Program for cybersecurity companies?

What is the name of the domain?

not relevant

What is the issue you’re encountering

Hello everyone, We are an established security firm dedicated to proactive cybersecurity measures, including vulnerability scanning for our clients. We do not intend to operate as a reseller partner. Instead, we’re wondering if there is a registration process or program that would allow us to be recognized as a security company. Our main aim is to avoid blocklisting when performing vulnerability scans on behalf of our clients. At present, we rely on our clients to correctly setup their environment for the scans, but any miscommunication or error during the process could inadvertently place us on a blocklist. Any guidance or best practices you could share would be greatly appreciated. Thank you for your assistance!

Unfettered access to all of Cloudflare customers’ websites and networks?

Seriously?

I’m no security expert, but from years of working with MSPs, I never really understood the point in security vendors asking clients to tear down all their security (and grant Windows admin privileges!) just so they can run their tools. Shouldn’t the very fact you’re unable to do a vuln scan on your clients’ infrastructure – as a bad actor would – itself be an indication of good security practice?

Seems “no vulnerabilities found” is not good for business… so vendors need to do everything possible (including punch holes) to get in there to find something to report on!

1 Like