The invention discloses a website monitoring system and method applicable to a power industry. The system comprises an interaction layer, a data layer, a scheduling layer and a detection engine. The scheduling layer is used for scheduling the detection engine to carry out periodic automatic detection on tasks issued by users and summarizing detection results to the data layer after the detection is finished. The detection engine is used for receiving detection commands issued by the scheduling layer, detecting target websites, identifying Web security vulnerabilities, carrying out deep security physical examination on the website, monitoring website operation security states in real time, identifying the condition that a webpage is illegally tampered, malicious code is embedded into the webpage, a domain name is hijacked, an access page is refused and sensitive information occurs in the webpage, collecting internal security information on site by employing a vulnerability scanning device and a vulnerability detection tool, checking hidden vulnerabilities and deep security events, collecting website security physical examination results, website operation security state and onsite security checking results and transmitting the data to a database for storage.