Close Menu
Philstar Tech
    • Deals
    • Contact Us
    • About Us
    Philstar Tech
    • Home
    • All Post
    • News
      • Features
    • Tech @Life
    • Reviews
      • Fitness
      • Laptops
      • Mobility
      • Smartphones
      • Wearables
    • Opinion
    Philstar Tech
    Home » Sophos introduces internal attack surface management to help organizations uncover hidden risks
    Features

    Sophos introduces internal attack surface management to help organizations uncover hidden risks

    PhilSTAR Tech TeamBy PhilSTAR Tech TeamJuly 11, 20253 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Cybersecurity isn’t just about keeping threats out. It’s also about knowing what’s already exposed within.

    Sophos is taking that idea further by expanding its Managed Risk service to include Internal Attack Surface Management (IASM). The goal? Help organizations identify hidden vulnerabilities inside their networks before cybercriminals do. With ransomware attacks on the rise and internal misconfigurations often going unnoticed, this update could be a critical step toward stronger, more proactive defense.

    Looking inward: Why internal risk matters

    Sophos is stepping up its cybersecurity game with a new feature that looks inward, literally. The company just rolled out Internal Attack Surface Management (IASM) as part of its Sophos Managed Risk service, aiming to help organizations spot and fix vulnerabilities hiding within their own networks.

    While many security teams focus on external threats, internal exposures are just as dangerous and often overlooked. According to Sophos’ State of Ransomware 2025 report, 40% of ransomware victims said the attack happened because of an exposure they didn’t even know existed. That’s the kind of blind spot Sophos wants to eliminate.

    How IASM works

    With IASM, organizations get what Sophos calls an “attacker’s-eye view” of their internal environment. The system runs unauthenticated internal scans—meaning it doesn’t need login credentials or privileged access—to identify things like open ports, exposed services, and misconfigurations. These are the weak points attackers often exploit to get a foot in the door.

    Powered by Tenable, guided by AI

    The feature is built on Tenable technology, using Nessus scanners to regularly sweep internal assets for vulnerabilities. It also leverages AI-powered prioritization, helping teams identify which threats pose the highest risk so they can take action faster and more efficiently.

    A unified, managed approach

    One of the standout aspects of Sophos’ approach is its decision to combine internal and external attack surface management into a single managed service. While many vendors split these capabilities into separate tools or offerings, Sophos keeps it all under one roof—backed by its globally recognized Managed Detection and Response (MDR) team.

    The Sophos Managed Risk team is Tenable-certified and collaborates closely with MDR analysts to stay on top of zero-days, known vulnerabilities, and active exploitation risks across customer environments.

    Available now at no extra cost

    IASM is now live for all Sophos Managed Risk customers—no license changes, no extra cost. Existing users can start deploying Tenable Nessus scanners and scheduling automated scans directly from the Sophos Central console.

    Learn more at: Sophos.com/Managed-Risk

    cybersecurity internal attack surface ransomware prevention Sophos Managed Risk vulnerability management
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    PhilSTAR Tech Team

    The editorial team of PhilSTAR Tech.

    Related Posts

    How Filipinos can stay safe from romance scams

    February 20, 2026

    What ‘Titan Tough’ really means after a month of use

    February 13, 2026

    AI-driven phishing seen as biggest cyber risk for travel firms

    February 10, 2026

    Most Popular

    Messenger.com is ending, but your chats will continue

    February 17, 20262 Mins Read

    RCBC enables first nationwide cardless withdrawals for GCash users

    January 27, 20262 Mins Read

    Here’s where you can officially buy the Nintendo Switch 2 in the Philippines (with 2 years warranty perks to match)

    July 8, 20253 Mins Read

    PH named host of MarketHub Asia 2027 Travel Summit

    February 19, 20262 Mins Read

    Worried about AI replacing you? Researchers say the stress has a name

    February 20, 20262 Mins Read

    Service centers in the Philippines (National Capital Region)

    February 14, 20255 Mins Read

    Latest

    Jackery brings Explorer 300 Plus and Explorer 1000 v2 to PH

    By PhilSTAR Tech TeamFebruary 21, 20263 Mins Read

    PH set to have its own national AI research center

    By Dawn SolanoFebruary 21, 20262 Mins Read

    How Filipinos can stay safe from romance scams

    By Marlet SalazarFebruary 20, 20262 Mins Read

    Worried about AI replacing you? Researchers say the stress has a name

    By Dawn SolanoFebruary 20, 20262 Mins Read

    Unlimited fiber at ₱23.30 a day with PLDT Home Fiber Prepaid

    By PhilSTAR Tech TeamFebruary 20, 20262 Mins Read

    PH named host of MarketHub Asia 2027 Travel Summit

    By Dawn SolanoFebruary 19, 20262 Mins Read
    Copyright © 2026 Philstar Tech | Powered by The Philippine STAR

    Type above and press Enter to search. Press Esc to cancel.