Forrester TEI™ Finds Cisco Vulnerability Administration Delivers 125% ROI


This weblog explores the operational and monetary affect of Cisco Vulnerability Administration from a Forrester TEIresearch carried out by Forrester Consulting and commissioned by Cisco.

Oh, the torture of not having a powerful risk-based vulnerability administration resolution in place.

You understand what I’m speaking about. Counting on ineffective and unmanageable CVSS, homegrown scoring methods, vendor scoring, or a mix of these choices that can assist you attempt to prioritize the mountain of vulnerabilities in your atmosphere. It results in a number of complications and never a number of progress to indicate.

Much more, it negatively impacts the working relationship between Safety and IT, particularly when one crew is passing over a laundry record of vulnerabilities to the opposite with minimal context and understanding of enterprise affect.

However it doesn’t should be this fashion. Cisco Vulnerability Administration (previously Kenna.VM) takes a risk-based strategy to vulnerability prioritization that is fueled by knowledge science, enabling Safety and IT groups to focus their restricted sources on actual danger and remediate extra effectively. ​

An April 2023 Complete Financial ImpressionTM research carried out by Forrester Consulting and commissioned by Cisco discovered that Cisco Vulnerability Administration delivered a 125% return on funding (ROI) over three years, and a payback interval of simply 6 months for that funding.

Clients Interviewed for This Research

Forrester interviewed 5 Cisco Vulnerability Administration prospects (Determine 1) and fashioned a composite group primarily based on their traits to research the monetary and operational impacts of Cisco Vulnerability Administration. The composite group is a world group with $10 billion in annual income, 100,000 property lined by Cisco Vulnerability Administration, and 10 safety analyst FTEs.

Determine 1: Traits of Cisco Vulnerability Administration Clients Interviewed for the Complete Financial Impression of Cisco Vulnerability Administration, an April 2023 commissioned research by Forrester Consulting for Cisco

The research uncovered that, after adopting Cisco Vulnerability Administration, prospects rework their vulnerability administration packages by streamlining their safety and IT operational effectivity and decreasing the probability of information breaches.

Let’s dig into the findings.

20% Discount in Threat of Breach

Breaches. Nobody likes them, however they exist. Forrester discovered that Cisco Vulnerability Administration lowered the danger of breach by serving to the composite group’s safety and IT operation groups prioritize their efforts and concentrate on probably the most essential vulnerabilities. In doing so, these groups scale back the time it takes to remediate vulnerabilities and implement automation to proactively tackle potential safety points. Over three years, the composite group reduces the danger of breach by 20%, with financial savings value $1.5 million.

A senior supervisor of enterprise vulnerability administration in leisure and media explains, “If you’ve obtained 100 issues to have a look at and they’re all essential, nothing is essential. With [Cisco Vulnerability Management], we’re in a position to say, ‘No, concentrate on these 10 to fifteen issues, not 100.’”

12% Improve in Safety Analyst Effectivity

With Cisco Vulnerability Administration, safety analysts concentrate on probably the most essential vulnerabilities, optimize how they allocate sources to handle vulnerabilities, and higher talk the significance to their IT groups and management. On account of these advantages, safety analysts for the composite group improve their productiveness by 12%, value about $276,000 over three years.

As said by the worldwide head of cyber vulnerability administration in a monetary providers group, “The profit is not only about decreasing [vulnerability] quantity, it’s about shifting consideration to what actually must be targeted on. The enterprise additionally understands the criticality and is pushing these remediations. [Cisco Vulnerability Management] helped us enhance maturity, scale back danger, and assist concentrate on what’s essential.”

Moreover, safety groups expertise stronger cross-functional communication and collaboration with their IT and management groups when utilizing Cisco Vulnerability Administration.

“We’ve seen about 14 hours a day of time financial savings unfold out amongst the entire crew after you think about all of the back-and-forth explanations by emails, conferences, and management briefs,” says senior supervisor of enterprise vulnerability administration, leisure and media. “Now, we simply level individuals to a dashboard that leverages the vulnerability intelligence from [Cisco Vulnerability Management].”

7,800 Hours Saved Yearly by IT Operations

Oftentimes, Safety and IT groups are confronted with competing priorities. And when not a number of context is being shared with IT that explains why sure fixes are wanted, remediation can decelerate.

The Forrester TEI experiences that Cisco Vulnerability Administration helps the composite group’s IT groups prioritize probably the most essential vulnerabilities, saving them time in remediation. Cross-team collaboration between safety and IT teams improves, which streamlines operations and empowers IT sources to personal extra of the vulnerability administration course of. This saved IT Operations 7,800 hours yearly and saved the composite group $514,000 over three years.

The director of safety surveillance and vulnerabilities administration informed Forrester: “Of the vulnerabilities which might be [Cisco Vulnerability Management] associated, [our remediation teams] spend a minimum of half the time that they used to spend on vulnerability administration. I’d say in the event that they [previously] spent 15 to twenty minutes to know the vulnerability, open the file, search for the goal host, with [Cisco Vulnerability Management], they most likely minimize that point by half.”

Extra Advantages Past the Numbers

Along with the quantified findings uncovered, the composite group noticed a number of unquantified advantages, together with improved management visibility and communication, in addition to improved collaboration between safety and IT.

What’s extra, Forrester additionally discovered that Cisco Vulnerability Administration improved the worker expertise by serving to groups tie their efforts to enterprise affect and scale back guide effort on tedious duties. “The profit is not only about decreasing [vulnerability] quantity, it’s about shifting consideration to what actually must be targeted on. The enterprise additionally understands the criticality and is pushing these remediations, says a world head of cyber vulnerability administration in monetary providers. “[Cisco Vulnerability Management] helped us enhance maturity, scale back danger, and assist concentrate on what’s essential.”

Forrester Proves Cisco Vulnerability Administration’s Worth with 125% ROI Over 3 Years

Forrester’s monetary evaluation of Cisco Vulnerability Administration highlights financial savings of $2.32 million for the composite group over a three-year interval, and a 125% return on funding (ROI).

Cisco Vulnerability Administration makes use of knowledge science to take a risk-based strategy to prioritization and it’s working. Clients right this moment are not guessing the place to focus their remediation efforts. They will simply determine the areas of serious danger and take motion, resulting in faster time to worth.

Keen on studying extra? Learn the complete research >

Supply: The Complete Financial Impression of Cisco Vulnerability Administration, an April 2023 commissioned research carried out by Forrester Consulting on behalf of Cisco.


We’d love to listen to what you assume. Ask a Query, Remark Under, and Keep Related with Cisco Safe on social!

Cisco Safe Social Channels

Instagram
Fb
Twitter
LinkedIn

Share:



Related Articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest Articles