|
Strangely enough, security is one of those areas that people often ignore most of the time that is, until they have a problem! Then it's the most important thing on their entire agenda!
Rather than finding out the hard way that you may have a security problem, our experienced security consultants can review this important area and report any potential holes so these can be fixed.
High Level Controls Review
Our review occurs at two levels. At a high level, we have Certified Information System Auditors (CISA) with qualifications from the Information Systems Audit and Control Association (ISACA).
Our qualified staff use the international Control Objectives for Information Technology (COBIT) standard to assess the risks that may be inherent in your IT procedures and processes. Using this standard, we examine the adequateness, appropriateness and effectiveness of the controls you have in place regarding your information systems.
Technical Review
At a more technical level, we have staff who with qualifications such as MCSE or CCNA who are able to review your systems for potential weaknesses and vulnerabilities. This may involve simulated penetration or denial-of-service "attacks" using a variety of hacker and cracker tools in order to test the strength of your security measures.
Such "attacks" are often carried out in conjunction with IT staff, or alternatively, we can perform the "attack" at random to more accurately simulate a hacker's activities. If desired, we can also undertake simulated psychological attacks whereby we attempt to gain unauthorised access via psychological means.
Be Proactive!
No matter what your business, you cannot afford to be lax in the area of security. Even if you believe your business would never be interesting enough for a hacker to break into, your systems could be used in an attack on someone else. In such circumstances, if it could be shown that you were negligent in the maintenance of your systems, the other party may have some redress to your organisation.
All of our security review services are designed to provide you with recommendations regarding the improvement of your systems and the elimination of risks for your business.
It's vital that you are proactive with regard to security rather than reactive.
|