Close Menu
Philstar Tech
    • Deals
    • Contact Us
    • About Us
    Philstar Tech
    • Home
    • All Post
    • News
      • Features
    • Tech @Life
    • Reviews
      • Fitness
      • Laptops
      • Mobility
      • Smartphones
      • Wearables
    • Opinion
    Philstar Tech
    Home » Sophos introduces internal attack surface management to help organizations uncover hidden risks
    Features

    Sophos introduces internal attack surface management to help organizations uncover hidden risks

    PhilSTAR Tech TeamBy PhilSTAR Tech TeamJuly 11, 20253 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Cybersecurity isn’t just about keeping threats out. It’s also about knowing what’s already exposed within.

    Sophos is taking that idea further by expanding its Managed Risk service to include Internal Attack Surface Management (IASM). The goal? Help organizations identify hidden vulnerabilities inside their networks before cybercriminals do. With ransomware attacks on the rise and internal misconfigurations often going unnoticed, this update could be a critical step toward stronger, more proactive defense.

    Looking inward: Why internal risk matters

    Sophos is stepping up its cybersecurity game with a new feature that looks inward, literally. The company just rolled out Internal Attack Surface Management (IASM) as part of its Sophos Managed Risk service, aiming to help organizations spot and fix vulnerabilities hiding within their own networks.

    While many security teams focus on external threats, internal exposures are just as dangerous and often overlooked. According to Sophos’ State of Ransomware 2025 report, 40% of ransomware victims said the attack happened because of an exposure they didn’t even know existed. That’s the kind of blind spot Sophos wants to eliminate.

    How IASM works

    With IASM, organizations get what Sophos calls an “attacker’s-eye view” of their internal environment. The system runs unauthenticated internal scans—meaning it doesn’t need login credentials or privileged access—to identify things like open ports, exposed services, and misconfigurations. These are the weak points attackers often exploit to get a foot in the door.

    Powered by Tenable, guided by AI

    The feature is built on Tenable technology, using Nessus scanners to regularly sweep internal assets for vulnerabilities. It also leverages AI-powered prioritization, helping teams identify which threats pose the highest risk so they can take action faster and more efficiently.

    A unified, managed approach

    One of the standout aspects of Sophos’ approach is its decision to combine internal and external attack surface management into a single managed service. While many vendors split these capabilities into separate tools or offerings, Sophos keeps it all under one roof—backed by its globally recognized Managed Detection and Response (MDR) team.

    The Sophos Managed Risk team is Tenable-certified and collaborates closely with MDR analysts to stay on top of zero-days, known vulnerabilities, and active exploitation risks across customer environments.

    Available now at no extra cost

    IASM is now live for all Sophos Managed Risk customers—no license changes, no extra cost. Existing users can start deploying Tenable Nessus scanners and scheduling automated scans directly from the Sophos Central console.

    Learn more at: Sophos.com/Managed-Risk

    cybersecurity internal attack surface ransomware prevention Sophos Managed Risk vulnerability management
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    PhilSTAR Tech Team

    The editorial team of PhilSTAR Tech.

    Related Posts

    Building trust, not just startups: Hong Kong’s road to an innovation hub

    November 13, 2025

    Tondo’s tech priest: When God is in the machine

    November 10, 2025

    Globe brings next-generation authentication to benefit millions of customers through its API portfolio

    November 5, 2025

    Most Popular

    Tondo’s tech priest: When God is in the machine

    November 10, 20256 Mins Read

    Here’s where you can officially buy the Nintendo Switch 2 in the Philippines (with 2 years warranty perks to match)

    July 8, 20253 Mins Read

    JBL invites you to hear the future with its latest lineup of audio powerhouses

    November 11, 20254 Mins Read

    Apple accessories that cost more than my feelings (plus Apple’s new Pocket thing)

    November 13, 20254 Mins Read

    PLDT expands its lifestyle bundles with iGV Game Pass partnership

    November 10, 20252 Mins Read

    Hackathon winners highlight AI’s potential in community solutions

    November 10, 20252 Mins Read

    Latest

    Apple accessories that cost more than my feelings (plus Apple’s new Pocket thing)

    By Lia EspinaNovember 13, 20254 Mins Read

    3 new Valve gadgets that could shake up your gaming setup in 2026

    By Lia EspinaNovember 13, 20253 Mins Read

    The C Series gets a boost: realme readies the C85 5G for PH launch

    By PhilSTAR Tech TeamNovember 13, 20252 Mins Read

    G2E Asia’s grand return to the Philippines: Over 100 brands, 50 expert speakers, and 5 networking cocktails this December

    By PhilSTAR Tech TeamNovember 13, 20253 Mins Read

    Building trust, not just startups: Hong Kong’s road to an innovation hub

    By Danie BravoNovember 13, 20255 Mins Read

    It’s time to collect your heroes! KAYOU brings Mobile Legends trading cards to the Philippines

    By PhilSTAR Tech TeamNovember 12, 20252 Mins Read
    Copyright © 2025 Philstar Tech | Powered by The Philippine STAR

    Type above and press Enter to search. Press Esc to cancel.