Vulnerability Scanner Architecture: What to Scan, How to Dedupe, When to Build

The scanner-architecture decisions behind a working vulnerability management program built without enterprise tooling — coverage, deduplication, enrichment, and the one scanner I ended up building myself.

September 5, 2026 · 10 min · 1946 words · Javier Pulido

Why Most Vulnerability Management Programs Fail (And What Actually Works)

The design mistakes that quietly break vulnerability management programs — noise, ownership confusion, unrealistic SLAs, no shared accountability — and the shared-responsibility model that fixes them.

August 22, 2026 · 8 min · 1649 words · Javier Pulido