ASV Quarterly Vulnerability Scanning
Minimize dangerous vulnerabilities on your network with our Quarterly Vulnerability Scanning service. If you don't need the SecureConnect managed firewall and additional suite of services, as an Approved Scanning Vendor, we can simply provide the vulnerability assessments on the external IP addresses of your network.
Automated vulnerability scans are run to look for known vulnerabilities and configuration issues that could potentially be negatively exploited by hackers, viruses or worms.
What do I need to have scanned?
According to the PCI Data Security Standard, if you process card payments using a high-speed (broadband) Internet connection, you must have an Approved Scanning Vendor (ASV) perform scans at least quarterly on any public IP address that is connected to the cardholder data environment.
To clarify, the cardholder data environment is the part of the computer network that possesses cardholder data or sensitive authentication data and those systems that directly attach or support cardholder processing, storage, or transmission.
For most merchants, you will be required to scan your business Internet connection and devices that are connected to it.
With our scanning service SecureConnect will:
- Obtain the Internet-facing Protocol address(es) at each location
- Scan the active IP address(es) and/or domains and identify vulnerabilities related to the following:
- Routers
- Firewalls
- Web, Application, DNS and Mail Servers
- Virtual Hosts
- Wireless Access Points
- Provide easy-to-understand summary that details scan results with compliance statement in the mySecureConnect portal
- Notify customer of vulnerabilities that are detected so remediation steps can be taken
- Customer is responsible for remediation steps
- Once remediation is complete, rescans are provided at the customer request
- Deliver detailed finding report with recommendations in the mySecureConnect portal
With our Basic Package, simply purchase the scans based on the number of IP's you have, enter the IP addresses into your secure mySecureConnect portal and let the scans run automatically each quarter.
Visit our PCI Packages page to learn more about the services we provide.