SolarWinds says it has beefed up security and tightened its software screening process 15 months after one of the most sophisticated cyberattacks exposed thousands of its customers to Russian spies and left U.S. government agencies and Fortune 500 companies scrambling to contain losses.
SolarWinds executives say they have spent $25 million to improve security and established new processes to screen third-party code that goes into almost all software products.
The company now operates on the principle of “zero trust and assuming breach mentality” — tech-speak for taking as a given that security breaches are inescapable — said Chip Daniels, the head of government affairs at SolarWinds.