I`m looking to find if anyone is actually using the scanalert/hackersafe service on their website and if it has done anything for sales. At first I wanted to know exactly what technical means they were using to do daily "scans" of the machines I operate as it appears (from the outside) they don`t do much more then ports scans, make sure the machine is patched, and test for PCI/SOX/HIPPA compatibility all of which is pretty easy to ensure. Then it dawned on me that it doesn`t really matter as long as the *customer* feels safer. At ~ $180 a month its not cheap but I`m curious to hear anyones opinion. Also the sales rep claimed that their support staff actually tests for SQL injection vulnerabilities which I find suspect as it would require a lot of man power and I`m pretty certain can`t (at least not easily be) automated. Thanks in advance.



