Vulnerability Scanning Service
Deployment options:   Physical appliance   •   Virtual appliance

The ProtectPoint™ vulnerability scanning service finds, assesses, and reports on vulnerabilities present on your network infrastructure and endpoints. Through its regularly scheduled and automated Nessus-based scanning process, our vulnerability scanning service identifies vulnerabilities present on your critical assets, like web servers, financial systems, network infrastructure, and endpoints.

Our comprehensive vulnerability database, which is updated hourly by our global Security Alert Team (SAT), includes research and advice to help you determine how to repair specific vulnerabilities. All scan results are organized by IP address, allowing you to focus on remediation priorities. You access all vulnerability reports through our secure RADAR customer portal, as shown in Figure 1.

Compliance and auditing

Beyond improving your security, our vulnerability scanning service helps bring you into compliance with security and regulatory policy. Prevailing info security regulations such as PCI, Sarbanes-Oxley, HIPAA, GLBA, and FISMA require tight control over sensitive data—our vulnerability scanning service let's you prove that your network is secure, and that procedures are in place for mitigating risk.

Correlating attacks with vulnerabilities

When combined with our managed intrusion detection/prevention service, ProtectPoint's vulnerability scanning service correlates incoming attacks with devices that are potentially in a vulnerable state, allowing our security analysts to take immediate, priority action to ensure damage does not occur (see Figure 2). This allows organizations with limited IT resources to breathe easy, knowing that attacks aimed at their network's weakest links are identified and blocked in real time.


*Nessus is a trademark of Tenable Network Security, Inc. Latis Networks, Inc. is not affiliated with, connected to, or sponsored by Tenable Network Security, Inc.

Features

  • Systematic scanning (i.e., Intelliscan™): applies only scans appropriate for device (based on device fingerprint)
  • Automated, scheduled scanning with hourly, daily, weekly, and monthly options
  • On-demand scanning available via request to ProtectPoint Security Operations Center
  • Employs open source Nessus* scanning engine — agent-less architecture
  • Industry-leading support for the following local checks: Linux, Solaris, HPUX (Q4), AIX (Q3/Q4), Windows, Redhat
  • Non-intrusive device scanning
  • Fingerprints OS, available hosts, services (i.e., ports), and applications
  • Identifies 900+ distinct OSs and OS variations
  • Multiple methods to determine live IPs
  • 18,000+ rule set (continually expanding)
  • Rule set consolidated from multiple sources: StillSecure® Security Alert Team™ (SAT), Open source, GPL
  • New rules automatically incorporated into existing scan policies