Scheduled security scanning of your public systems.
We check the parts of your estate that the internet can already see — certificates, protocols, exposed paths, software versions, domain and DNS records — on a fixed schedule, and report what actually matters.
What is included
Fixed schedule
Checks run on a defined interval, so a certificate or domain never expires unnoticed between annual audits.
Severity that means something
Every finding is rated high, medium or low with the business impact written in plain language, not tool output.
Verified, not assumed
We report what we observed. Where exploitability was not verified, we say so instead of inflating the finding.
Non-intrusive by design
Passive checks only: no password attempts, no exploitation, no load on your production systems.
Remediation guidance
Each finding comes with the fix, and we can carry it out under the infrastructure management service.
Authorised deep testing
Where you authorise it in writing, scanning is extended to authenticated and deeper checks.
Plans
Scope and price are agreed in writing before we start. Tell us your budget and we will tell you what fits it.
- Scheduled checks
- Monthly report
- Plain-language findings
- Cancel any month
- More frequent, deeper checks
- Alerting between reports
- Remediation guidance
- Cancel any month
- Whole estate in scope
- Many domains and systems
- Reporting to your format
- For larger organisations
Let us look at your current setup
Send us your domain and a short description of your environment. You get a written assessment back — no access required for the first step.