Quick Answer

Vulnerability assessment UK — from £1,500. External network, internal, M365, web app & email scanning. CVSS-rated findings, remediation roadmap. 4.9★, 200+ clients. Call 0203 834 9728.

— Vulnerability Assessment UK

VULNERABILITY
ASSESSMENT
UK · From £1,500

Coreitech's vulnerability assessment service identifies, classifies, and prioritises security weaknesses across your entire IT environment — external network, internal infrastructure, Microsoft 365, endpoints, web applications, and email — before attackers can exploit them.

External network vulnerability scan
Internal network & server assessment
Microsoft 365 & Azure security review
Endpoint & workstation security check
Web application & API scanning
Email security configuration audit
CVSS-rated findings report
Prioritised remediation roadmap
— Assessment Scope

What our vulnerability assessment covers

External Network Scan

Scanning of all internet-facing IP addresses, services, open ports, and software versions. Identifies publicly exploitable vulnerabilities before attackers do.

Internal Network Assessment

Assessment of internal network infrastructure — switches, routers, servers, workstations. Identifies lateral movement risks and misconfigurations.

Endpoint & Workstation Review

Review of endpoint security posture across a sample of Windows/Mac devices — patch levels, local firewall, AV status, security configuration.

Microsoft 365 & Cloud Configuration

Review of M365 security settings, Entra ID configuration, Exchange Online, SharePoint permissions, and Azure security posture.

Web Application Scanning

Automated scanning of web applications and APIs for OWASP Top 10 vulnerabilities — SQL injection, XSS, authentication flaws, misconfigurations.

Email Security Configuration

Verification of DMARC, SPF, DKIM, anti-phishing policies, and email gateway configuration. Identifies spoofing and phishing exposure.

— Vulnerability Assessment vs Penetration Testing

Which do you need?

Recommended starting point

Vulnerability Assessment

Identifies & ranks all security weaknesses
Broad coverage — whole environment
Non-intrusive — no active exploitation
From £1,500 — cost-effective starting point
Best for: annual reviews, compliance readiness, Cyber Essentials prep
Timeline: 3-5 days

Penetration Testing

Actively exploits specific vulnerabilities
Deep-dive on targeted systems
Demonstrates real-world attack impact
From £1,500 per scope
Best for: CE Plus, PCI DSS, specific systems, board-level evidence
Timeline: 2-5 days
— FAQ

Vulnerability assessment — frequently asked questions

4.9 / 5 — 200+ reviews

Book a vulnerability assessment
for your business

Fixed-price quote after a brief scoping call. 3-5 day turnaround. CVSS-rated findings with a clear remediation roadmap.