Archive for October 25, 2023

Guest Post: Top 10 Best Solutions for Microsoft Office 365 Backup in 2023

Posted in Commentary on October 25, 2023 by itnerd

As a convenient, fast and globally available solution, the Microsoft 365 suite is the basis for multiple organizations worldwide that need to enable or improve their team collaboration capabilities. Although the suite is widely accepted, organizations nowadays have concerns about SaaS data, especially when it comes to data protection and compliance weaknesses. 

Modern third-party Microsoft 365 backup solutions offer flexible pricing policies that can suit both SMBs and enterprise organizations. Additionally, Microsoft itself recommends using such solutions for reliable SaaS data protection, as the shared responsibility model officially makes Microsoft responsible only for the services’ availability, offloading the data protection tasks to clients. 

With the growth of interest among organizations, the variety of backup and recovery suites offered by the market also increases. The choice of the best data protection solution for Microsoft 365 becomes a challenge due to that. In this post, we show you the top 10 solutions for Microsoft Office 365 backup in 2023.

1. NAKIVO Backup & Replication

The first to mention and the best to use solution on the list is NAKIVO Backup & Replication with fast incremental backups using native Microsoft technolgoy and near-instant recovery. The majority of data-driven organizations can receive numerous benefits with the NAKIVO Backup & Replication integrated with Exchange Online, Microsoft Teams, SharePoint Online and OneDrive for Business. The opportunity to back up Microsoft Teams data with all the channels, files, posts and tabs regardless of the storage location is another advantage raising this solution to the top of the list.

With the NAKIVO solution, you can store backups of Microsoft 365 data on-premises, gaining more control over their valuable records and using the advantages of offline storage for additional security. Another benefit of this solution is the usability and intuitive UI that make installing and mastering the functionality quick and easy. You can install the solution in less than 5 minutes, and run the first backup job in your infrastructure even faster with the step-by-step wizard.

NAKIVO Backup for Microsoft 365 is affordable, as the prices start at $0.80 per user/month. The per-user subscription provides an excellent level of licensing flexibility, as you can pay for exactly the number of users you need to protect. 

Other important features to mention, which make the NAKIVO solution the best for Microsoft 365 data protection are support for all other workloads from the same web interface, security features and the BaaS and DRaaS capabilities. You can consider NAKIVO Backup & Replication when choosing tha e solution to protect your data on physical, virtual and cloud workloads. The backup immutability functionality that protects data copies from change or deletion can increase ransomware resilience of your IT infrastructures in general.  

2. Acronis Backup

The commonly known secure data access, disaster recovery and backup software provider, Acronis offers Microsoft 365 backup and recovery functionality with their Cyber Protect Cloud solution. That data protection suite is also capable of email security, data loss prevention (DLP) and email security. Cyber Protect Cloud Backup provides file backup and disaster recovery (DR) functionality, along with secure file sync and share. Acronis’ solution is in the top 2 position of the list because of the recovery speed: with the runVM technology, you can almost instantly recover the workload, increasing productivity and reliability for users. 

Acronis Cyber Protect Cloud Backup can protect your backups against ransomware with the AI-based technology that prevents files from unauthorized encryption or any other modification. The solution can check if backup copies are authentic before using them to restore data. A convenient web-based management console streamlines data protection management and increases overall operational efficiency. The solution from Acronis is also multi-platform, protecting over 20 virtual, physical, mobile and cloud platforms.  

3. CodeTwo

An organization from Poland, CodeTwo made an impact on the email signature market with the launch of CodeTwo Exchange Rules. Nowadays, with the development of that solution, new products like Backup of Office 365 are also available. 

The CodeTwo Backup for Office 365 app can run full or incremental backups of SharePoint Online, OneDrive for Business sites, Microsoft 365 mailboxes and public folders. This solution also enables you to back up Microsoft Teams data. With advanced search functions and granular recovery capabilities, you can flexibly choose which objects to recover whenever necessary. Chosen data types can be restored as well as entire sites and mailboxes. Also, Exchange Online contacts and OneDrive library lists can be the objects to recover here. Finally, the CodeTwo solution’s granular recovery enables restoring single email messages and attachments. 

Also, CodeTwo Backup for Office 365 can back up Exchange and SharePoint content that is stored on-premises. Organizations with offline or hybrid environments can benefit from such capabilities. 

4. Unitrends Backup

Another enterprise-level backup solution for Microsoft 365 on the list, which is Unitrends Backup, covers OneDrive for Business, SharePoint Online and Exchange Online. The solution is easily scalable due to the per-user licensing policy and unlimited storage. Such flexibility is highly beneficial for small and medium organizations and especially startups that expect fast growth but need to limit their costs. 

With Unitrends Backup, you can use the self-service UI to restore corrupted and lost data. Backup admins can recover files not only to the original account but other ones as well, gaining more efficient data management capabilities. This can be useful, for example, to transfer data of an employee that leaves an organization. 

Unitrends can cover the majority of backup functions that modern organizations require from a Microsoft 365 data protection solution but not more. Unitrends backup does not offer advanced backup and recovery automation, role-based access control (RBAC), Teams backup, among other features. Additionally, the pricing details of the solution aren’t publicly available, making the correct investment evaluation and direct solution comparison a bit challenging.   

5. Cloudally

Cloudally is a Microsoft 365 backup solution that focuses a lot on simplicity and functionality enabling automated backups for SharePoint Online, OneDrive, Exchange Online, Groups and Teams. Cloudally also includes Amazon S3 encryption, object lock, archival export and monitoring. Granular recovery with advanced search features enable convenient restoration of particular data objects when you need them. 

The main disadvantage of Cloudally compared to the solutions above in this top 10 list is that the solution is all about SaaS backup. Unlike other more versatile offerings, Cloudally suits a limited number of platforms and can’t be used if your infrastructure is hybrid with the use of physical or virtualized workloads. 

Cloudally isn’t the most affordable solution on the list either The $3 per user/month price level is doubtfully suitable for SMBs, mainly building their IT infrastructures with SaaS workloads to save funds on hardware and licenses. Still, the reliability and simplicity of this solution may be an advantage for organizations that have some more freedom in budget planning.  

6. Iperius Backup

Iperius Backup, a lightweight data backup solution, enables you to protect and recover data in Exchange Online mail accounts and Exchange servers, along with OneDrive and Office 365 data. The Iperius package includes Iperius Remote, Iperius Console and Iperius Storage that enable Outlook-compatible incremental data backup creation. Using Iperius, you can send backups to FTP, Amazon S3, NAS and cloud storage. Iperius Backup also enables granular recovery of individual mailboxes.

A niche-oriented design of Iperius Backup results in minimal resource consumption that allows backup workflows to run without interruptions. Additionally, the perpetual license for Iperius Backup with Microsoft 365 backup included is affordable (the price is around $200). Thus, smaller organizations can benefit from integrating Iperius Backup, but the limited set of functions may be the reason for larger companies to search for a different market offering. 

7. Cohesity

As a modern backup solution, Cohesity helps you overcome the limitations of native Exchange Online, OneDrive, Teams and SharePoint recovery capabilities. The auto-discovery feature enables the detection and backup of mailboxes, groups, files, and folders, which you can then store in Microsoft Azure or on-premises for more control.

Whenever you need to recover data, use the global search to find the required files in your backup storage. Cohesity also enables you to streamline administration and optimize resource use with backup and recovery automation that can free users from many routine responsibilities. The opportunity to create customized retention policies helps you delete data on time, thus optimizing storage space consumption and avoiding compliance issues. 

Cohesity has a set of functions to provide a high level of protection for Microsoft Office 365 app data. Still, the lack of advanced features and data protection flexibility may be the reason for particular users to consider other backup solution vendors. 

8. Barracuda Backup Solutions

Barracuda Backup is a known and strong player in the backup solution market. When speaking of Microsoft 365, their solution enables providing data protection for Exchange Online, OneDrive and SharePoint Online with cloud-to-cloud backup.

With Barracuda, you can back up data on schedule and on demand. Granular recovery along with features such as custom retention policies, backup management and network traffic control make this solution a solid choice. 

Barracuda Cloud-to-Cloud Backup offers complete, granular protection of your data with point-in-time retrieval, and both scheduled and on-demand backup. In addition, their service allows you to set your own retention policies, manage all backed-up servers, network traffic, and more. You can also use AES data encryption for critical data and back up data once in 15 minutes for additional security. 

Despite all the benefits, Barracuda has a significant disadvantage that can break the deal for many organizations: for Microsoft 365 data protection, the solution is limited to cloud-to-cloud backup. This excludes storage flexibility, limits data control and also may significantly reduce backup and recovery workflow speeds. 

9. Commvault

Commvault’s Metallic DMaaS is the data management suite from one of the data protection market leaders. The solution provides enterprise-grade data protection, including the Metallic Backup for Microsoft 365 (namely for Exchange Online, SharePoint Online, OneDrive, Microsoft Project and Teams). 

With Metallic Backup for Microsoft 365, you can automate the creation of Microsoft 365 data backups. Those backups are then sent to an air-gapped storage for additional security. Commvault provides both on-premise and cloud storage options located worldwide to provide data redundancy and ensure regulatory compliance. Data protection administrators can either run one of the available retention plans or create custom retention policies. The granular recovery functionality enables administrators to find and recover objects to the original or different destination. 

Flexibility and security are also pros for Commvault users. The solution offers zero-trust access and other security features for both external and internal threat protection. In terms of pricing, Commvault offers the Standard and Enterprise plans for Microsoft 365 data protection. Though, the pricing details aren’t public for Commvault, which can be a downside for some potential users.

10. Rubrik

A vendor with a wide range of solutions, Rubrik provides monitoring, threat protection and data resilience for Microsoft 365. Rubrik Microsoft 365 Protection enables backup and recovery automation for Microsoft 365 apps, including OneDrive, SharePoint Online, Exchange Online and Teams. Like other modern solutions, Rubrik has the advanced search and granular recovery capabilities that you can use for faster recovery and compliance. 

The advantage of Rubrik Microsoft 365 Protection is the ability to discover new teams, sites and users automatically along with creating new backups of that data. Administrators can create retention policies for data backups, locate and recover specific records to their original or different destination via API calls. API integrations are what enables in-depth customization of the Rubrik solution, as well as quick troubleshooting when issues arise. 

However, there are reasons for Rubrik Microsoft 365 to not be on top of the list. The main point is that Rubrik does not provide on-premise backup storage. Thus, you have limited control over your data and need to depend on internet connection for recovery. Speaking of prices, Rubrik wants you to contact sales to get a quote, which may be undesirable for some potential clients.  

 

Time To Patch Your Cisco Gear As Cisco Releases Patches To Address Zero Day Exploits

Posted in Commentary with tags on October 25, 2023 by itnerd

Cisco has patched two zero-day vulnerabilities that exposed Cisco IOS XE system software hosts to attackers. More details on that here and here. These vulnerabilities affected devices running the Cisco IOS XE software, such as routers and switches.

You can get the patches via Cisco’s software download portal. Customers who do not have a Cisco service contract or cannot obtain fixed software through their third-party vendors can contact Cisco support. These fixes started to roll out on October 22. And the Cisco Talos Intelligence Group wrote in a threat advisory updated on October 23.

Thus it’s time to patch all of your gear ASAP as these zero days are being actively exploited.

Meet the HP Z6 G5 A: The Ultimate Workstation

Posted in Commentary with tags on October 25, 2023 by itnerd

Today, HP unveiled the newest addition to the Z by HP workstation lineup: the HP Z6 G5 A, a cutting-edge desktop workstation designed to meet the demanding needs of virtual production, 3D rendering, AI, and machine learning professionals. With the highest number of cores ever in a Z by HP workstation and the ability to configure up to 3 high-performance graphics cards, the Z6 G5 A is set to revolutionize productivity and performance.

Powered by the AMD Ryzen Threadripper PRO CPU, the Z6 G5 A features up to 96 cores in a single workstation CPU, allowing users to create and render simultaneously on intensive projects. With space for up to 3 high-end NVIDIA RTX 6000 Ada Generation GPUs or AMD GPUs and eight memory channels, the Z6 G5 A is perfect for tearing through virtual production, 3D modeling tasks, or complex, advanced data sets.

The Z6 G5 A can tear through virtual production or 3D modeling tasks as well as data science workflows like AI and machine learning. With an innovative system design and the new AMD Ryzen Threadripper Pro 7000 WX-Series CPU, the Z6 G5 A packs a staggering number of cores into a single workstation for higher productivity.

The Z6 G5 A also offers plenty of room to expand as demands change, with space for up to three high-end GPUs and flexible storage options with front-accessible, hot-swappable NVMe drives for quick and easy access to large files. The redesigned layout of this generation Z by HP desktop workstation increases airflow, ensuring the system remains cool even at peak performance, while intelligent fan control tunes the fan speeds in real-time using over 20 temperature sensors to maintain whisper-quiet operation. With 360,000 hours of rigorous testing, MIL-STD testing, and certification for professional applications, the HP Z6 G5 A is built to endure. As part of the World’s Most Sustainable PC Portfolio, HP’s commitment to sustainability is reinforced in the design, built with 40% recycled plastics, and is planned to be EPEAT® Gold-certified, reflecting the company’s dedication to helping the environmental impact of its products.

In today’s hybrid work environment, being able to tap into exceptional remote performance is a top priority. The HP Anyware solution allows for a color-accurate, low-latency experience for 3D VFX, AI, and machine learning workflows under varying network connections, and the HP Anyware Remote System Controller enables IT managers to monitor and manage workstation fleets without compromising control. Additionally, the Z by HP Data Science Stack Manager streamlines access to the best open-source software solutions in a user-friendly platform for data scientists and AI creators. The HP Z6 G5 A supports WSL2, bringing the ability to run Linux within the Windows ecosystem and offering easy access to tools from the Z by HP Data Science Stack Manager and the new Z by HP AI Studio.

HP Z6 G5 A Features:

Create, render, process—all at once.

  • Do it all—with efficient performance per watt—on the Z6 G5 A. The system design packs up to 96 cores in a single workstation CPU1 with room for up to 3 high-end GPUs.

Expandable. Flexible. Whisper Quiet.

  • Designed to pack all the power and components you need now with room to grow—without throttling. Get maximum expandability with up to 6 PCIe slots (up to gen 5) and 12 NVMe SSDs.

Comprehensive Security. Trusted Reliability.

  • The Z6 G5 A has undergone 360K hours of rigorous testing, MIL-STD testing, and is certified for pro apps. With HP Wolf Security for Business, it’s protected below, in, and above the OS.

Discover the power of the HP Z6 G5 A workstation and revolutionize your workflow, unleashing new data-driven insights and unparalleled performance for your most demanding projects. Create, render, and process all at once with the new HP Z6 G5 A and unlock the full potential of your most demanding projects.

Pricing and Availability

  • The HP Z6 G5 A is expected to be available in November 2023 on HP.com/Z with availability in select countries later this year

UPDATE: HP has told me that this will be available in Canada this December.

RCE Vulnerability For Popular Mirth Connect Open Source Healthcare Platform 

Posted in Commentary with tags on October 25, 2023 by itnerd

Horizon3.ai’s threat researchers have just published NextGen Mirth Connect Remote Code Execution Vulnerability (CVE-2023-43208).

Mirth Connect, by NextGen HealthCare, is an open source data integration platform widely used by healthcare companies (a recent survey cited approximately 3,000 organizations). The Horizon3.ai Attack Team findings show that versions prior to 4.4.1 are vulnerable to an unauthenticated remote code execution vulnerability, CVE-2023-43208. 

Naveen Sunkavally, chief architect at Horizon3.ai, said: “This is an easily exploitable, unauthenticated remote code execution vulnerability. CVE-2023-37679 was reported to be fixed in Mirth Connect 4.4.0. In the release notes for 4.4.0, it was reported as only affecting Mirth Connect installs running on Java 8 or below. This caught our attention (why only Java 8?), and we started digging. We found that in fact, all installs of Mirth Connect, regardless of the Java version, were vulnerable. We also found that the patch for CVE-2023-37679 could be bypassed. We subsequently reported a new vulnerability to NextGen, tracked as CVE-2023-43208. The fix for CVE-2023-43208 is in 4.4.1.”

Sunkavally noted that attackers would most likely exploit this vulnerability for initial access or to compromise sensitive healthcare data.  He said that while Horizon3.ai is not releasing an exploit at this time, the methods for exploitation (involving Java XStream) are well known and documented. “We have verified that Mirth Connect versions going as far back as 2015/2016 are vulnerable. “On Windows systems, where Mirth Connect appears to be most commonly deployed, it typically runs as the SYSTEM user” he said.

Sunkavally provided an example of exploiting the vulnerability in his blog post. He recommends that Mirth Connect users will want to upgrade to the latest patch release, which is 4.4.1, as of this writing.

Links:

GSK & Wayne Gretzky, Along With His AI-Generated Younger Self, Join Forces For RSV Vaccine Campaign

Posted in Commentary with tags on October 25, 2023 by itnerd

In a ground-breaking move for the Canadian pharma industry, GSK, a leading biopharma company, is the first to dive into the world of artificial intelligence (AI) in their latest ad campaign.  

GSK is pioneering the integration of AI technology in pharma advertising with its Canadian Arexvy (RSV vaccine) ad campaign, featuring hockey legend Wayne Gretzky as he engages in a conversation with his AI-generated younger self. This innovative spot aims to dispel the common misconception that RSV only impacts young people, emphasizing the importance of RSV protection for older adults and challenging conventional wisdom. 

Respiratory Syncytial Virus (RSV) is a contagious seasonal illness that can affect all age groups, but for some can have serious consequences. For older adults and individuals with specific health conditions, RSV can lead to severe infections, pneumonia, hospitalization, and even death. 1,2 Arexvy is the first RSV vaccine for older adults to be approved in Canada and is currently available through pharmacies across the country. 

You can see the ad here.

The Real Way To Stop Scammers Is For Microsoft, Apple, Google And Banks To Do More

Posted in Commentary with tags on October 25, 2023 by itnerd

Frequent readers of this blog know that I spend a lot of time and effort to fight and expose scams. Because I do this so much, I’ve thought about how these scams could be stopped once and for all. After all, even with announcements like this one, it’s pretty much common knowledge that the Indian government and law enforcement only make these arrests for show and not because they are serious about stopping scammers. With that in mind, I think that there are simple ways that the following organizations can do to stop scams:

  • Apple
  • Google
  • Microsoft
  • Remote Access Software Vendors
  • Banks

Let’s start with banks. What scammers will do is that they will have you log into your bank account via a web browser, and then do something to distract you so that the scammer can edit the HTML code to execute the scam. For example, refund scammers (that’s the type of scam where you will get an email claiming that you’ve signed up for a service that you didn’t and you call them to get a refund) will use this method to make it look like they deposited way too much money into your bank account. Then you have to return the difference to them, but they steal all your money instead. Thus based on that, the simple thing is to stop scammers from being able to edit HTML code to allow these scams to go forward. Which means banks need to step up to stop that from happening.

Now let’s move to Apple, Microsoft and Google. Scammers will use remote control software to execute their scams. I say that all of these companies in my mind need to treat remote control software as being malicious by default and make them way harder to be used for this purpose. You’ll note that I didn’t say block them outright. Because there are legitimate uses for remote control software. Doing real tech support for example. But if you make it more difficult for them to be installed and used, scammers will be less likely to use them. Another thought is to take the approach that Zoom has with their remote control software. Which is that sure you can use it easily, but you cannot have it running in the background all the time which will allow a scammer to connect to a computer whenever they want. That at least will mitigate the damage that these apps cause. Or they can take the Apple approach which is that remote control software that’s not made by Apple can’t do anything other than see the screen. That alone will make this software less useful to scammers. On top of that, companies who make remote access software need to do more as well. What I mean by that is that they need to do what AnyDesk has done and actively go after scammers who use their software and take them out. If other companies did that, scams become less of a problem instantly.

The bottom line is this. With the Indian government and Indian law enforcement not taking this problem seriously, and not having someone like Frank Castle around to “end” scammers, the only way to end the problem of scams is for banks and tech companies to step up and do more to make scams less effective. The solutions are there for these companies to make this happen. All that’s needed is the will to make it happen. The real question is, does the will exist for these companies? Let’s hope that it does exist as that will make us all a whole lot safer.

Relish In Memories Of Holidays Past with Epson’s FastFoto FF-680W

Posted in Commentary with tags on October 25, 2023 by itnerd

We can all feel a little nostalgic during the holiday season, and that is especially true for empty nesters. Looking back on all the happy holiday memories when the home was full can help you feel connected to loved ones, even if they no longer live nearby. The best way to cherish those beloved memories is to preserve them forever.

The Epson FastFoto FF-680W Wireless High-speed Photo Scanning System (MSRP: $799.99) is a worthwhile investment for those looking to restore, organize and digitize all their priceless family photographs. As the World’s Fastest Personal Photo Scanner, the FastFoto 680W can scan photos as fast as one photo per second. Given the product’s high speed and wireless connectivity, nostalgic family members can lovingly and efficiently preserve photographs for future generations. 

Gifting this scanner provides your loved ones with a project they’ll have fun working on for months or even years to come (depending on the size of their photo collection). The FastFoto has several high-tech features like auto enhancement, colour restoration and red-eye reduction, along with added voiceover and text options with the Epson FastFoto app, so your favourite empty nester can perfect, save and share the photographs of those they hold close to their hearts.

Shah Family Foundation Serves Up Their Social Media Parent Resource Guide

Posted in Commentary with tags on October 25, 2023 by itnerd

In light of yesterday’s news about the lawsuit against Meta, I wanted to share with you this new resource guide the Shah Family Foundation has created for parents to help their kids safely navigate social media.

There’s a lot of information out there and it can be hard to know what to trust, so they created “Your Brain on Social Media” to compile the latest news and research on social media and teen mental health, as well as resource guides from only verified and trusted experts for parents of kids at all stages: determining whether to let their children use social media; ensuring ongoing social media usage is safe; and addressing negative impacts of regular social media use.

Please have a look as it might be helpful given the times that we live in.

Flashpoint Releases Q3 Cyber Threat Intelligence Index

Posted in Commentary on October 25, 2023 by itnerd

 Flashpoint released its Q3 Cyber Threat Intelligence Index today: https://flashpoint.io/blog/cyber-threat-intelligence-index-q3-2023/.  

For Vulnerabilities, here are some highlights from the Index:

  • 7,373 new vulnerabilities were reported in Q3 2023, and 1,167 of them were missed by the Common Vulnerabilities and Exposures (CVE) and National Vulnerability Database (NVD).
  • Over 37 percent of Q3’s vulnerabilities are rated high (7.0 – 10.0) according to CVSSv2. Using CVSSv3, 53 percent of Q3’s vulnerabilities would be scored high to critical.
  • Using a comprehensive source of vulnerability intelligence can help organizations better prioritize by up to 88 percent. This can be achieved by focusing on remotely exploitable issues that have public exploits and a verifiable solution.

For Data Breaches, the report shows:

  • In Q3 2023, Flashpoint identified 1,422 data breaches that resulted in 639 million records being stolen or leaked.
  • The United States continues to experience the highest number of data breaches.
  • Ransomware surpasses unauthorized access (hacking) as the leading cause of data breaches in Q3. This may be a momentary trend, as hacking historically has been the number one source of breaches.

You an download the report here: https://flashpoint.io/wp-content/uploads/Q3_CTI_Index_2023-final.pdf

AI-Driven VISO TRUST Platform Transforms Third-Party Cyber Risk Management

Posted in Commentary with tags on October 25, 2023 by itnerd

VISO TRUST, the pioneering leader in AI-driven third-party risk management (TPRM), today introduced a major update and several industry-first features and innovations to its AI-driven TPRM platform to fundamentally transform the reach, effectiveness, operational efficiency and economics of TPRM programs.

The platform was first conceived in 2016 by and for CISOs and risk professionals, and its first AI-driven innovations were patented in 2017. Its 2020 introduction incorporated requirements gathered from more than 300 CISOs. Today, it’s relied upon by many of the largest and most mature companies, contains more than 2.4 million companies in the vendor database, recognizes more than 25 security frameworks, and leverages hundreds of different types of source artifacts.

With today’s new features (see below), the VISO TRUST platform lets organizations complete complex vendor assessments and identify high-risk vendors at a pace and precision level otherwise unknown, and that offers substantially greater market agility, as named customer endorsements confirm.

The mass migration of data onto third and Nth party SaaS, PaaS, and IaaS platforms now puts sensitive data at unprecedented risk. A platform that ingests TPRM data from the broad universe of sources with extreme accuracy, speed and ease of operation is emerging as an urgent need. VISO TRUST’s platform fully and elegantly addresses this crucial market gap with near real-time vendor risk analysis which dramatically lowers risk assessment costs and sharply improves accuracy of cyber threat detection.

New VISO TRUST Platform Features:

  • Rapid Risk Analysis: Lightning-fast vendor risk analysis reduces assessment time from months to minutes, empowering organizations to make swift, informed decisions with 5x more relevant findings than are typically found with manual and alternative automated approaches.
  • Infinite Potential Risk Network Ecosystem: The VISO TRUST Risk Network fosters collaboration and information sharing among organizations, strengthening collective security and resilience across growing third and Nth party relationships.
  • Expansion of New Controls Detection: VISO TRUST’s “Risk Dimensions” extends coverage across various risk areas, including AI trust, cyber insurance, resilience, privacy, relevant regulatory compliance and product security, providing a comprehensive view of vulnerabilities. This next-level visibility empowers organizations to proactively identify and mitigate risks across a wide spectrum of security domains.
  • Expansion of Artifact Intelligence: VISO TRUST’s platform leverages generative AI to enable unprecedented use cases, seamlessly translating security control information between questionnaires and diverse source artifacts and evidence.
  • Cumulative Impacts: The impacts of these technological advancements is staggering. Organizations can now achieve a reduction in third-party security risk exceeding 95%, spend less than 5 minutes to assess a vendor, and are 5 times more likely to identify high-risk vendors, setting a new industry standard for security, risk management and compliance teams and leaders.

Artifact Intelligence, VISO TRUST’s patented AI-driven TPRM process, seamlessly translates security control information. It is backed by an exceptional assurance and risk modeling accuracy rate exceeding 98%. It derives information from an extensive range of public and private sources, including policies, standards, trust portals, trust reports (such as SOC, ISO, and PCI reports), penetration test reports, and automated compliance platforms.

Take a self-guided interactive demo of VISO’s AI platform or create an account to receive an AI cyber risk assessment at no cost.