nCircle Benchmark Adds Premium Edition Patch Management Scorecards and Support For Additional Patch Management Solutions


SAN FRANCISCO ---- nCircle, the leader in automated security and compliance auditing solutions, today announced the Premium Edition of the nCircle Benchmark™ Patch Management Scorecard Pack as well as support for two leading patch management solutions, Lumension Patch and Remediation (formerly PatchLink) and Microsoft System Center Configuration Manager. nCircle Benchmark is the world’s first cloud-based security and compliance benchmarking service that enables organizations to compare the performance of their entire IT security ecosystem against their own goals and industry peers.

Enterprises are facing more pressure to eliminate vulnerabilities in third party applications and operating systems to improve security and compliance. At the same time, device diversity on corporate networks is rising rapidly. Optimal patch status data typically comes from application and operating system vendors, so most enterprises must cope with a variety of metrics from several different patch management sources. nCircle Benchmark solves this problem by providing a catalog of pre-built visual scorecards, fact-based metrics and data connection capabilities that help organizations assess concentrations of risk across heterogeneous hardware and software platforms, analyze the performance of their security investments and compare their patch management performance to their peers.

The nCircle Benchmark Patch Management Scorecard Pack contains metrics that transform raw data from patch management solutions into actionable metrics that answer questions such as:

Which systems need to be patched for a given vulnerability?
Are the systems that are supposed to be updated actually patched?
Is our patch management process controlled and predictable?
Are we appropriately mitigating risk from known vulnerabilities?
Are we proactively preventing exploits?
How disruptive is our patching process?

The nCircle Benchmark Premium Scorecard Pack for Patch Management builds on the functionality included in the currently available, free Basic Edition. Premium Edition Scorecard Packs adds:

An expanded library of easily tailored metrics and visually rich scorecards
The ability to compare results to peers by industry, company size, geography and assets under management
Custom assessments that allow users benchmark against internal goals
The ability to create and manage asset groups in order to classify assessments according to user criteria
Configurable control monitoring alerts, user-defined policy management and customizable forms designed to capture and convert surveys and other data to metrics

The Premium Edition includes licenses for up to 25 users and stores up to 12 months of metrics history. The Premium Edition also adds a wide range of new scorecards to those included in the Basic Edition. A sample of the additional patch management scorecards includes:

Patch management coverage – Are all our hosts under patch management?
Mean time to patch – Which patches have been applied, which haven't and how long does it take our organization to apply patches?
Percent of systems missing critical patches – Are we keeping systems patched against the highest risk threats?
Missing patch latency – How long have my systems been exposed due to missing patches?

“The Premium Edition of the Patch Management Scorecard Pack adds a new dimension of metrics and scorecards that make it possible for organizations to optimize the performance of their patch management investments," said Jim Acquaviva, vice president of product strategy at nCircle. “Many patch policies are too coarse-grained to effectively reduce security risk on critical assets. Quality patch management metrics provoke thought and discussion about patching policies and make it possible for organizations to continually improve their patching process. Quality metrics also make the impact of accurately categorizing network assets by business value extremely visible and helps foster deeper discussions about acceptable risk levels.”

nCircle Benchmark Scorecard Packs

nCircle Benchmark Scorecard Packs deliver pre-packaged, field-tested metrics and scorecards that provide complete visibility across multiple-vendor security and compliance environments. nCircle Benchmark metrics and scorecards offer a comprehensive, at-a-glance indicator of IT investment performance. nCircle Benchmark offers a broad range of Scorecard Packs. Vulnerability Management, Configuration Auditing, Antivirus & Endpoint Protection, Identity & Access Management and Patch Management are available now. Additional Scorecard Packs for Endpoint Encryption, Event Management, Incident Response and Network Protection will be available soon.

nCircle Benchmark Editions

Each Scorecard Pack is delivered in three editions: Basic, Standard and Premium. The Basic Edition of every Scorecard Pack is always free and provides an initial set of metrics and scorecards. Organizations can easily expand beyond the free Basic Edition and subscribe to a broad range of additional scorecards delivered in the Standard Edition or the Premium Edition to start building internal benchmark assessments from the extensive nCircle Benchmark catalog.

Get Started Free

To get started, simply visit to create an account and select a Metrics Pack. Within minutes, customers can view metrics and scorecards of their security performance and compare results to a benchmark of their peers.

About nCircle

nCircle is the leading provider of automated security and compliance auditing solutions. More than 5,500 enterprises, government agencies and service providers around the world rely on nCircle's proactive solutions to manage and reduce security risk and achieve compliance on their networks. nCircle has won numerous awards for growth, innovation, customer satisfaction and technology leadership and has been ranked among the top 100 best places to work in the San Francisco Bay Area. nCircle is headquartered in San Francisco, CA, with regional offices throughout the United States and in London and Toronto.

Related Downloads

IT GRC Process Management Pack for System Center Service Manager 1.0 SP 1

Today™s IT organizations often find it challenging to comply with IT governance, risk, and compliance (GRC) initiatives, whether they are mandated regulatory laws or required internal policies and guidelines. Such work is typically manually...

Microsoft System Center Configuration Manager

Microsoft System Center Configuration Manager 4.0

System Center Configuration Manager 2007 R2 comprehensively assesses, deploys, and updates servers, client computers, and devices-across physical, virtual, distributed, and mobile environments. Optimized for Windows, it is the best choice for gaining...

System Center Operations Manager 2007 R2 SCW Roles and Security Hardening Guide for Windows Server 2008 2007 R2

The Operations Manager 2007 Security Configuration Wizard (SCW) Roles and Security Hardening guide can be used to help further protect and harden your Operations Manager 2007 R2 environment in conjunction with the SCW on Windows Server 2008 by...

SMT IT Works Database Manager

SMT IT Works Database Manager 2.5

Database ManagER is a SQL Server database management utility that has basic database management functionality and patch management. Database ManagER will Backup and Restore, Attach and Detach, Create, Clone, Delete and Rename DBs. Database ManagER...

VMTS ESX Patch Manager

VMTS ESX Patch Manager 1.0

VMTS Patch Manager addresses a critical need for VMware customers, allowing automatic (or manual) patching of ESX Servers platforms.
Main Features:
- Automatic Patch downloading from VMware Web site
- Virtual Center Integration

Netwrix Change Reporter for SC VMM

Netwrix Change Reporter for SC VMM 2.030.66

The change auditing and reporting is a critical management process to prevent erroneous and unauthorized changes of the Microsoft System Center Virtual Machine Manager configuration. The virtual infrastructure is usually maintained by many...

Prism Suite

Prism Suite 10.0

Prism Suite is a fully integrated Windows configuration management solution featuring simple and automated software deployment, IT asset management and patch management.
With flexible anytime, anywhere administration, Prism Suite improves IT...

Microsoft Deployment Toolkit (MDT) 2010 5.0

Deploy Windows 7 and Windows Server 2008 R2 with the newly released Microsoft Deployment Toolkit 2010. MDT is the recommended process and toolset for automating desktop and server deployment. MDT provides you with the following benefits:


MSI Utility for Microsoft Application Virtualization

The MSI Utility for Microsoft Application Virtualization is a new tool designed to extend virtual application deployment in certain key scenarios. In cases where a computer running Microsoft System Center Virtual Application Server is not available,...

MagniComp SysInfo

MagniComp SysInfo 9.0

SysInfo is a single system agent and viewer providing extensive IT asset inventory and configuration information for most major Linux, UNIX, Apple Macintosh, and Microsoft Windows platforms as well as leading NAS and SAN Storage Systems and logical...