Skip to main content

Malware scanning: how uploaded documents are protected

Find out how CyberVadis scans every document you upload for malware before it is stored, and how the platform infrastructure is designed to prevent malicious content from affecting your data or the assessment process.

Written by Ana Nikolaeva

Every document you upload to the CyberVadis platform is scanned for malicious content before it is stored. This scan runs automatically on every file without exception, and no document reaches the platform's storage layer until it has passed the scan.

What is scanned for

The malware scan checks for viruses, worms, trojans, and other types of malicious content. Scanning definitions are always up to date, ensuring protection against the latest known threats.

Where scanning happens

All scanning is performed strictly within CyberVadis infrastructure. Your documents are not sent to a third-party scanning service at any point in this process. This means your files remain within the CyberVadis security perimeter from the moment you upload them.

What happens if a file fails the scan

If a document you upload is identified as containing malicious content, it will be rejected and will not be stored on the platform. If this happens:

  1. Check the file on your own device using your organisation's antivirus or endpoint protection tool

  2. If the file is confirmed to be infected, do not attempt to re-upload it

  3. If your security tool does not detect a threat and you believe the rejection is a false positive, contact support@cybervadis.com with your company name and a description of the file you were attempting to upload

Data isolation

Each customer's data is logically isolated from all other customers on the platform. The platform uses isolated storage layers per service, ensuring that a security event in one area of the platform cannot affect another customer's data or assessment.

For full details on how your data is stored, encrypted, and accessed, see [How your data is stored, transported, and accessed: technical detail].

Did this answer your question?