Thoughts on Cyber security vulnerability scans?

Posted by Deodedros@reddit | sysadmin | View on Reddit | 30 comments

I'd like to know your opinions on these cyber security guys who just run some scans and put together a fancy report. Personally I'm quite frustrated as I feel like 90% of them are just a waste of time that doesn't actually improve anything. Its even more frustrating when it seems like they're using some other company that names vulnerabilites that are not CVE's listed by NIST.