6sense Launches Public Vulnerability Disclosure Program with HackerOne

Options

The 6sense Security Team is excited to announce the launch of 6sense's public Vulnerability Disclosure Program (VDP) with HackerOne! This program invites skilled security researchers and ethical hackers from around the world to help us identify and address potential security vulnerabilities, reinforcing our commitment to providing a secure and transparent platform for our customers. 

Why a Public VDP Matters 

Our VDP establishes a secure and direct channel for third-party researchers to report previously unidentified vulnerabilities to the 6sense security team. Through HackerOne Response, we enhance our vulnerability management by ensuring efficient communication, evaluating issues using the Common Vulnerability Scoring System (CVSS), and prioritizing the remediation of critical vulnerabilities. This proactive approach not only aligns with industry best practices but also allows us to mitigate risks that could impact our operations. 

How Our VDP Works 

Once vulnerabilities are reported, HackerOne’s Triage team thoroughly evaluates them, and forwards verified findings to our dedicated Security Engineering team. Each report is classified by severity, weakness type, and affected asset, enabling us to quickly prioritize issues based on risk using SLA guidelines. The 6sense Security Team then reviews these findings, logs them in Jira, and promptly addresses them according to the SLA specified in our Vulnerability Management Program. 

By creating a structured and reliable process for reporting security issues, we strengthen our collaboration with external experts to keep our customers’ data secure.  

Report a Vulnerability 

You can report findings through the 6sense HackerOne VDP page here: https://hackerone.com/6sense-vdp?type=team

Explore Additional 6sense Security Resources 

Our commitment to security and data practices is evident in the comprehensive documentation we make available in our Trust Center, powered by SafeBase. Customers have self-serve access to download industry-standard assessment documentation, access our knowledge base of frequently asked questions, and stay informed on changes to our security and privacy posture. 

To access the 6sense Trust Center, please visit https://trust.6sense.com/