Trusecure Introduces Lifecycle Risk Management Strategy

Integration of Three Pillars Remote Management and Monitoring Completes Suite of Comprehensive Information Security Services

HERNDON, Va.–April 22, 2002–TruSecure(R) Corporation, a leading managed security services provider, today unveiled its comprehensive business strategy that enables organizations to adopt a more holistic approach to information security. Called Lifecycle Risk Management (LRM), the strategy brings together technologies, expert support and real-time intelligence that address all the essential phases and processes of information risk management. TruSecure now offers the only integrated, enterprise-scale programs that allow organizations to build and assure a continuously effective security posture. By integrating proactive risk mitigation programs with real-time managed security services, TruSecure can provide unprecedented value to companies working to secure business-critical information across large, complex enterprise systems.

“This integration of resources creates unmatched synergies in managing security risk,” said Adam Joseph, president and CEO of TruSecure. “We can link the research and analytical processes behind our renowned preventative security assurance programs with real-time security management and monitoring technologies. This combination provides tremendous advantages in providing more dynamic preventative risk reduction and more intelligent system monitoring. TruSecure will be the first place organizations go to seek a trusted security partner.”

In January, TruSecure acquired Three Pillars’ remote management and monitoring services. With the integration of Three Pillars services into TruSecure’s industry-leading risk mitigation and security assurance services, TruSecure becomes the only managed security services provider (MSSP) that continuously measures, manages and monitors information security risks. TruSecure’s robust, multi- disciplined approach maximizes return on security investment for companies in two ways: by dramatically reducing the number of successful attacks and improving the productivity of the people, products and technology already in place.

“We did an exhaustive search of MSSPs and selected Three Pillars. It was the only company that did monitoring tailored to the specific firewall and IDS we had deployed, as well as hardware implementation and remote management,” said Jeff Nigriny, information systems security manager of Exostar, a trading exchange for the aerospace and defense industry. “We were excited when TruSecure acquired Three Pillars as we gained access to expertise that has allowed us to truly start to leverage our security as a selling point to Exostar’s customers. We have found that TruSecure is an information security partner, not just a vendor.”

“The acquisition of Three Pillars has facilitated TruSecure’s execution on its vision to offer a portfolio of integrated security services,” said Allan Carey, senior analyst at IDC. “The modularized nature of TruSecure’s services enables customers to flexibly build a security program based on their diverse requirements. Additionally, the company’s fixed price, solutions-based approach to security assurance allows organizations to benefit from a program that focuses not just on identifying threats or vulnerabilities, but on the cost of mitigating threats and vulnerabilities.”

TruSecure’s LRM brings together technologies, expert support and real-time intelligence that address all the essential phases and processes of information risk management:

MEASURE risks to critical information assets

– Identify critical data, networks, applications, devices, users

– Create detailed asset inventory

– Assess and prioritize risks

MANAGE risks with comprehensive security program

– Create multi-disciplined risk reduction plan

– Drive implementation with expert support

– Validate successful risk mitigation

– Defend networks with outsourced real-time security systems

MONITOR risks and respond to threats

– Track, analyze and alert for emerging security risks

– Provide ongoing risk analysis and mitigation support

– Report compliance with essential security standards

– Monitor network 24/7 and respond to real-time threats

This layered approach to comprehensive security provides the essential security foundation for companies that need to protect their information assets and modularized services for those organizations that have additional needs. This gives customers a complete range of security services that span the development of security architecture and policies, the implementation of a comprehensive preventative risk management program, and now the management, maintenance and real-time monitoring of critical security infrastructure.

The company also announced today TruSecure 5.0, the next evolutionary step for companies wanting to centrally and comprehensively manage their enterprise security efforts. TruSecure 5.0 boasts a significantly enhanced Enterprise Risk Manager (ERM), an Internet dashboard application for real-time assessment and management of a company’s enterprise security posture. Real-time updates to TruSecure’s essential security practices and alerts, accessible through the ERM, enable organizations to effectively manage security in a constantly changing environment. The new TruSecure ERM also delivers robust capabilities for task and asset management, progress tracking and detailed reporting against regulatory requirements. To see the full release, visit

About TruSecure Corporation

TruSecure is the leading Managed Security Services Provider (MSSP), offering the only fully integrated, enterprise risk management services on the market. TruSecure’s unique blend of proactive risk reduction with real-time security management, monitoring and response assures continuous security of critical business information assets. TruSecure Certification has become a globally recognized symbol of commitment to effective security in an interconnected economy. Additionally, TruSecure owns the independently operated ICSA Labs(R) and Information Security(R) magazine. Headquartered in Herndon, VA, TruSecure protects more than 700 sites in over 30 countries, with operations in North America, Europe and Asia Pacific. For more information about TruSecure, please visit

# # #

TruSecure, ICSA, ICSA Labs, and Information Security are registered trademarks of TruSecure Corporation. All other trademarks and service marks mentioned herein are property of their respective owners.

Don't miss