follow Bay Dynamics on Twitter at www.twitter.com/BAYDYNAMICS, on LinkedIn at www.linkedin.com/company/bay-dynamics/, and on Facebook atwww.facebook.com/bay.dynamics.

Bay Dynamics and Risk Fabric are registered trademarks of Bay Dynamics, Inc.  Other trademarks mentioned are the property of their respective owners.

 

 

Recommended Reading:

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
2020: The Year in Security
Download this Tech Digest for a look at the biggest security stories that - so far - have shaped a very strange and stressful year.
Flash Poll
Assessing Cybersecurity Risk in Today's Enterprises
Assessing Cybersecurity Risk in Today's Enterprises
COVID-19 has created a new IT paradigm in the enterprise -- and a new level of cybersecurity risk. This report offers a look at how enterprises are assessing and managing cyber-risk under the new normal.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-12512
PUBLISHED: 2021-01-22
Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to an authenticated reflected POST Cross-Site Scripting
CVE-2020-12513
PUBLISHED: 2021-01-22
Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to an authenticated blind OS Command Injection.
CVE-2020-12514
PUBLISHED: 2021-01-22
Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to a NULL Pointer Dereference that leads to a DoS in discoveryd
CVE-2020-12525
PUBLISHED: 2021-01-22
M&M Software fdtCONTAINER Component in versions below 3.5.20304.x and between 3.6 and 3.6.20304.x is vulnerable to deserialization of untrusted data in its project storage.
CVE-2020-12511
PUBLISHED: 2021-01-22
Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to a Cross-Site Request Forgery (CSRF) in the web interface.