Key Features

SiteWatch Cerberus is our comprehensive, non-intrusive security solution that performs Dynamic Application Security Testing (DAST) without requiring site logins or special server access. By simulating real-world attacks from external threats, Cerberus uncovers vulnerabilities just as a hacker would. Our DAST scans focus on identifying common exploits active in today’s threat landscape and probing for typical weak points, such as attempting SQL injections on forms, to ensure your site’s defenses are robust and your data stays protected.

Human Expertise

Unlike fully automated solutions, our scans are conducted by seasoned security professionals, ensuring higher accuracy and contextual understanding.

Comprehensive Suite

We offer a unique combination of DAST, basic and advanced API scanning, and optional SAST – a full-spectrum security approach many competitors lack.

Customization

Our ability to exclude specific URLs/endpoints allows for tailored scans, respecting your application’s unique architecture.

Efficiency Focus

Our false positive filtering significantly reduces time wasted on non-issues, a feature often missing in standard DAST offerings.

Rapid Turnaround

A flat monthly fee with plans starting at $1,000/month. No surprise bills. Fully covered for uptime, stability, and security emergencies.

Continuous Protection

The included free re-scan within 30 days ensures ongoing security, a value-add that many competitors charge extra for.

Flexible Support

From email clarifications to priority support with scheduled calls, we offer a level of guidance that goes beyond typical DAST services.

Cost-Effective

By combining multiple security testing approaches in one service, we offer better value than purchasing these components separately.

Packages & Pricing

10up offers three Cerberus packages with all-inclusive pricing.

Lite

Essential Security Coverage

$1,000 per URL


DAST Scan
Automated & manual web app security testing at its finest


Detailed Vulnerability Report
Actionable findings with remediation suggestions


Scan Conducted by Security Professional
Expert-led, not just automated


Basic API Scans
Checks for common API vulnerabilities


Exclude URLs/Endpoints
You control what is tested


False Positives Filtering
Manual review for better accuracy


3–5 business days turnaround


One Free Re-Scan (Within 30 days)
Verify fixes at no extra cost


Email Support

×
Advanced API Scan

Identify complex API flaws with in-depth manual testing

×
Site Availability Monitoring
Uptime tracked during scan

×
Priority Support & Expert Call

Faster response & 30-min consult

×
Deep Scan with Authenticated Testing

Tests logged-in user areas

Plus

Enhanced Protection & API testing

$2,000 per URL


DAST Scan
Automated & manual web app security testing at its finest


Detailed Vulnerability Report
Actionable findings with remediation suggestions


Scan Conducted by Security Professional
Expert-led, not just automated


Basic API Scans
Checks for common API vulnerabilities


Exclude URLs/Endpoints
You control what is tested


False Positives Filtering
Manual review for better accuracy


3–5 business days turnaround


One Free Re-Scan (Within 30 days)
Verify fixes at no extra cost


Email Support


Advanced API Scan

Identify complex API flaws with in-depth manual testing

×
Site Availability Monitoring
Uptime tracked during scan

×
Priority Support & Expert Call

Faster response & 30-min consult

×
Deep Scan with Authenticated Testing

Tests logged-in user areas

Max

Comprehensive Security & Priority Support

$4,000 per URL


DAST Scan
Automated & manual web app security testing at its finest


Detailed Vulnerability Report
Actionable findings with remediation suggestions


Scan Conducted by Security Professional
Expert-led, not just automated


Basic API Scans
Checks for common API vulnerabilities


Exclude URLs/Endpoints
You control what is tested


False Positives Filtering
Manual review for better accuracy


3–5 business days turnaround


One Free Re-Scan (Within 30 days)
Verify fixes at no extra cost


Email Support


Advanced API Scan

Identify complex API flaws with in-depth manual testing


Site Availability Monitoring
Uptime tracked during scan


Priority Support & Expert Call

Faster response & 30-min consult


Deep Scan with Authenticated Testing

Tests logged-in user areas

Getting DAST READY

SiteWatch Cerberus offers a comprehensive DAST scan to you, providing peace of mind with a report that can be shared, when needed, to adhere to security rules and requirements.

There is little preparation for 10up to perform a DAST scan, coordination of whitelisting a 10up URL along with agreement on a scanning window is generally all that is needed.

10up will provide you with a report of our findings, at that time you can request a 30-minute meeting to review the report if needed.

10up beats industry standard timelines with the delivery of reports within 3-5 business days of tests.

DAST scans are a form of automated penetration testing focused on web application vulnerabilities, but a full penetration test is more comprehensive and often includes manual testing and a wider variety of attack techniques. If you are interested in a penetration test of your website, please reach out.

DAST scans should be performed on a regular cadence to ensure your site remains safe and secure.

DAST scans do not review code. We do offer a Static Code Security Testing (SAST) scan, which uses automated tooling to review codebases for vulnerabilities. Don’t hesitate to reach out if you require a SAST scan.

Get Started

Interested in our Dynamic Application Security Testing (DAST) scanning service?

Fill out this quick form, and we’ll send you our comprehensive questionnaire to get started.