Vulnerability Assessment
Vulnerability Assessments are becoming a necessity in some sectors and are required for PCI-DSS compliance.
Regular comprehensive scans of your Business’ Network and Devices are the most effective measure you can take to understand your current Cyber vulnerabilities and keep your data secure.
We can conduct scans on your behalf, based on your requirements.
After each assessment you will receive an Executive Summary Report and a Comprehensive Technical Report that provides details of risks and vulnerabilities and how to remediate them in a prioritised order.
Penetration Testing vs. Vulnerability Assessments
Penetration Test
- Attacker has no knowledge of your network.
- The purpose of penetration testing is to determine whether a detected vulnerability is genuine.
- If a penetration tester manages to exploit a potentially vulnerable spot, he or she considers it genuine and reflects it in the report.
- The report can also show unexploited. vulnerabilities as theoretical findings.
- Varying levels of complexity can include phish attacks and malware on business systems
- Intrusive and can cause system downtime.
Vulnerability Assessment
- Information is provided on IP addresses and Scope of Work for the assessment.
- Vulnerability Assessment intends to identify vulnerabilities in a network.
- The technique is used to estimate how susceptible the network is to different vulnerabilities.
- Vulnerability Assessment involves the use of Automated Network Security scanning tools.
- Results and findings are then annotated in the report
- As findings reflected in a Vulnerability Assessment Report are not backed by an attempt to exploit them, some of them may be false positives.
Vulnerability and Penetration Testing is tailored to your Business needs
