Authorized baseline
One specifically named public target. A signed, target-specific authorization for the full TCP range is required before testing. This is not an application vulnerability scan.
Establish a reviewed baseline of public TCP service exposure and transport security for one exact target, including service identification and applicable TLS or STARTTLS observations.
One specifically named public target. A signed, target-specific authorization for the full TCP range is required before testing. This is not an application vulnerability scan.
You receive a prioritized report through your verified client account after the assessment is completed and reviewed.
After this baseline is completed, SunTzu can discuss continuing checks of only the public services and TLS observations recorded for that same authorized target.
This plan is not available for self-service enrollment yet. A recurring scope, schedule, and authorization must be confirmed before monitoring begins.
We can explain the findings, help prioritize your next steps, or discuss other technology challenges affecting your business. You do not need to know where to start.
Ask SunTzu for helpAsking a question does not commit you to paid work. Any proposed scope and cost will be explained first.
An assessment reflects the evidence collected at that time. We recommend ongoing monitoring and scheduled reassessments to identify meaningful changes and verify agreed fixes.
Discuss ongoing monitoringWe will help define the assets, checks, schedule and notification process that fit your needs.