PR Contact

Beth Bryant
BBWrites Strategic Communications
(508) 786-3013
Email Press Contact

Rapid7 and Scalable Software Announce Partnership to Deliver Comprehensive Vulnerability and IT Compliance Management Solutions

Scalable To Integrate Rapid7’s Vulnerability Management Data with its IT Compliance Management System to Provide Customers with Robust Security Management

Boston, MA - August 1, 2006 - Rapid7, provider of enterprise vulnerability management solutions, today announced a reseller agreement with Scalable Software, a leader in IT compliance management solutions. Under this alliance, Scalable will also integrate Rapid7's NeXpose vulnerability management data and analyses with its Command Center Compliance Management System (CMS) to provide a comprehensive solution that enables IT executives to reduce the risk and cost of their IT environments.

Scalable's Command Center will capture NeXpose vulnerability scan results and risk analyses, then upload and map the data to the appropriate IT controls and policies to equip customers with robust reporting that helps address the challenges of achieving, demonstrating and maintaining compliance with government and industry mandates.

"Organizations burdened by the audit and reporting requirements of SOX, GLBA, HIPAA, and other regulatory mandates need time and cost-saving compliance solutions," stated Marvin Newell, president and CEO, Scalable Software, LLC. "With the integration of Rapid7's NeXpose, we are adding best-of-breed vulnerability management to our Command Center CMS and further enhancing customers' IT compliance capabilities. Scalable customers will be able to leverage their investment in Rapid7's solution to create a wide range of automated IT compliance reports with Command Center."

Scalable's award-winning Command Center compliance management system (CMS) is the first software product built specifically for the IT compliance management needs of CSOs, CCOs, CIOs and their teams. Command Center's flexible framework supports mapping of all major regulatory mandates and industry standards such as SOX, GLBA, NERC CIP, FISMA and HIPAA to industry accepted codes of practice such as ISO 17799:2005 and Scalable's policy framework. Command Center leverages Scalable's Evidence Integration Framework to integrate existing systems and sources of IT security and compliance data into the Command Center system, and automate compliance reporting against specific objectives and controls.

"Organizations are increasingly seeing the importance of quantifying security risks and facilitating compliance management via in-depth reporting capabilities," stated Alan Matthews, president, Rapid7 LLC. "By reselling NeXpose software and appliances with Command Center, Scalable serves as an extension of our sales team and expands our ability to deliver NeXpose vulnerability and risk management to a broad market. More importantly, our integrated solution provides a cost-effective and manageable process that helps organizations ease the stress of complying with government and industry regulations."

The award-winning NeXpose enterprise vulnerability management solution scans devices, systems, software and Web server applications to locate threats, assess their risk to the environment, devise a remediation plan and implement the ticketing process. With its expert system, NeXpose builds a knowledge base of facts on the environment it's exploring and models potential targeted attacks to expose all existing threats. NeXpose provides reporting capabilities that ensure compliance with government regulations and corporate security configuration policies. NeXpose PCI Compliance services meet the security scanning requirements of the MasterCard Site Data Protection (SDP) Program.

About Scalable Software

Scalable Software provides compliance solutions that enable IT business executives to reduce the risk and cost of their IT environments. Scalable automates the link between policies, assets and their usage, enabling IT business executives to address their toughest challenges in the areas of regulatory compliance, license compliance and cost management. A well-established base of over 250 enterprise and government customers globally use Scalable's solutions to reduce the risk of non-compliance and eliminate unnecessary spending. Scalable is headquartered in Houston, TX with offices in Austin, TX, and Reston, VA. For more information on Scalable Software, please visit www.scalable.com or call Scalable Software at 713-316-4900.

About Rapid7

Rapid7 is the leading provider of Unified Vulnerability Management (UVM) solutions. NeXpose provides network, database and web application vulnerability management for enterprise deployments and small to medium businesses. Rapid7 was founded in 2000 by a team of software industry veterans who were major contributors to product development and subsequent growth and success at Percussion Software, Bond Technologies and Stride & Associates. Since introduced, NeXpose has been sold to corporate enterprises, Global 2000 companies, and government entities, and serves the full range of vertical markets across the U.S. and abroad. In addition, Rapid7 provides compliance products and services for PCI, HIPAA and Sarbanes Oxley. Rapid7 is headquartered in Boston, MA, with offices in California and the United Kingdom.