Press Press2025.03.06
CJ OliveNetworks Launches an Integrated Vulnerability Management Solution “SECUPORTAL ONE”
- "SECUPORTAL ONE” is an
automated solution for discovering and managing IT assets and vulnerabilities.
- After checking for
vulnerabilities and running a penetration test, it provides a report with
detailed guide to immediately remediate security vulnerabilities.
- It can automatically document the
result of penetration testing, improving the quality of internal reporting and
security management.
- The company will expand
SECUPORTAL ONE to its external services and offer integrated vulnerability
management service tailored for each customer.
CJ
OliveNetworks (CEO, In-sang Yoo) has launched SECUPORTAL ONE, an automated
vulnerability management and diagnosis solution. The integrated vulnerability
management solution combines CJ OliveNetworks' know-how in vulnerability
diagnosis and management and cutting-edge security service operation
technologies.
According
to the 2024 H2 Cyber Threat Trends report by the Korea Internet and Security
Agency (KISA), the number of security incidents increased from 1,277 in 2023 to
1,887 in 2024, which is a 48% increase. As the demand for new OpenAI
model-based systems increases, enhanced security management became
crucial.
Many
small and medium-sized businesses do not have an IT service asset management
system, making it difficult to efficiently manage assets that are currently in
operation or that have been retired. Moreover, they cannot efficiently manage
and track the underlying vulnerabilities of IT assets because the assets and
vulnerabilities are managed separately.
SECUPORTAL
ONE provides an integrated management system to proactively find and eliminate
risks support legal requirements such as compliance needs so that customers can
secure business continuity in a more stable IT environment.
The
main features of SECUPORTAL One are ▲ Asset Identification and Management ▲
Vulnerability Scan History Management ▲ Automated Scan and ▲ Support for
Certification Audit. By integrating management of server and service assets,
organizations can easily manage vulnerabilities related to assets and versions
in the system.
The
SECUPORTAL ONE solution provides vulnerability diagnosis history management and
comes with a dashboard that shows the status of managed assets and the progress
of vulnerability remediation at a glance, relieving the burden on the security
managers.
The
"Automated Penetration Test Result Report" service is a feature
introduced by SECUPORTAL ONE for the first time. The Scan result report
provides detailed instruction to address the identified issues along with
operations performed. The report provides detailed info on security threats and
the identification process, enabling the corporate security team to mitigate
the vulnerabilities in an immediate and systematic way.
Also,
the automatically documented results report provides the company with the data
and action guides needed for compliance audits such as ISMS-P, reducing security
workforce and related resource.
In
addition, it provides flexible checklists that meet domestic security
compliance requirements, such as privacy policies and major information and
communication infrastructure in the web and mobile environments.
The
company plans to expand SECUPORTAL ONE to external services and offer tailored
services while expanding the scope of services to include automated scanning to
attract global customers.
"With
cyber security threats becoming increasingly sophisticated, leaving security
vulnerabilities unattended can lead to system downtime and data leakage,
ultimately losing customer trust," said Gang-hee Han, the chief of
information security business unit at CJ OliveNetworks. "SECUPORTAL ONE
allows small to mid-sized companies with limited resources to maintain high-level
of security by automating integrated management based on the results of
vulnerability checks and penetration test reports."
CJ
OliveNetworks’ information security business unit provides penetration testing
and vulnerability diagnosis services that proactively identify internal and
external security threats to increase the security level of IT services.