Close Menu
Philstar Tech
    • Deals
    • Contact Us
    • About Us
    Philstar Tech
    • Home
    • All Post
    • News
      • Features
    • Tech @Life
    • Reviews
      • Fitness
      • Laptops
      • Mobility
      • Smartphones
      • Wearables
    • Opinion
    Philstar Tech
    Home » Sophos introduces internal attack surface management to help organizations uncover hidden risks
    Features

    Sophos introduces internal attack surface management to help organizations uncover hidden risks

    PhilSTAR Tech TeamBy PhilSTAR Tech TeamJuly 11, 20253 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Cybersecurity isn’t just about keeping threats out. It’s also about knowing what’s already exposed within.

    Sophos is taking that idea further by expanding its Managed Risk service to include Internal Attack Surface Management (IASM). The goal? Help organizations identify hidden vulnerabilities inside their networks before cybercriminals do. With ransomware attacks on the rise and internal misconfigurations often going unnoticed, this update could be a critical step toward stronger, more proactive defense.

    Looking inward: Why internal risk matters

    Sophos is stepping up its cybersecurity game with a new feature that looks inward, literally. The company just rolled out Internal Attack Surface Management (IASM) as part of its Sophos Managed Risk service, aiming to help organizations spot and fix vulnerabilities hiding within their own networks.

    While many security teams focus on external threats, internal exposures are just as dangerous and often overlooked. According to Sophos’ State of Ransomware 2025 report, 40% of ransomware victims said the attack happened because of an exposure they didn’t even know existed. That’s the kind of blind spot Sophos wants to eliminate.

    How IASM works

    With IASM, organizations get what Sophos calls an “attacker’s-eye view” of their internal environment. The system runs unauthenticated internal scans—meaning it doesn’t need login credentials or privileged access—to identify things like open ports, exposed services, and misconfigurations. These are the weak points attackers often exploit to get a foot in the door.

    Powered by Tenable, guided by AI

    The feature is built on Tenable technology, using Nessus scanners to regularly sweep internal assets for vulnerabilities. It also leverages AI-powered prioritization, helping teams identify which threats pose the highest risk so they can take action faster and more efficiently.

    A unified, managed approach

    One of the standout aspects of Sophos’ approach is its decision to combine internal and external attack surface management into a single managed service. While many vendors split these capabilities into separate tools or offerings, Sophos keeps it all under one roof—backed by its globally recognized Managed Detection and Response (MDR) team.

    The Sophos Managed Risk team is Tenable-certified and collaborates closely with MDR analysts to stay on top of zero-days, known vulnerabilities, and active exploitation risks across customer environments.

    Available now at no extra cost

    IASM is now live for all Sophos Managed Risk customers—no license changes, no extra cost. Existing users can start deploying Tenable Nessus scanners and scheduling automated scans directly from the Sophos Central console.

    Learn more at: Sophos.com/Managed-Risk

    cybersecurity internal attack surface ransomware prevention Sophos Managed Risk vulnerability management
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    PhilSTAR Tech Team

    The editorial team of PhilSTAR Tech.

    Related Posts

    AI for everyone: Celebrating NVIDIA’s RTX AI PC Day

    January 26, 2026

    The iPad is the best tool for making royalty-free music, even for beginners

    January 19, 2026

    Filipinos are most patient online to wait, until it becomes unreasonable

    January 15, 2026

    Most Popular

    RCBC enables first nationwide cardless withdrawals for GCash users

    January 27, 20262 Mins Read

    Cebu is home to largest cold storage run by AI and robotics

    June 27, 20256 Mins Read

    Here’s where you can officially buy the Nintendo Switch 2 in the Philippines (with 2 years warranty perks to match)

    July 8, 20253 Mins Read

    Yes, you can still use Google on a HUAWEI phone. I tried it. Here’s what actually works

    July 29, 20254 Mins Read

    HONOR X9d review: beyond the durability hype, a new standard in “midrange” capability

    January 9, 20265 Mins Read

    Ardent Networks expands cybersecurity portfolio through partnership with intelligent wave inc.

    January 26, 20262 Mins Read

    Latest

    GRAMMYs, IBM bring AI to music fans

    By Dawn SolanoJanuary 30, 20261 Min Read

    OPPO deepens Google Cloud partnership to power next-gen AI system

    By Dawn SolanoJanuary 30, 20262 Mins Read

    TCL launches AI-powered air conditioners to cut energy use

    By Dawn SolanoJanuary 30, 20262 Mins Read

    Aurora Gaming Philippines shocks the world and reigns supreme at M7

    By PhilSTAR Tech TeamJanuary 28, 20266 Mins Read

    Your own personal hell: Why you should play Silent Hill 2

    By Jianzen DeananeasJanuary 28, 20265 Mins Read

    Mapúa University secures strategic partnership with Capcom and Prime Manpower for Philippine game industry growth

    By Danie BravoJanuary 28, 20264 Mins Read
    Copyright © 2026 Philstar Tech | Powered by The Philippine STAR

    Type above and press Enter to search. Press Esc to cancel.