ips

Security Audits PDF Print E-mail
Written by Administrator   
Thursday, 16 April 2009 17:00

Nowadays, with the massive security focus in organizations, many IT professionals have taken on the mantle of performing network security audits in this lucrative area; directly addressing the latest threats and grasping the latest network security technology solutions.

IPS has been performing network security audits for many years, before network security became in vogue. Having spent even more years directly building complex networks, IPS staff combine network security audit expertise with their experience managing the usual IT operational systems such as mail, web, and file/print and application servers, also managing user technology interactions such as desktops, remote access, and help desk issues.

When embarking on a network security audit for an organization, many security outfits often refer to the “holistic view” and “best practices methodology” phrases when describing their approach. IPS uses a very pragmatic and realistic approach when auditing systems for vulnerabilities. It is important to maintain the balance between critiquing every “best practice” network security requirement not met and the operational business processes.

IPS has successfully performed numerous network security audits for its enterprise clients in several verticals, each presenting its unique set of challenges of what needs to be protected and what does not. IPS reviews each area of the organizations’ critical IT areas including:

 

  • Perimeter – external websites, client portals
  • Remote Access – VPNS, employee portals, authentication
  • Physical and Internet presence – social networking, Internet chat rooms, and DNS/web footprint
  • Internal network topology – encrypted data flows, segmentation, and redundancy 
  • Server and Workstation – images, group policies, patch management, USB usage
  • Wireless – rogue access points, AP range, and authentication 
  • Authentication – Active Directory, RSA
  • Policies – User practices, security and appropriate use

Each network security audit is not the usual massive report with false positives and confusing terms, but the first step to ensure the organization’s path to have a secure peace of mind.  IPS’ expertise continues with the presentation and clear reporting with systematic remediation steps.  Furthermore, as a final step, IPS can assist your organizations’ staff with the recommendations.

Finally, the network security audits can be scheduled regularly as a cost effective managed auditing service to ensure continued adherence to a high-security posture.

Last Updated on Monday, 19 July 2010 17:20