My major interest is in getting signal intelligence, risk vectors, and detailed information that BitSight collects around the attack surface of a company. We integrate this information with our overall cyber detection and counter-response strategy.
Reviews from AWS customer
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
External reviews are not included in the AWS star rating for the product.
BitSight feedback
Great Experience and reactive team!
BitSight User Experience
Excellent
BitSight's External Attack Surface Management (EASM) solution.
*Detailed risk prioritization that helps identify critical vulnerabilities quickly.
*The user interface is very good and userfriendly.
*the automation features streamline monitoring tasks effectively.
Enhance the customizable reporting options
I haven't used BitSight as a customer, nor have I explored its other offerings, but based on my testing, their EASM solution is a solid choice!
Bitsight: In-Depth Vulnerability Detection and External threats
Comprehensive risk vectors and detailed anomaly insights enhance cyber hygiene
What is our primary use case?
How has it helped my organization?
All our employees benefit from the information, not directly through BitSight, but through our own security analytics platform. As CISO, one of our objectives was cyber hygiene, and the major provider of metrics for cyber hygiene was BitSight.
What is most valuable?
The best thing about BitSight is the comprehensive list of risk vectors, covering compromised systems, diligence failures, and behavioral anomalies. The ability to drill down from a score to very detailed factual information about anomalies is valuable. They have a good web portal for users to access, a good API for system integration, and a comprehensive pricing structure.
What needs improvement?
BitSight could improve the classes and lower-level detections of anomalies that compound the information used to compute the rating. They could evolve to be a more powerful scanner of cyber hygiene for a company's exposed attack surface, allowing them to compete with companies like Qualys and CyCognito. It's important to ensure a correlation between the score and detailed information to avoid confusion.
For how long have I used the solution?
We have been using this solution since 2016, about eight years.
What do I think about the stability of the solution?
BitSight is completely stable. As with any platform, when they update or fine-tune the rating algorithm, there may be changes in rating. That said, this is normal.
What do I think about the scalability of the solution?
BitSight is scalable, and there are no issues surrounding its scalability.
How are customer service and support?
The technical support from BitSight was very good. I was a privileged customer as BitSight's technical office was based in Lisbon, allowing personal connections. It was perfect for me, but other customers might not have the same experience.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is straightforward for a normal company. For telcos, there is some additional work required to clean up the attack surface, however, it's still pretty easy. You can start almost plug-and-play and then make necessary adjustments through their portal.
Which other solutions did I evaluate?
I am currently evaluating the possibility of also using SecurityScorecard in a similar manner.
What other advice do I have?
BitSight is still better than SecurityScorecard, and those two are completely separated from the rest of the market. For us, BitSight is better.
I'd rate the solution nine out of ten.