Automate attack surface management
Attack surface management (ASM) is not new, but how organizations view their attack surfaces should be updated. Traditionally, IT has looked at an organization’s attack surface from the inside out, asking, “What assets connect to the Internet?” and “What are our mean times to detect and respond?” Instead, security teams should be looking from the outside in, asking questions like, “How many unknown assets are connected to our network?” and “What is our mean time to inventory every asset that can put us at risk?”
Inside…
- Automatically find and fix exposures
- Centrally manage your attack surface
- Increase security effectiveness
- Improve cloud vulnerability management
- Protect remote workers
- Recognize top attack surface exposures
Table of Contents:
Introduction 1
About This Book 1
Foolish Assumptions 2
Icons Used in This Book 2
Beyond the Book 2
Chapter 1: The Current State of Attack Surface Management 3
Surveying the Modern Threat Landscape 3
Too Many Assets, Too Little Visibility and Staff 4
Recognizing the Limitations of Traditional Approaches 6
Security ratings and risk scoring 7
Vulnerability management 7
Red teaming and penetration testing 8
Manual inventory and CMDBs 8
Chapter 2: Defining Attack Surface Management 9
Providing Continuous Visibility and Prioritization 9
Accelerating Investigation and Response 10
Improving Security Effectiveness 12
Developing Proactive Security Operations 16
Chapter 3: Preventing Common Attacks with Attack Surface Management 19
An Overview of the Global Attack Surface 19
Top Ten Attack Surface Exposures 21
Best Practices in Attack Surface Management 22
Scaling Your SOC with Attack Surface Management 24
Chapter 4: Exploring Attack Surface Management Use Cases 27
Gaining Immediate Visibility Against Common Vulnerabilities and Exposures 27
Improving Cloud Vulnerability Management 29
Automating Attack Surface Management 31
Reducing M&A and Third-Party Cyber Risk 32
Chapter 5: Automating Attack Surface Management with Cortex Xpanse 35
Don’t Just Find Risks, Fix Them 35
Deploy Policies to Centrally Manage Your Attack Surface 36
Integrate with SOAR to Reduce MTTD and MTTR 37
Chapter 6: Ten (or So) Key Attack Surface Management Capabilities and Features 41
About the Author :
Lawrence Miller served as a Chief Petty Officer in the U.S. Navy and has worked in information technology in various industries for more than 25 years. He is the coauthor of CISSP For Dummies and has written more than 200 For Dummies books on numerous technology and security topics.