SecurityScorecard expands from security ratings to supply chain detection and response

Oct. 8, 2024
The company seeks to build on its security ratings foundations to turn vendor risk managers into supply chain incident responders.

SecurityScorecard announced its transformation from a pure-play security ratings company to Supply Chain Detection and Response (SCDR). The company’s shift to SCDR reflects the evolving needs of cybersecurity practitioners and the growing threat emanating from third-party and extended ecosystem business partners.

Jason Thompson, Chief Marketing and Strategy Officer, SecurityScorecard, said, “One year ago we launched MAX as the first SCDR solution on the market. Legacy security ratings vendors dump mountains of data on customers, but without context and tooling specifically designed to enable collaboration with their business partners, security teams have struggled to protect their businesses from supply chain incidents. With SCDR, security teams gain access to precise issue-level data and robust response capabilities that reduce cyber risk in their supply chain while eliminating friction in their vendor management processes.”

SCDR drives critical issue identification, vendor responsiveness, and time to incident resolution, including:

  • Detection and remediation of zero-day vulnerabilities and active infections in the supply chain in as little as 48 hours
  • A streamlined vendor collaboration process that reduces issue resolution time by 90%
  • A 75% reduction in third-party sourced breaches as a result of improved cybersecurity postures in the supply chain

Kevin Scribner, Director of Technology Risk Management, McDonald’s, said, "SecurityScorecard MAX bolsters our third-party cybersecurity posture quickly and efficiently through proactive, real-time risk monitoring and remediation. With MAX, we unlock the ability to identify a wide range of cybersecurity concerns across our global vendor landscape and partner with those vendors to respond to and eliminate threats in our supply chain.”

Over the past year, SecurityScorecard has evolved its entire platform into a full detection and response solution. The company is uniquely positioned to lead the SCDR category.

  • SecurityScorecard independently collects, curates, and enriches 99% of its data.
  • The acquisition of LIFARs, a cyber resiliency firm, allowed SecurityScorecard to develop a proprietary approach to supply chain incident response.
  • Any organization can manage its attack surface for free using SecurityScorecard, creating an environment for organizations to work with suppliers on issue resolution.

Dr. Aleksandr Yampolskiy, CEO and Co-Founder, SecurityScorecard, said, “SecurityScorecard’s future builds on our heritage as the security ratings leader with a focus on helping our customers identify critical issues, remove friction with vendor collaboration, and reduce the time it takes to resolve those issues. Together, we’re empowering organizations to stay ahead of emerging threats, be better equipped to respond to incidents when they occur, and build a more resilient supply chain."