Scanning

What Are The Assessments Types In Edgescan?

There are 6 core assessment types in Edgescan. All assessments must fall into one of the below categories. The most common are automated scheduled, retest and penetration testing assessments.

Version Number: v1.0.0

Published Date: 2nd January 2025

____________________________________________________________________________

 

Name Data Model Name Description
Automated Scheduled scheduled
  • Fully automated assessment including DAST & Infrastructure/Network assessment.
  • Scope is set by Customer or Edgescan testing team.
  • Usually included as part of a scan schedule.
  • All results validated.
Retest retest
  • Doesn't include full automated assessment.
  • Scope is limited to one or many currently open vulnerabilities.
  • All results validated.
Penetration Test pen_test
  • Usually includes automated scheduled assessment and manual penetration testing that focuses on breaking the business logic of the scoped technology.
  • Can we on Infrastructure/Network and/or Applications/APIs.
  • All results validated.
On demand on_demand
  • An ad-hoc automated scheduled assessment.
  • All results validated.
PCI scheduled pci_scheduled
  • Same as automated scheduled assessment, included PCI specific controls and certain vulnerabilities cannot be excluded from testing.
  • Assessment will have a PCI fail/pass set for each asset.
PCI rescan pci_rescan
  • Can only occur after a PCI scheduled assessment has been committed.