Cyber resilience, AI governance, and incident readiness.Explore our services →

HackerGuardian by Sectigo

PCI DSS external vulnerability scanning through an Approved Scanning Vendor.

SecuriCentrix uses Sectigo HackerGuardian to deliver the external scanning PCI DSS requires, and manages the full cycle from scope definition through to a passing ASV scan report.

What the platform does

Quarterly external scanning, evidenced the way acquirers expect.

  • ASV scanning of in-scope external IP addresses and domains
  • Quarterly scanning cadence with rescans as often as needed
  • ASV scan reports suitable for submission to an acquiring bank
  • Post-scan reporting with actionable mitigation guidance
  • Coverage for web-facing application requirements
  • Scalable IP address coverage for larger external estates

What SecuriCentrix adds

The scan is the easy part. Passing it is the work.

Most organisations do not fail ASV scanning because of unknown risk; they fail on scope, false positives, and unclosed findings.

Scope definition

Confirm which external IP addresses, domains, and services are in scope, and identify what sits outside the cardholder data environment.

Finding interpretation

Separate genuine failing findings from false positives and compensating-control cases, and prepare the supporting rationale.

Remediation and rescanning

Drive fixes with system owners and rescan until a passing result is achieved.

Assessment integration

Feed scan evidence directly into your PCI DSS assessment, so quarterly scanning supports validation instead of becoming a separate exercise.

HackerGuardian is a Sectigo product and the ASV scan report is issued under Sectigo’s Approved Scanning Vendor status; SecuriCentrix implements, operates, and interprets the scanning service and supports remediation. ASV scanning satisfies the external scanning requirement only and is not a substitute for penetration testing or for the wider PCI DSS assessment.