Skip to content

Vulnerability Assessments

Find out what an attacker can reach from the internet and what they could exploit once inside: external and internal vulnerability assessments with expert triage, ordered separately or together.

2 services on this page

External Vulnerability Assessment

External vulnerability scanning of your internet-facing addresses and endpoints, with expert triage so you fix what is exploitable first.

Typical duration: 1–2 weeks

Internal Vulnerability Assessment

Authenticated internal vulnerability scanning of your network, with expert triage so you fix what is exploitable first rather than drowning in a raw scan report.

Typical duration: 1–2 weeks

External Vulnerability Assessment

External vulnerability scanning of your internet-facing addresses and endpoints, with expert triage so you fix what is exploitable first.

Who it's for: Organisations that need external vulnerability evidence for insurers, customers or audits.
Typical duration: 1–2 weeks
Price: typically A$7,700–14,000 ex GST

Includes

  • Scan of internet-facing IP addresses and endpoints
  • Expert triage: false positives removed, findings ranked by real exploitability
  • Written report with findings ranked by risk, a plain-English summary for leadership and a priced remediation roadmap
  • One readout session (up to 60 minutes, online)

Size limits

  • Up to 25 external IP addresses or endpoints
  • One re-scan within 30 days, limited to the issues found in the first report (new findings are not included)

Excludes

  • Internal network scanning (see Internal Vulnerability Assessment)
  • Penetration testing or exploitation
  • Web application testing
  • Remediation work

Client provides

  • Written authorisation to scan the in-scope addresses; a named technical contact

Fixed price for the scope listed; anything beyond is quoted before it starts.

Related services: Internal Vulnerability Assessment · Network Health Check · Co-managed Security Retainer

Most customers follow this with Internal Vulnerability Assessment.

Internal Vulnerability Assessment

Authenticated internal vulnerability scanning of your network, with expert triage so you fix what is exploitable first rather than drowning in a raw scan report.

Who it's for: Organisations that need internal vulnerability evidence for insurers, customers or audits.
Typical duration: 1–2 weeks
Price: typically A$7,700–14,000 ex GST

Includes

  • Internal authenticated scan of in-scope networks
  • Expert triage: false positives removed, findings ranked by real exploitability
  • Written report with findings ranked by risk, a plain-English summary for leadership and a priced remediation roadmap
  • One readout session (up to 60 minutes, online)

Size limits

  • Up to 250 internal hosts
  • One re-scan within 30 days, limited to the issues found in the first report (new findings are not included)

Excludes

  • External scanning (see External Vulnerability Assessment)
  • Penetration testing or exploitation
  • Web application testing
  • Remediation work

Client provides

  • Written authorisation to scan; scanning credentials; a host to run the internal scanner (physical or virtual)

Fixed price for the scope listed; anything beyond is quoted before it starts.

Related services: External Vulnerability Assessment · Hardening Benchmark Review · Co-managed Security Retainer

Most customers follow this with External Vulnerability Assessment.

Book a 15-minute call

Tell us what prompted the enquiry. We will confirm the scope and give you a fixed price before any work starts.

Prefer email? hello@axiltech.com.au or send an enquiry. Want every service and its scope in one document? Request the service catalogue.