Loading
Loading...
Free baseline scanner

ScanX CISA Scanner

A command-center style security checker for Microsoft 365 teams aligned to CISA ScubaGear baselines and CIS Controls v8. Authenticate, inspect live policy posture, preserve failures, remediate with intent, then re-scan until risky controls turn into verified pass evidence — mapped to CISA KEV, NIST CSF, and CIS benchmark IDs.

Problems the scanner catches Graph-backed checks
Vulnerability ScansAutomated checks for misconfigurations and CVEs.
Asset DiscoveryFind hidden shadow IT and exposed services.
Compliance AuditMap findings to CISA ScubaGear, CIS Controls v8, NIST CSF, and ISO 27001.
Risk ReportingGenerate executive-ready security posture reports.
Python apps JS / Node Cloud infra Network IPs Git repos Config docs
SCUBA-LITE://TENANT-AUDITLIVE
GRAPH
SCAN
Entra
Exchange
Teams
Roles
MS.AAD.1
PASS
MS.AAD.3
FIX
MS.EXO.2
PASS
MS.TEAMS
REVIEW
Controls inspected128
Remediation tasks17
AUTHENTICATE - SCAN - CAPTURE FAILURES - FIX IN PORTAL - RE-SCAN - VERIFY PASS - AUTHENTICATE - SCAN - CAPTURE FAILURES - FIX IN PORTAL - RE-SCAN - VERIFY PASS - AUTHENTICATE - SCAN - CAPTURE FAILURES - FIX IN PORTAL - RE-SCAN - VERIFY PASS - AUTHENTICATE - SCAN - CAPTURE FAILURES - FIX IN PORTAL - RE-SCAN - VERIFY PASS -

Built Around The Real Remediation Loop

The scanner experience follows the operational path from your workflow: tenant discovery, Graph-backed policy checks, persistent remediation tracking, and continuous validation after fixes.

01 / AUTH

Tenant Discovery

Microsoft Entra sign-in establishes the tenant context before any audit begins.

02 / SCAN

Policy Evaluation

Conditional access, security defaults, role hygiene, and directory settings are checked.

03 / FIX

Remediation Queue

Failures become a persistent action list with practical portal-facing next steps.

04 / VERIFY

Re-Scan Proof

After fixes are applied, a new scan confirms status changes and evidence freshness.

Vulnerability Radar For Tenant Risk

Instead of showing a flat report, the scanner frames weak controls like live findings: severity, exploit path, owner action, and validation state. Click a signal to slide up a remediation story.

MFA exposure detected

Conditional access coverage is incomplete. Prioritize enforcement for privileged users, then re-scan to confirm the control moves to PASS.

Product Walkthrough

Transform Security Operations

Gain real-time insights, automate compliance workflows, and stay audit-ready at every stage.

Interactive Evidence Lab

Use this area to tell the product story visually: how findings are discovered, how remediation moves through the queue, and how security teams prove improvement over time.

Baseline Control Map

Image placeholder for the first scanner screen, showing tenant score, service coverage, and pass/fail grouping.

  • Identity controls grouped by urgency.
  • Graph-backed policy evidence summarized in plain language.
  • Export-ready posture snapshot for stakeholders.

Persistent Fix Queue

Image placeholder for remediation checklist view with linked Microsoft portal destinations.

  • Failures remain visible after sign-out.
  • Each task carries context, severity, and target owner.
  • Manual verification can be tracked alongside automated checks.

Verified Pass Story

Image placeholder for re-scan comparison, proving which controls moved from fail to pass.

  • Fresh scan results are compared to original failures.
  • Status changes are highlighted for review teams.
  • Progress can be shown as a remediation journey, not a one-off report.
Get in Touch