- This page, Vulnerability Scan, is offered by
- Cybersecurity and Enterprise Risk Management
Vulnerability Scan
Contacts
EOTSS End User and IT Service Support
Phone
Support for Commonwealth end users and IT support personnel
The Details
Features
A vulnerability scan is an automated high-level test that looks for potential security vulnerabilities. Vulnerability Scan v. Penetration Testing: A vulnerability scan only identifies vulnerabilities, while a penetration tester digs deeper to identify the root cause of the vulnerability that allows access to secure systems or stored sensitive data. A Designated Security Officer (DSO) must submit the Penetration Testing Services. If you are a DSO, click here to request Penetration Testing. You may also request to include IPs, adding a specific IP or IP ranges into the Monthly/Weekly scan rotation due to a new environment being built, a new server being stood up or a migration to a new location. If you would like to Exclude IPs from the Monthly/Weekly scan due to issues such as service interruptions, please submit a Vulnerability Remediation Exception Request. For more information on Commonwealth Cybersecurity, please visit our Cybersecurity and Enterprise Risk Management site on mass.gov.
How to request
Service Level Expectation (SLE)
Vulnerability Scan
| SLE | Responsibilities/Dependencies |
Fulfillment: 99% within 2 months | Customer
EOTSS
|
Policies
Contact
Phone
Support for Commonwealth end users and IT support personnel