UpGuard
UpGuard Inc. is an Australian cybersecurity startup company[2] founded by Alan Sharp-Paul, Leo Venegas, and Mike Baukes; and presently based in Mountain View, California.[3] UpGuard provides products and services to help companies stand up securely configured systems and guard against outages and breaches. In 2016, the company raised $17m in a series B funding round. As of 2018, the company employs around 46.
Formerly | ScriptRock |
---|---|
Type | Private |
Industry | Computer security |
Founder | Alan Sharp-Paul, Leo Venegas, Mike Baukes |
Headquarters | Mountain View , United States |
Key people | Mike Baukes, Alan Sharp-Paul |
Products | UpGuard Discover, UpGuard Control, UpGuard Predict |
Number of employees | 43[1] (2018) |
Website | www |
Upguard's Cyber Resilience platform determines a company's cyber-security risk factors by scanning both internal and external computer systems.[4] The platform automatically scans every server, application, network and mobile devices in IT environments to create a living model of their configuration state, thereafter continually assessing this system of record for security vulnerabilities, configuration drift and procedural changes. From this model, the platform dynamically derives a unified cyber-security risk score, CSTAR, that determines the cyber risk posture of IT assets against multivariate factors.[5][6]
History
UpGuard, formerly ScriptRock, is an Australian IT security company with offices in Mountain View, California and Sydney, Australia.[7][8] While working at investment firm Colonial First State, company founders Leo Venegas, Alan Sharp-Paul, and Mike Baukes met on-the-job in Sydney, Australia. Sharp-Paul was a web developer and Baukes was a systems administrator.[9] After spending years in financial services in Australia and the UK, the trio developed a system for corporations to understand business software portfolios and the consequent risk of breaches and outages due to poor configuration management.[10] The first release of the system was initially named guardrail and allowed for the automation of typical cybersecurity DevOps practices, focusing on deep analysis into all relevant servers and software applications settings.[11]
In 2016, the company raised $17m in a series B funding round co-led by Pellion that included August Capital, Square Peg Capital and Insurance Australia Group.[12] In early 2017, UpGuard then, signed an exclusive distribution partnership with ACA Pacific in order to establish a stronger presence in the APAC region[13] and Baukes and Sharp-Paul opened an UpGuard office in Sydney, Australia, bringing the company back to the region "where it all began."[14] In June 2017, UpGuard announced that it had found an unsecured server containing data from Deep Root Analytics, which contained information on almost 200 million American voters.[15][16]
Products
UpGuard helps companies stand up securely configured systems and guard against outages and breaches.[17] The product uses a resilience supervisor that integrates checks into every step of the technology lifecycle whilst continuously assessing for risk factors such as misconfiguration, configuration drift, and process vulnerabilities.[18] The approach is unique as the platform's architecture allows the dynamic capture of large configuration datasets continuously in order to difference, visualise and report on potential breaches and outages proactively .
At the products core, configuration information can be transformed into security policies, procedural validations or automations to ensure the desired integrity of IT environments is maintained and auditable. This is further enhanced by identifying authorised change vs unauthorised change and dynamically reconciling entire environments against ticketing systems for ITSM processes or SDLC processes, UpGuard summarises key insights across this data dynamically and includes a proprietary risk modelling method called CSTAR that aggregates all relevant risk factors into a score between 0 and 950, similar to a credit score, allowing companies to effectively predict and prioritise high-risk impact areas, track risk hotspots over time, and compare scores to similar companies in like industries.[19]
UpGuard ships three products that interoperate to form a deployable cyber resilience strategy, Discover, Control, and Predict. Each aims to address a different source of risk related to information technology.
References
- Kunthara, Sophia (November 4, 2018). "Startups of the week: Filld, Meetingbird, Upguard". San Francisco Chronicle. Retrieved 11 January 2019.
- "UpGuard brings cyber resilience expertise back to APAC 'where it all began'". SecurityBrief Australia. Retrieved 22 May 2017.
- "To Help DevOps-ify The World, ScriptRock Raises $8.7M". Forbes. Retrieved 15 August 2014.
- "Meet Chris Vickery, the internet's data breach hunter". ZDNet. Retrieved 22 May 2017.
- "Leaked GOP Data On 198 Million Americans". Forbes. Retrieved 19 June 2017.
- Whittaker, Zack. "Meet the internet's data breach hunter". ZDNet. Retrieved 2017-06-19.
- "To Help DevOps-ify The World, ScriptRock Raises $8.7M". Forbes. Retrieved 15 August 2014.
- "Security specialist UpGuard returns to Australia". Computerworld. Retrieved 2018-10-22.
- "UpGuard Out To Disrupt $7.5 Billion Global Cybersecurity Insurance Market". Forbes. Retrieved 11 February 2016.
- "UpGuard Out To Disrupt $7.5 Billion Global Cybersecurity Insurance Market". Forbes. Retrieved 11 February 2016.
- "UpGuard Out To Disrupt $7.5 Billion Global Cybersecurity Insurance Market". Forbes. Retrieved 11 February 2016.
- "Security specialist UpGuard returns to Australia". Computerworld. Retrieved 12 June 2017.
- "Aussie-born security vendor signs exclusive ACA Pacific deal". ARN. Retrieved 12 June 2017.
- "UpGuard brings cyber resilience expertise back to APAC 'where it all began'". SecurityBrief Australia. Retrieved 12 June 2017.
- Fung, Brian; Timberg, Craig; Gold, Matea (June 19, 2017). "A Republican Contractor's Database of Nearly Every Voter Was Left Exposed on the Internet for 12 Days, Researcher Says". Washington Post. Retrieved June 19, 2017.
- Cameron, Dell; Conger, Kate (June 19, 2017). "GOP Data Firm Accidentally Leaks Personal Details of Nearly 200 Million American Voters". Gizmodo. Retrieved June 19, 2017.
- "To Help DevOps-ify The World, ScriptRock Raises $8.7M". Forbes. Retrieved 15 August 2014.
- "To ScriptRock GuardRail, First Take: Cloud-based server monitoring and diagnostics". Retrieved 6 December 2013.
- "UpGuard offers a rating score of risk preparedness". NetworkWorld. Retrieved 27 January 2016.