Rescana is a cybersecurity company focused on Third-Party Risk Management (TPRM) and External Attack Surface Management (EASM). It was founded in 2016 and has evolved into a platform that uses AI-powered automation to streamline how organizations assess and manage the security risks posed by their vendors and external digital assets.
What Rescana Does:
Rescana automates the traditionally manual and time-consuming processes of TPRM by:
1. Vendor Discovery & Classification
Automatically identifies and classifies vendors, even those without a web presence, using AI and OSINT (open-source intelligence).
2. Risk Assessment
Runs autonomous, on-demand security assessments and generates detailed risk profiles for vendors, integrating questionnaires, external scans, and organizational policies.
3. Remediation Guidance
Offers actionable remediation steps and guidance based on the specific risks found.
4. Interactive Chat-Based Interface
Enables users to interact with the system like a chatbot (powered by LLMs), asking questions about vendors, risks, policies, and controls.
5. Support for ESG and Multiple Questionnaire Formats
Handles diverse compliance needs, including environmental, social, and governance (ESG) questionnaires, and supports multiple formats per vendor.
Key Differentiators:
• Agentic AI: Not just automation — Rescana employs autonomous agents that reason through questionnaire filling, evidence matching, and more.
• No ticketing system needed: Unlike competitors, it doesn’t require manual back-and-forth with vendors.
• Live risk dashboards: With real-time scanning and risk scoring.
• Low false positives: Thanks to contextual analysis and risk validation.
• Vendor Simulator: For demos and internal testing of workflows using simulated vendor responses.
Seller
RescanaLanguages Supported
English, Hebrew, Japanese
Product Description
Rescana is an innovative, quick moving company offering a cyber risk management platform with the vision to remove the security team bottlenecks, accelerating business processes that require risk assessment.
Overview by
Guy Halfon