Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
A surge of vulnerabilities can be overwhelming, but addressing every single one isn't feasible. Utilize comprehensive threat intelligence and innovative prioritization techniques to reduce expenses, streamline processes, and ensure that your teams concentrate on the most significant threats to your organization. This approach embodies Modern Risk-Based Vulnerability Management. Our Risk-Based Vulnerability Management software is pioneering a new standard in the field. It guides your security and IT teams on which infrastructure vulnerabilities to address and when to take action. The newest iteration demonstrates that exploitability can be quantified, and effectively measuring it can aid in its reduction. Cisco Vulnerability Management (previously known as Kenna.VM) merges practical threat and exploit insights with sophisticated data analytics to identify vulnerabilities that present the greatest risk while allowing you to deprioritize lesser threats. Expect your extensive list of “critical vulnerabilities” to diminish more quickly than a wool sweater in a hot wash cycle, providing a more manageable and efficient security strategy. By adopting this modern methodology, organizations can enhance their overall security posture and respond more effectively to emerging threats.
Description
OWASP Threat Dragon serves as a modeling tool designed for creating diagrams that represent potential threats within a secure development lifecycle. Adhering to the principles of the threat modeling manifesto, Threat Dragon enables users to document potential threats and determine appropriate mitigation strategies, while also providing a visual representation of the various components and surfaces related to the threat model. This versatile tool is available as both a web-based application and a desktop version. The Open Web Application Security Project (OWASP) is a nonprofit organization dedicated to enhancing software security, and all of its projects, tools, documents, forums, and chapters are accessible for free to anyone eager to improve application security practices. By facilitating collaboration and knowledge sharing, OWASP encourages a community-focused approach to achieving higher security standards in software development.
API Access
Has API
No
API Access
Has API
Yes
Integrations
Amazon CodeWhisperer
No
Axonius
Yes
Bizzy
No
CycloneDX
No
Eclypsium
Yes
Escape
No
EthicalCheck
No
Google Digital Risk Protection
Yes
Jit
No
Kiuwan Code Security
No
Integrations
Amazon CodeWhisperer
Yes
Axonius
No
Bizzy
Yes
CycloneDX
Yes
Eclypsium
No
Escape
Yes
EthicalCheck
Yes
Google Digital Risk Protection
No
Jit
Yes
Kiuwan Code Security
Yes
Pricing Details
No price information available.
Free Trial
Yes
Free Version
Yes
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
No
Live Rep (24/7)
Yes
Online Support
No
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
No
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
Cisco
Founded
1984
Country
United States
Website
www.cisco.com/site/us/en/products/security/vulnerability-management/index.html
Vendor Details
Company Name
OWASP
Founded
2001
Country
United States
Website
owasp.org/www-project-threat-dragon/
Product Features
IT Security
Anti Spam
No
Anti Virus
No
Email Attachment Protection
No
Event Tracking
No
IP Protection
Yes
Internet Usage Monitoring
No
Intrusion Detection System
No
Spyware Removal
No
Two-Factor Authentication
No
Vulnerability Scanning
Yes
Web Threat Management
Yes
Web Traffic Reporting
No
Network Security
Access Control
No
Analytics / Reporting
No
Compliance Reporting
No
Firewalls
No
Internet Usage Monitoring
No
Intrusion Detection System
No
Threat Response
No
VPN
No
Vulnerability Scanning
No
Patch Management
Alerts/Notifications
Yes
Automatic Approval
No
Automatic Patch Deployment
No
Automatic Scans
No
Compliance Management
No
Custom Patches
No
Dashboard
No
Network Wide Management
Yes
Patch Prioritization
No
Patch Testing
Yes
Remote Access/Control
No
Vulnerability Scanning
No
Vulnerability Management
Asset Discovery
No
Asset Tagging
No
Network Scanning
No
Patch Management
No
Policy Management
No
Prioritization
No
Risk Management
No
Vulnerability Assessment
No
Web Scanning
No
Vulnerability Scanners
Asset Discovery
No
Black Box Scanning
No
Compliance Monitoring
No
Continuous Monitoring
No
Defect Tracking
No
Interactive Scanning
No
Logging and Reporting
No
Network Mapping
No
Perimeter Scanning
No
Risk Analysis
No
Threat Intelligence
No
Web Inspection
No