Default Vulnerability Scan in CYRISMA
Discover how to perform a default vulnerability scan within the CYRISMA platform to assess potential security risks and strengthen your system's defenses.
- User Manual
- Self Onboarding Guide
- Agents
- The Cyber Risk Assessment Process
- PSA Integrations
- General Questions and Troubleshooting
- The Cyber Risk Assessment Process (Video Tutorials)
- Sales and Prospecting Articles
- CYRISMA Partner Portal Access
- Glossary
- API Documents
- CYRISMA Change Log
- Support Ticket SLA
- Billing Questions
Table of Contents
📌 Overview
Once CYRISMA agents are deployed on endpoints, they are automatically added to the Default Vulnerability Scan. This scan is preconfigured to ensure every new device starts receiving risk insights immediately—no manual scheduling needed.
By default, this scan is set to run weekly (every Monday at 9:00 AM), but it can be customized to support daily or even continuous scanning, depending on your needs.
Key Behavior
✅ Auto Enrollment: Any new agent added to the environment is automatically included in the Default Vulnerability Scan.
📆 Default Frequency: Weekly on Mondays at 9:00 AM.
🔄 Editable Options:
- Scan name
- Recurrence pattern (e.g., daily, weekly)
- Scan time
- Notification preference
- Credentials (default vs. alternative)
⚙️ How to View or Edit the Default Scan
Navigate to Vulnerability Scan in the top menu.
Scroll to the Scheduled Vulnerability Scans table.
Locate the row labeled Default Vulnerability Scan.

Click the pencil icon to edit settings:
Change scan frequency
Adjust the day/time of scan
Enable or disable auto notifications
Modify assigned agent group(s)
⚠️ Important: This scan only targets devices that use agent-based vulnerability scanning. External or unauthenticated scan types must be scheduled separately.
🖥️ Target Details
Each row in the target section shows:
Target hostname & IP address
Assigned vulnerability profile
Last check-in timestamp
Scan inclusion toggle
