Home Technology SE Labs pioneers UK cybersecurity testing with PIVOT
Technology

SE Labs pioneers UK cybersecurity testing with PIVOT

Share


The cybersecurity landscape is witnessing a significant shift as major firms move away from the US Department of Defense-backed MITRE Engenuity ATT&CK Evaluations.

Participation has dwindled to just 11 companies, down from 30 the previous year. In contrast, the UK-based PIVOT programme by SE Labs has garnered attention, with CrowdStrike, Palo Alto Networks, and Broadcom confirming their participation.

This six-month rigorous testing regime examines the potency of cybersecurity solutions against some of the world’s most formidable hacking groups and attack methods.

Testing critical cyber solutions

According to Simon Edwards, CEO of SE Labs, the decision by leading organisations to participate in the UK’s PIVOT marks a significant milestone in cybersecurity testing outside the US. He noted, “There are now very few tier-one vendors that aren’t testing within PIVOT.

Edwards highlighted the growing complexity of cyber threats, citing examples such as autonomous AI agent attacks and economically impactful incidents like the JLR attack. The programme aims to rigorously test security solutions against various high-profile threats, including nation-state attacks and ransomware.

PIVOT testing methodology

PIVOT uses trained ethical hackers to simulate nation-state and high-profile cyberattacksUnder PIVOT, SE Labs deploys trained ethical hackers to simulate attacks by nation-state groups and notorious hackers. This approach includes replicating incidents involving ransomware, malware, and phishing to assess vendor solutions’ effectiveness in detecting and preventing threats from known sources.

It provides a comprehensive evaluation framework for testing the resilience of cybersecurity defences.

Authority insights

Adam Bromwich, Vice President of Engineering and CTO of Broadcom’s Enterprise Security Group, stressed the importance of transparency within PIVOT testing. He remarked, “CISOs today need clarity and proof, not just promises. PIVOT emphasises full transparency and inclusion of major analyst firms to set a new standard for trust.

This sentiment was echoed by Simon Reed, Chief Research and Scientific Officer at Sophos, who stated that PIVOT “brings clarity to endpoint testing” by focusing on genuine threat detection and prevention.

Independent scrutiny on test results

The test results from the PIVOT programme are independently scrutinised by analyst firms before publication. This process aids vendors in identifying weaknesses in their cybersecurity solutions and facilitates product development to address emerging threats. The testing phase runs from July to October, with a comprehensive report expected in January 2027.

This development coincides with preparations for the Cyber Security & Resilience Bill, which will require essential services and digital service providers to report incidents swiftly. The legislation aims to enhance regulatory scope and encourage cross-border information-sharing with EU authorities, aligning with the NIS2 directive.





Source link

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Technology

UK financial services face AML enforcement, certification confusion double-whammy

The UK will add 500 new officers to its AML enforcement team...

Technology

What Is the UK digital verification services register?

Identity verification is becoming an increasingly important part of onboarding, compliance and...

Technology

TechUK calls for 10-year digital infrastructure strategy

The UK’s future economic growth, productivity and national resilience depend on...

Technology

UK chancellor urged to remove ‘hidden taxes’ from energy bills | Energy bills

More than 120 organisations including big businesses and charities have called for...