|
|
Feel Good About Your Network
|
|
IDsec Limited
31-33 College Road
Harrow, Middlesex
HA1 1EJ
United Kingdom (Map)
T: 020 8861 2001
F: 020 8861 3433 www.idsec.co.uk
Copyright © 2008
IDsec Ltd
5.08
|
|
|
|
|
|
|
|
|
 |
Our services cover all the entry points that an
intruder can exploit when trying to break into systems. These include both the
Internet and internal office networks.
|
|
|
|
|
Perhaps you've just made a minor change to an established Internet
gateway and need a quick check to make sure that you haven't opened
up any holes. Or maybe you're setting up a new web presence and need
a more through check of your servers, firewalls and network
components.
Our consultants use much the same technology as ethical
hackers but follow a structured methodology. This provides
width as well as depth.
|
|
|
An on-site review of an Internet gateway goes beyond a simple
external scan and looks for security in depth.
As well as carrying out a thorough examination of possible traffic
flows, we can assess an organisation's ability to handle security
alerts and other anomalies.
|
|
|
A platform-level penetration test is all well and good,
but it won't show up vulnerabilities inherent in e-commerce and other
web applications.
We can help make sure that a user cannot gain
unintended access to data belonging to other users (or the company
itself), even if this is only at the embarrassment level. Similarly,
we can examine whether a user can break the application or disrupt the service.
|
|
|
Internal or external network?
A strict security policy is ineffective with a rogue wireless
LAN inside the building. An audit will show whether outsiders
can exploit wireless networking access points
|
|
|
How many modems does your organisation have? What do they
offer to the world at large? Are they providing a back door
on to your network that completely bypasses your carefully
constructed firewall?
We can find out for you.
|
|
|
In larger organisations it can be hard for security managers to get
a view of the entire network for which they are responsible.
A full survey gives a clear picture of the number and
types of systems on the internal networks. This can include
vulnerability testing of key systems.
|
|
|
Does the outside world know more about your networks that you do
yourself?
We can find out how much of your network structure is public
information: this is often a useful precursor to a penetration
test.
|
|
|
We always recommend testing a web application before it goes live,
but sometimes there are inherent security flaws that can be hard to
fix.
This means that it is important to involve
security specialists in the all stages of e-commerce
development: we can make sure a web application is built on secure
foundations from the start.
|
|
|
We have carried out dozens of assignments, for large and small
customers, and we know what they expect from a penetration test.
|
|