Rapid7 NeXpose

Rapid7 NeXpose provides complete coverage for vulnerability assessment and management for all assets on your network; databases, web applications, operating systems, and applications.

NeXpose Web Application Security scans web application servers and all Web applications for threats such as SQL injection and cross-site scripting XSS. Rapid7 NeXpose comprehensively scans databases for vulnerabilities. In addition Rapid7 NeXpose scans all systems and network devices for vulnerabilities and misconfigurations to minimise security risks. In addition to these scans, Rapid7 identifies and mitigate exploitable security threats in your infrastructure.

Unified Vulnerability Management

Benefits

Overview

Leadership

Unified Vulnerability Management Solution

Intelligence

NeXpose provides deeper insight into the breach paths for vulnerabilities identified across multiple threat vectors, including Web applications, operating systems, networks and databases by detailing the risk that discovered vulnerabilities represent to critical business data. With Exploit Exposure, NeXpose is the only vulnerability management solution to use real exploit intelligence to perform risk classification.

Accuracy

NeXpose uses a highly intelligent scan engine that understands how attackers behave by “chaining” vulnerabilities together for a successful exploit. Equally as important, NeXpose's scan engine is capable of correlating vulnerabilities across networks, operating systems, Web applications, databases and a wide range of system platforms. These capabilities reduce false positives to less than 1%.

Remediation Readiness

With NeXpose, remediation starts by helping you understand vulnerabilities that represent the greatest risk to your organization. NeXpose is the only product that includes real exploit intelligence combined with CVSS base scores, temporal, environment, and asset criticality for risk classification. NeXpose also provides a detailed, sequenced remediation roadmap with time estimates for each task which can then be managed either through NeXpose’s built-in ticket system or through a leading help desk system such as Remedy, Peregrine, Tivoli, or CA.

First and second generation scanning products are focused on scanning systems against a list of known vulnerabilities. These tools are standalone implementations that lack the scalability, management, reporting, remediation, and advanced performance capabilities required for an enterprise-wide deployment. NeXpose was designed for large-scale deployments that support complex and distributed computing environments.

NeXpose also offers unparalleled Web scanning to detect XSS and SQL injection vulnerabilities. Web scanning is critical for security systems now that 99.99% of all records in 2008 were breached from Web assets.

NeXpose is the only vulnerability management solution that includes support for Web applications, databases, operating systems, and network devices in a single system. Combining NeXpose’s proven vulnerability assessment power with an integrated ticketing and reporting system yields an effective solution for enterprises in which multiple parties are part of the security solution.

In 2010 Rapid7®, the leading provider of unified vulnerability management  and penetration testing solutions was awarded the Frost & Sullivan 2010 Product Line Strategy of the Year Award in vulnerability management. According to the full report and analysis of the vulnerability management market by Frost & Sullivan, which included in-depth interviews of customers, partners and vendors, this honour recognizes the Company's innovative vulnerability management solutions, impressive market growth and continued dedication to leading the vulnerability management field. To evaluate Rapid7 against its key competitors, Frost & Sullivan used rigorous benchmark criteria, including breadth of product line, size of addressable customer base, impact on customer value, impact on market share and breadth of applications/markets served.

According to the report, "Rapid7's strong growth rates have translated to a steady gain in market share. The Company's product line strategy provides excellent customer value and Rapid7 continues to seek new avenues for growth. For Rapid7, this leading product-line strategy promises continued growth and increased market penetration."

"The Rapid7 strategy focuses on increasing its product value by expanding its capabilities with unique functionality in order to achieve a holistic security practice," says Chris Rodriguez, industry analyst. "This formula has found validation with security-conscious customers, which bodes well for Rapid7's continued growth in the future." Specifically, Rapid7 was acknowledged for its development of a comprehensive product line, including NeXpose® Community, NeXpose® Enterprise and the recent release of NeXpose®4.10, which cater to the breadth of the vulnerability management market.

The report recognized that "Rapid7's competitors have focused on either partnering with vendors that provide application security testing, or developing these capabilities on their own. However, Rapid7 has offered this as a feature of NeXpose from the product's introduction. As a result, NeXpose is integrated and broad scanning capabilities already provided a strong value to customers. With the addition of Metasploit Express and Pro, Rapid7 further increased the value of its solutions by offering an innovative capability that hasn't been offered in other enterprise vulnerability management solutions."

"The vulnerability management market has become increasingly competitive in recent years, as the threats we face change and vendors are forced to adopt new product features and functionality," said Mike Tuchen, president and CEO, Rapid7. "In order to combat those challenges, a strong product line strategy is essential to the health of any vendor in our market, and, therefore, we have made it a priority to stay focused on innovative research and development that keep us ahead of the curve. With our expansive product portfolio, including integrated vulnerability management and penetration testing solutions, we have successfully grown into new markets with solutions that differentiate us from our competitors and reach a broader customer base. We are thrilled to receive this prestigious recognition in honor of those dedicated efforts."


More about Rapid7 NeXpose

expand all

GRC, Risk Analysis, Network Performance Analysis and SIEM

expand

Rapid7 NeXpose unified vulnerability management integrates with Archer, Agiliance, Modulo, Rsam, RedSeal, Riverbed, ArcSight, Enterasys, Juiper Networks, netForensics, nitrosecurity, Novell, Prism Microsystems, Q1 Labs, RSA, SecureWorks, Symantec, TriGeo.

Multiple Editions - Free, Consultants, SMB and Enterprise

expand

NeXpose Enterprise is a vulnerability assessment, policy compliance and remediation management solution designed for organizations with large networks, which require the highest levels of scalability, performance, and deployment flexibility. NeXpose Consultant Edition has been specifically created to meet the comprehensive needs of larger security consultants and auditors. NeXpose Consultant Edition provides essentially the same capabilities as NeXpose Enterprise while streamlining the usage model to single users with simpler deployment needs. To fill the void between traditional free products and high-end vulnerability assessment solutions, Rapid7 offers NeXpose Express. A great way to get started quickly with a vulnerability management program, NeXpose Community Edition is a free, single-user version of NeXpose.

Architecture Options

expand

Key architectural components include

  • NeXpose Security Console

    • Define and manage asset groups, roles, security, scanning and reporting
    • Manage multiple servers; consolidate data
    • Communicates with NeXpose Scanning Engines to start scans
    • Generates and distributes reports
  • NeXpose Scanning Engine

    • Performs scanning, threat correlation and vulnerability detection
    • Install multiple scanning engines within network, outside firewall, inside DMZ or outside network perimeter
    • Supports credentialed and non-credentialed scans
    • Performs deep inspection checks of system files to detect unauthorized programs, validate updates and check for worms
    • Stores scan results
    • Scan Engine and Security Console can run on same machine
    • "Agent" software is not required on target device at any time
  • Extensive XML Vulnerability Database

    • More than 14,000 vulnerability definitions and 54,500 vulnerability checks against 1,500 devices including networks, operating systems, databases and servers
    • Full-text searchable database with links to cross references and citations
    • Complete explanations of the vulnerability, links, vulnerable device
    • Regular updates via subscription process
  • Artificial Intelligence Engine

    • NeXpose uses an expert intelligence system, JESS (Jave Expert System Shell), to mimic an attack by chaining together vulnerabilities across multiple layers including network, OS, web application and database.
  • Broad Platform Coverage

    • Support for wide variety of hardware, software, database and application scanning
    • Scan support for multiple types of operating systems for vulnerabilities and networked devices (such as routers and firewalls)
    • Vulnerability audit support for many systems and services such as SMTP, IMAP, POP, LDAP, Finger, DNS, SNMP, RPC, FTP, Registry

Rapid7 NeXpose - Beyond PCI DSS

expand

Rapid7 NeXpose contains policy templates and reporting for PCI DSS. PCI DSS compliance is just the start of a fully-fledged security program. Many vulnerabilities fall below the PCI benchmark (CVSS 4 or above). Based on this guideline, other vulnerability management products would report PCI compliance and not bother to identify lower rated vulnerabilities. NeXpose goes beyond this simple compliance requirement identifying the larger security issue since vulnerabilities with a CVSS score of 4 or below could be exploited as part of an integrated attack.


About Rapid7

Rapid7

Rapid7 is the leading provider of unified vulnerability management, compliance and penetration testing solutions. With more than 1,000 customers, Rapid7 delivers actionable intelligence about an organisation's entire IT environment. Rapid7 offers the only integrated threat management solution encompassing network security, Web application security, database security and penetration testing strategies.

Aquion is the official Rapid7 Reseller Partner in Australia.

For more information

Contact Audrey Lyon, Rapid7 Product Manager from Aquion

Call 1300-AQUION

or email us at

Schedule a Demo Contact us to learn more

Contact Audrey Lyon

Rapid7 Product Manager from Aquion

Name

Email

Phone

+ Add A message

Message

Company

Submit

Schedule a Demo

Contact Audrey Lyon, Rapid7product manager from Aquion

Name

Email

Phone

+ Add A message

Message

Company

Submit

Contact us to learn more

Contact Audrey Lyon, Rapid7 product manager from Aquion

Name

Email

Phone

+ Add A message

Message

Company

Submit
Home » Vendors » Rapid7 » Rapid7 NeXpose
Rapid7

Contact Audrey Lyon, Rapid7 Product Manager from Aquion

Call 1300-278-466

Contact us to learn more

Contact us to learn more

Contact Audrey Lyon, Rapid7 Product Manager from Aquion

Name

Email

Phone

+ Add A message

Message

Company

Submit

Contact Audrey Lyon

Rapid7 Product Manager from Aquion

Name

Email

Phone

+ Add A message

Message

Company

Submit

Whitepapers

Rapid7 NeXpose Whitepaper

Sourcefire and Rapid7 Integration

Download whitepaper

Web Vulnerability Scanning
Vulnerability Management
Vulnerability Assessment
Penetration Testing
Network Vulnerability Assessment
Database Vulnerability Management
Database Security
 

Aquion Technical Services


Aquion's Technical Consultants are available to assist our resellers and customers with solutions advice, pre-sales assistance with technical evaluations, implementation services, and post-sales support. Aquion has Technical Certifications from Solarwinds, Symantec and GlobalSCAPE - as well as extensive practical experience with a large number of our vendors technologies.

Contact Aquion for more information.

AqRE - Strategic Sourcing Solutions

Let Aquion's Reseller Extension Service (AqRE) help you with software sourcing. We have relationships with 100s of software publishers. Account Managers are assigned to Reseller Partners to deliver quotes accurately and on time. Post-sales we provide maintenance management services. Learn more about AqRE service.

View all AqRE services

About Aquion

For nearly a decade, Aquion has supplied and supported software for leading large accounts and their resellers and partners. We have expertise in information security, organisational efficiency, network optimisation and strategic software sourcing. We provide all services to market, sell, implement and support the strategic technologies that we supply in Australia, New Zealand, Asia Pacific and India. Our partners include major Reseller and Consulting Firms.

Contact Aquion
  • Security Solutions
    • Mobile Device Security and Management
    • Authentication Management
    • Network Management Software
    • Intrusion Detection, Intrusion Prevention
    • Two Factor Authentication
    • Data Loss Prevention (DLP)
    • Message Classification
    • view all solutions >
  • Products
    • SMS PASSCODE
    • Solarwinds Orion NCM
    • Symantec/PGP Whole Disk Encryption
    • Rapid7 NeXpose
    • Rapid7 Metasploit
    • view all products >
  • Vendors
    • SMS PASSCODE
    • PGP/Symantec
    • Solarwinds
    • Globalscape
    • Seavus
    • SSH
    • Rapid7
    • view all vendors >
Aquion Pty. Ltd. - Software Reseller in Australia, New Zealand, Asia Pacific

© Aquion Pty Ltd. 2005-2012. All rights reserved.

1300-AQUION

About us | Contact us | Sitemap |
Privacy Statement | Terms of Use | Channel Partners

 
Home » Vendors » Rapid7 » Rapid7 NeXpose
Contact Sales
1300-AQUION
(278-466)
  • AqSEC
  • AqRE
  • Vendors
  • About Aquion
  • Promos