Tenable introduces Nessus Expert with external attack surface management and cloud security capabilities

July 12, 2022
External assets and cloud configurations represent two of the biggest cyber risks facing organizations today

Columbia, MD, July 12, 2022 -- Tenable®, the Cyber Exposure company, has announced the addition of Nessus® Expert to its portfolio of trusted vulnerability assessment solutions, giving security consultants, pen testers and security practitioners extended external capabilities and expanded visibility into cloud-native environments.

External assets and cloud configurations represent two of the biggest cyber risks facing organizations today. Most enterprises lack good accounting of their external footprint, which is easily exploitable by cybercriminals and other threat actors. External Attack Surface Management (EASM) removes such blind spots with capabilities such as discovery, attribution and change detection monitoring of all external assets across the enterprise. At the same time, while organizations are leveraging public clouds, they are frequently deploying cloud security solutions too late in their development cycle. The best way to gain maximum advantage from the cloud is for organizations to begin with infrastructure as code (IAC) security, catching misconfigurations and software vulnerabilities before anything is ever deployed.

Building on the Nessus brand’s reputation as the industry's most recognized and widely deployed vulnerability assessment solution, Nessus Expert is the first to address both of these pain points head-on. Nessus Expert applies a smarter and simplified approach to DevSecOps, enabling users to gain an understanding of an organization's external attack surface that could be exposed to threat actors and to assess infrastructure as code (IaC) for vulnerabilities before runtime. Following the integrations of both Bit Discovery and Terrascan technologies earlier this year, Nessus Expert is equipped with external attack surface discovery and IaC security analysis, providing pen testers, consultants, SMBs and developers with a unique competitive edge with their expanded risk assessment capabilities.

“Nessus is the gold standard for vulnerability assessment. We’ve enhanced capabilities to address cloud instances that are constantly updating and connecting to various sources. We’re upping the ante with Nessus Expert,” said Glen Pendley, chief technology officer, Tenable. “Nessus Expert delivers modern vulnerability assessment capabilities that cover everything from internal and external assets to code and cloud configurations before anything is ever deployed. This is a game-changer for both assessing DevSecOps and infrastructure security.”

Key New Capabilities

Nessus Expert offers the following features in addition to everything offered in Nessus Professional:

  • External Attack Surface Discovery – to discover internet-facing assets in domains and subdomains associated with an organization
  • Infrastructure as Code Scanning – to establish guardrails in automated GitOps and CI/CD processes that ensure secure deployments with minimal effort with up to 500 pre-built policies.

To learn more about Nessus Expert and to schedule a demo, please visit: http://tenable.com/blog/introducing-nessus-expert-now-built-for-the-modern-attack-surface 

Nessus Expert and Nessus Professional are optimized for security consultants and audit functions. Tenable also offers enterprise-wide vulnerability and cyber exposure management, including cloud security, Active Directory security and external attack surface management.

About Tenable

Tenable® is the Cyber Exposure company. Approximately 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. As the creator of Nessus®, Tenable extended its expertise in vulnerabilities to deliver the world’s first platform to see and secure any digital asset on any computing platform. Tenable customers include approximately 60 percent of the Fortune 500, approximately 40 percent of the Global 2000, and large government agencies. Learn more at tenable.com.