The Case for Weekly Network Scans Over Quarterly Cyber Checks

Terry Dortch President, Automotive Risk Management Partners

Key takeaways

  • Some compliance vendors only run quarterly or monthly network scans as part of a dealership's cyber security program.
  • ARMP offers unlimited network scans, including weekly or daily, at no additional charge beyond its standard program.
  • ARMP states that more frequent scanning helps better protect a dealership's assets.
  • Dealerships should check whether their current compliance company offers flexible scan frequency without extra fees.

Summary

Network vulnerability scanning frequency is a detail many dealerships overlook when choosing a cyber security compliance provider. Some vendors limit dealerships to quarterly or monthly scans, which leaves gaps where new vulnerabilities can go undetected for weeks. This video addresses that limitation directly and explains why scan frequency matters as part of a dealership's overall Safeguards Rule compliance approach, since less frequent scanning means slower detection of emerging risks to dealership systems and customer data.

The core message for dealership principals, GMs, and F&I directors is that scan frequency should not be capped or treated as a premium add-on. Terry Dortch describes an approach where scans can run weekly, daily, or as often as the dealership wants, at no additional cost beyond the standard program, arguing that more frequent scanning translates directly into better protection of dealership assets. Dealers are encouraged to check whether their current compliance provider offers this same flexibility, and to reach out to ARMP if it does not.

Transcript

Introduction to cyber security topic

Hi, my name is Terry Dortch. I'm with Automotive Risk Management Partners. I want to talk to you today about cyber security, right? Nobody's talked to you about that in weeks, I'm sure. Probably haven't heard anything about cyber at all in the last 10 days, so I figured I'd bring it up.

Comparing scan frequency across compliance vendors

Here's what I want to talk to you about. A lot of companies out there, well, not a lot, a couple of companies that are doing the cyber aspects of your compliance program, they want to set you up and run quarterly scans or monthly scans. I'm going to tell you right now, we have a program in place. We can run unlimited scans for you. We can scan your dealership on a weekly basis, daily basis, whatever you want to do, and I'm not going to charge you any more for it. Other companies will.

Why more frequent scanning protects assets

We're not charging any more for it because we firmly believe that the more scans we can do, and the more on top of all of that that we are, the better we're going to be able to protect your dealership. And ultimately, what's our goal? Our goal is to protect your assets. And if we're going to protect your assets, then we have to make sure we have a program in place that does that.

Call to action for dealers

If your compliance company does not have that flexibility and does not afford you that protection, then I'm telling you right now, give us a call. The information's on the screen. Thanks, take care.

Questions this video answers

How often should a dealership run cyber security network scans?

The speaker recommends scanning as frequently as possible, noting that ARMP can run scans weekly, daily, or on whatever schedule the dealership wants, rather than limiting scans to quarterly or monthly like some other compliance companies.

Does ARMP charge extra for running more frequent network scans?

No, ARMP does not charge more for unlimited scans, including weekly or daily scanning, because they believe more frequent scanning better protects the dealership's assets, unlike other companies that charge extra for additional scans.

What should a dealer do if their compliance company only offers limited scanning?

The speaker advises that if a dealership's current compliance company does not offer flexible, frequent scanning as part of its protection, the dealership should contact ARMP, whose contact information is provided on screen.

Covered in this video

  • Network vulnerability scanning
  • Cyber security compliance programs
  • Dealership asset protection