The Challenge
How do you ensure the continuous security of your web site? Firewalls, access lists, an Intrusion Detection Systems - these may help but there remain some fundamental questions to be answered:
- What types of problems should you class as a security breach, how will your people identify them and who will they notify?
- What is the security role and responsibility of each individual who supports your web environment?
- At what point should you consider disconnecting your web site from the Internet and who should make that decision?
- From a security perspective, what should you do with server and firewall logs?
- When you commission a new web application, how do you make sure the supplier doesn't do anything to weaken your security?
- Do your people have a standard procedure to security-harden new servers and network equipment?
- If your web site is located at an external facility or managed by another company, how do you measure the security against your requirements?
If an engineer replaces a piece of equipment, how does he or she know the security requirements of the configuration?
|
|
Services
Advance7 provides services to help you establish and maintain IT security:
- The Advance7 Web Security Policy & Procedures service is designed to reduce risk and protect revenues
- IT Security Penetration Testing - a service to check for vulnerabilities from the Internet and/or within
your own network
- Firewall Auditing - to rationalise the rule-base installed on your firewalls eliminate self-defeating rules,
reduce risk of misconfiguration and improve performance
Benefits
- Keep your systems secure
- Protect your data and networks from intrusion
- Lower the cost of IT security
- Improve uptime
|