Pondurance vCISO

Additional Info

CompanyPondurance
Websitehttps://www.pondurance.com/
Company size (employees)100 to 499
Headquarters RegionNorth America

Overview

Pondurance is the leading provider of cybersecurity SaaS and services to mid-market organizations that are entrusted with regulated personal data and as a result at risk of data breach. Our two-decade history of providing cybersecurity risk, compliance and GRC services, especially for healthcare, education, public sector, direct-to-consumer, and other industries subject to laws and regulations associated with personal data security, privacy and breach notification.

Mid-market organizations struggle to attract, retain, and compensate top level cybersecurity resources, despite the significant security risks they face from malicious actors and the tough compliance requirements they face. One approach for addressing their myriad security risks is to bring on a virtual CISO provider, one that can provide the C-level expertise and savvy at a relatively modest overall cost.

Pondurance has a large and successful security advisory services staff of highly regarded and certified professionals, as well as CISOs-in-residence, that together enable Pondurance to deliver an unparalleled vCISO capability. In particular, Pondurance uses a proprietary, risk-based methodology that addresses and reduces cybersecurity risks across the entire security lifecycle.

Key Capabilities / Features

First and foremost, Pondurance is unique in that we have developed a proprietary risk-based methodology proven to reduce data breach risks for our customers. Our advisory services team is experienced in applying this methodology throughout the security lifecycle in order to eliminate breach risks via security analytical services programs, and standards combined with enhancing and demonstrating compliance with security, privacy and breach laws and regulations.


Additionally, we provide our customers with a turnkey MDR service that was similarly engineered to eliminate breach risks and provide efficacy in detection, analysis, and remediation of cyber threats and incidents. Our MDR service is built on a modern, cloud-native platform that provides a unified dashboard for monitoring and reporting that is valued by our customer executives and board for understanding the risk environment and providing documentation for regulatory compliance.


Lastly, Pondurance is different in that it has a top-tier data forensics and incident response (DFIR) team that handles over 100 cyber incidents and breaches each year. The experience and learnings from this team provide uniquely valuable information on emerging trends in threats, exploited vulnerabilities, and tactics, techniques and procedures actively in use by threat actors. With its focus on the mid-market, Pondurance’s ubiquity with cyber insurers and their partner cybersecurity/data privacy law firms is particularly beneficial in reducing risks during the incident response process.


How we are different

Our capabilities span the cybersecurity risk lifecycle for our mid-market customers. This includes the ability to advise and implement security programs from assessment and planning, to development and implementation, into monitoring and sustaining a high level cybersecurity posture.


Our risk-based methodology is uniquely effective in ensuring that our customers address their highest risk threats, vulnerabilities, and exposures. All while addressing compliance risks and obligations around data security, data privacy, and incident response.


We have a top-level DFIR team that handles over 100 incident engagements a year, is trusted by an on-panel for over 40 leading cyber insurers, and works extensively with every leading U.S. cybersecurity and data privacy legal team that is active in incident response and data breach.


  • Vote for this Nomination
    (click the thumbs-up icon to cast your vote)

Browse Award Nominations