Intro
Financial-services organizations may already have multiple tools telling them what exists across their environment. The problem is that those tools do not always agree.
An endpoint platform may recognize a device that a vulnerability scanner does not. A network system may identify an active device that is missing from another asset record. The same device may even appear under multiple names across different platforms.
That creates a simple but important question: Which view can you trust?
For organizations regulated by the New York Department of Financial Services, that question has added importance. 23 NYCRR Part 500 requires covered organizations to maintain a risk-based cybersecurity program, while Section 500.13specifically requires policies and procedures designed to produce and maintain a complete, accurate and documented inventory of information systems.
Teneo can help organizations explore whether their existing technology provides the asset, security-control, and network visibility needed to support those efforts.