Configure your first vulnerability scan

Before you begin

Before launching your first scan, ensure your assets are correctly inventoried in Cyberwatch, either through automatic discovery or manual import. An up-to-date inventory ensures complete coverage of the scope to be analyzed.

Choosing between agent-based and agentless scanning

An agent-based vulnerability scanner installs lightweight software on each server, application, or workstation to be analyzed, even in offline mode. An agentless scanner queries machines remotely without any installation. Cyberwatch offers both modes to accommodate heterogeneous environments and varying operational constraints: opt for agentless mode for a quick initial scan, and use the agent for continuous, detailed monitoring.

Launching the scan

Select the scope to be analyzed (asset group, network range, or cloud environment), choose the appropriate scan policy, and start the analysis. Depending on the volume of assets, the scan may take anywhere from a few minutes to several hours.

Analyzing the results

Once the scan is complete, detected vulnerabilities are automatically prioritized based on a contextual score combining CVSS, EPSS, and business criticality. Focus first on vulnerabilities listed in the CISA-KEV catalog or reported by CERT-FR, which represent an immediate and proven risk, before addressing the rest of the backlog by priority.