Skip to Content

OpenVAS

OpenVAS es la plataforma de escaneo de vulnerabilidades de código abierto, que ofrece detección de fallos de seguridad en redes, sistemas y aplicaciones mediante una base de datos de más de 60 000 pruebas (NVTs).

Itrion ha ejecutado 150 escaneos OpenVAS, cubierto 3 000 hosts, identificado 7 500 vulnerabilidades únicas y reducido el tiempo medio de análisis a 45 min con informes automatizados y priorización de riesgo.

150

Escaneos realizados

3 000

Hosts analizados

7 500

Vulnerabilidades detectadas

45 min

Tiempo medio de análisis

Beneficios clave de OpenVAS

Base de NVTs
>60 000 pruebas actualizadas
Prioridad por riesgo
CVSS y contexto empresarial
Escaneo programado
Automatización cron
Informes PDF & CSV
Exportación flexible

Componentes esenciales

ComponenteFunciónUso típico
OpenVAS ScannerEscaneo de vulnerabilidadesHosts & redes
ManagerGestión de tareasScheduling y control
Greenbone Security FeedActualización NVTsBase de datos de pruebas
CLI ToolsAutomatizacióngvm-cli, omp
Web UIPanel de controlConfiguración y reporting
AlertsNotificacionesEmail, webhook
PDF/CSV ExportsInformesRemediación

Proceso Itrion + OpenVAS

1 · Definir targets
2 · Configurar NVT feed
3 · Ejecutar escaneo
4 · Analizar hallazgos
5 · Reportar y remediar

Ciclo completo en ≤ 1 h por host.

Fortalezas de Itrion con OpenVAS

Integramos OpenVAS en pipelines GitLab CI para escaneos tras cada commit en infraestructura y aplicaciones.

Automatizamos la actualización diaria del Greenbone Security Feed para asegurar NVTs al día.

Enviamos alertas y hallazgos a Splunk/ELK mediante HEC y webhook para correlación en tiempo real.

Aplicamos filtros y reglas de negocio para priorizar vulnerabilidades según criticidad y explotación real.

Razones para elegir Itrion

  • Despliegue ágil: OpenVAS listo en menos de 1 h con IaC y configuración automatizada.
  • Escalabilidad: múltiples scanners distribuidos en cluster para cargas elevadas.
  • Integración DevSecOps: escaneos automáticos en pipelines y retroalimentación inmediata.
  • Soporte continuo: monitorización Proactive y response S1 < 10 min.

OpenVAS is the open-source vulnerability scanning platform that offers security flaw detection in networks, systems, and applications with a database of over 60,000 tests (NVTs).

Itrion has conducted 150 scans with OpenVAS, covering 3,000 hosts, identifying 7,500 unique vulnerabilities, and reduced average analysis time to 45 min with automated reports and risk prioritization.

150

Scans performed

3,000

Hosts scanned

7,500

Vulnerabilities found

45 min

Average analysis time

Key benefits of OpenVAS

NVT base
>60,000 updated tests
Risk-based prioritization
CVSS and business context
Scheduled scans
Cron automation
PDF & CSV reports
Flexible export

Essential components

ComponentFunctionTypical use
OpenVAS ScannerVulnerability scanningHosts & networks
ManagerTask managementScheduling & control
Greenbone Security FeedNVT updatesTest database
CLI ToolsAutomationgvm-cli, omp
Web UIControl panelConfiguration & reporting
AlertsNotificationsEmail, webhook
PDF/CSV ExportsReportsRemediation

Itrion process + OpenVAS

1 · Define targets
2 · Configure NVT feed
3 · Run scan
4 · Analyze findings
5 · Report & remediate

Full cycle in ≤ 1 h per host.

Itrion strengths with OpenVAS

We integrate OpenVAS in GitLab CI pipelines for scans after every commit in infrastructure and apps.

We automate daily Greenbone Security Feed updates to keep NVTs current.

We send alerts and findings to Splunk/ELK via HEC and webhook for real-time correlation.

We apply filters and business rules to prioritize vulnerabilities based on criticality and real exploitation.

Reasons to choose Itrion

  • Agile deployment: OpenVAS ready in under 1 hour with IaC and automated config.
  • Scalability: multiple scanners distributed in cluster for high loads.
  • DevSecOps integration: automated scans in pipelines with immediate feedback.
  • Continuous support: proactive monitoring and response S1 < 10 min.

At Itrion, we provide direct, professional communication aligned with the objectives of each organisation. We diligently address all requests for information, evaluation, or collaboration that we receive, analysing each case with the seriousness it deserves.

If you wish to present us with a project, evaluate a potential solution, or simply gain a qualified insight into a technological or business challenge, we will be delighted to assist you. Your enquiry will be handled with the utmost care by our team.