Zscaler Blog

Get the latest Zscaler blog updates in your inbox

News & Announcements

Expanded Risk360 Availability Brings Foundational Risk Insights to More Zscaler Customers

CHRIS TAYLOR, EMAD ZAND
July 30, 2026 - 5 min read

More eligible customers can now access Risk360 to turn Zscaler-native telemetry into clearer, more actionable cyber risk insights—without the complexity of additional data collection or integrations.


Security leaders are under growing pressure to reduce cyber risk, demonstrate the value of security investments, and communicate security posture in terms the business can understand. But as environments become more distributed and threats more sophisticated, getting a clear view of risk has become increasingly difficult.

That’s why Zscaler is expanding the availability of Risk360, helping more eligible customers access foundational, data-driven risk insights built from the telemetry they already have in the Zscaler Zero Trust Exchange platform. Risk360 is now included in most ZIA and platform SKUs for organizations with more than 500 users.

Built on Zscaler-native telemetry,Risk360 helps customers turn existing platform data into clearer, more actionable cyber risk insight.

Why deeper risk insight matters

Organizations today are managing risk across users, devices, applications, and cloud environments while facing growing expectations from executives, boards, and regulators. Security teams often have no shortage of data, but turning that data into clear, actionable insight is another matter.

Fragmented signals can make it harder to identify priorities, measure progress, and communicate outcomes. What many organizations need is not more data, but a better way to understand the risk signals already available to them.

Risk360 helps organizations track risk over time and benchmark their posture against peers

Risk360 helps organizations track risk over time and benchmark their posture against peers.

Turn Zscaler telemetry into actionable insight

Risk360 helps organizations better understand and prioritize cyber risk using data already available in the Zscaler platform. It analyzes Zscaler-native telemetry across users, devices, applications, and policy signals together with telemetry from Zscaler’s External Attack Surface Management (EASM) engine. This gives security teams a more precise view of where risks are concentrated and where corrective actions are most critically required.

There is nothing additional to deploy, so customers can immediately derive more value from their Zscaler investment.

Risk360 includes guided investigations to reduce risk

Risk360 includes guided investigations to reduce risk

Better risk insight matters because it supports better decisions. Risk360 helps organizations move beyond isolated signals to more focused prioritization, making it easier to identify important risks, improve visibility, and take action faster.

Customers like InterGray MediaRodgersNHSGuaranteed Rate, and AkzoNobel are using risk quantification to strengthen their organization's cybersecurity preparedness.

“The key risk indicators that Zscaler provides have been essential to improving our risk posture. It's taking us many steps forward in our cybersecurity maturity,” - Raffaele Maresca, CISO, AkzoNobel

Watch this 2 minute video to see how Risk360 helps organizations quantify and reduce cyber risk.

Helping more organizations gain a clearer view of risk

Security teams already have access to enormous amounts of data. The challenge is turning that data into clarity, prioritization, and measurable progress.

By expanding the availability of Risk360, Zscaler is helping more customers access foundational risk insights based on the telemetry already available in the platform. For organizations looking to better understand cyber risk, improve posture, and communicate security value more effectively, Risk360 offers a practical starting point.

With Risk360, organizations can:

  • Gain clearer visibility into risk across their Zscaler environment
  • Surface configuration or control gaps that may affect risk posture
  • Map Zscaler controls and configurations to common compliance frameworks
  • Follow guided investigations to reduce risk 
  • Communicate risk posture and reduction progress more clearly to executives

 

If you’d like to learn whether your organization is eligible for Risk360, reach out to your Zscaler account team to discuss next steps.

To learn more about how it can help you quantify and reduce risk, watch this Risk360 webinar replay.

FAQs

Zscaler is expanding the availability of Risk360, giving more eligible customers access to foundational, data-driven risk insights built from Zscaler-native telemetry.

Risk360 helps organizations better understand cyber risk using data already available in the Zscaler platform, so they can prioritize action, improve visibility, and communicate posture more clearly.

Risk360 needs Zscaler Internet Access (ZIA) as a minimum data source. It combines this with Zscaler threat intelligence and external attack surface data as well as traffic and policy data from Zscaler Private Access (ZPA,) DLP and other Zscaler products.

No. This announcement applies to Risk360, the foundational offering built on Zscaler-native telemetry, including EASM. Risk360 Advanced remains the paid offering for customers that require third-party data integrations and further customization

Organizations with at least 500 users and most platform or ZIA SKUs are eligible to access Risk360. To verify qualification and review available provisioning paths, customers are encouraged to connect with their dedicated Zscaler account team.

Interested customers should reach out to their Zscaler account team to confirm eligibility and request Risk360 access ahead of their next renewal.

Risk360 streamlines compliance efforts and ensures audit readiness by mapping its 170 risk factors to the corresponding security controls in compliance frameworks. It shows how your configuration can be optimized for improved adherence to each framework. 

Supported frameworks include MITRE ATT&CK, NIST CSF, NIST SP 800-53, ISO 27001, DORA, NIS2, HIPAA, PCI DSS, CIS, CAF, HITRUST, and HECVAT.

Risk360 estimates financial risk by combining historical breach data with organization-specific risk scores, industry benchmarks, and revenue size. By running Monte Carlo simulations that multiply breach probability by modeled financial impact, the platform generates critical metrics like Yearly Average Loss and Loss Exceedance.

form submtited
Thank you for reading

Was this post useful?

Disclaimer: This blog post has been created by Zscaler for informational purposes only and is provided "as is" without any guarantees of accuracy, completeness or reliability. Zscaler assumes no responsibility for any errors or omissions or for any actions taken based on the information provided. Any third-party websites or resources linked in this blog post are provided for convenience only, and Zscaler is not responsible for their content or practices. All content is subject to change without notice. By accessing this blog, you agree to these terms and acknowledge your sole responsibility to verify and use the information as appropriate for your needs.

Get the latest Zscaler blog updates in your inbox

By submitting the form, you are agreeing to our privacy policy.