What is it?
- Assesses the confidentiality and availability of your
data and resources.
- Investigates security incidents, breaches, and risks with
your existing infrastructure and
recommends corrective actions measures and IMPLEMENTS them
upon client’s instructions.
- This a 4-phase engagement whereas one of our security
consultants (CISSP) analyzes your LAN or WAN from the inside
and out and uses the most up- to-date intrusion detection
METHODS:.
Phase 1:
Internal Audit, Testing & Analysis: A specialized Certified
Information Systems Security Professional (CISSP) will come
to your office and conduct an audit. We look at everything
from the way your server is setup (looking for vulnerabilities,
open ports, anonymous logins, older user names and over 30
more items), to verifying your Tape Backup, Raid Configuration,
Virus Definitions, UPS, and Services running on the server.
We add ALL service patches on every server and workstation,
as well as service and security patches for Microsoft Office
on every workstation, checking the Installation configuration
of all software that you run and much more.
Phase 2:
External Testing and Vulnerability Analysis:
The Engineer now attempts to penetrate your Network, without
causing harm to your data. We look for open ports from the
outside, and conduct over 200 attacks (i.e. Sub Seven, Denial
Of Service, Synth Flood, Smurf Amplification, Spoofing and
MUCH more).
Phase 3:
Discussion of our Findings:
We compile a Corrective Audit Report showing the data and
statistics of uncovered weaknesses to your LAN or WAN. This
report will include details and further pricing on taking
the necessary corrective actions steps to remedy these weaknesses
and vulnerabilities.
Phase 4:
Corrective Action Response Implementation:
Based on what we find, and what you would like to correct,
we will engage with you and proceed into Corrective Action
Response in reducing your Risk. |