Cyfence Logo
 
   
 

 

 

Risk Assessment needs continuity for checking efficiency

   
   
         
 

Risk Assessment Services

 

Home | Services | Risk Assessment Services

Risk Assessment Services

 
 

Services
Cyfence provides security solutions and services relying on demands or necessities of organization.

Cyfence is the investment to the clear future and the effective developments without the threat and risks to the systems.

Risk Assessment Services
Vulnerability Assessments
Penetration Test
Security Solutions
Integrated Security Services
Managed Security Services

 

 

Sometimes enterprises need to call in experts after experiencing an attack or enterprises may have experienced a loss due to computer crime. Vulnerability scanning and incident response services will help customers protect data for prosecution, perform damage assessment to determine what was compromised, identify perpetrators, and determine exactly what happened. Therefore, it won’t happen again.


Vulnerability Assessment

A vulnerability assessment will analyze existing organization’s security plans, programs and processes to evaluate adequacy and identify areas that may need improvement. Vulnerability assessment reveals threat risks to customers’ facility by first discover what is critical to the company success. Using that information, conduction interviews and thorough questionnaire, then customers’ security system and programs will be analyzed to determine overall security effectiveness. A detailed report is then developed for customer network team to use to ensure proper network security.

Two levels of vulnerability assessment are customized to fit the needs of customers’ organization. The vulnerability assessment service is offered as a subscription to continuously keep customer system up-to-date and well protected.

Level 1
Strengthen

Level-1 assessment includes 14 days on-site, a network vulnerability assessment, a security posture assessment and resource classification, a final report, and a review of results and recommendations. 5-Step involves in level-1 assessment. 

Strengthen

Step 1: Discovery
Explore network infrastructure and collect all related information.

Step 2: Isolation
Isolate the problem area.

Step 3: Analysis
Analyze each isolated problem from log report.

Step 4: Remediation
Immediately response to high risk problem.

Step 5: Reporting
Provide summary report of all problems found.

Level 2
Strengthen & Securing

Level-2 assessment includes 44 days on-site, a network vulnerability assessment, a security posture assessment and resource classification, a final report, and a review of results and recommendations. 4-Step involves in level-2 assessment.

Strengthen & Securing

    Step 1: Vulnerability Assessment
    Perform throughout internal system assessment and scanning.

    Step 2: Architecture Review
    Evaluate current security architecture and propose any modification and implementation if necessary.

    Step 3: System Hardening
    Perform system hardening, patching and securing the system.

    Step 4: Reporting
    Provide summary report of all problems found and securing area.



Penetration Test

Penetration testing is another stage of assessing the security of customer’s system. Further than a simple scan, a penetration test is a multi-step process using zero knowledge, partial knowledge, and full knowledge techniques to break into customer’s system the same way a hacker or insider would. These steps include mapping network elements to business function, exploiting vulnerabilities to assess effectiveness, and social engineering to test security procedures.

  • External Scan
    This method knows as “attack methods” to attempt to access customer’s internal network from outside customer’s network. Scheduling information will be collected during an initial interview and then conduct the perimeter testing portion of the review.  The summary report will include recommendation of action based on the findings.


  • Internal Scan
    Once the external scan is complete, an internal scan is conducted.  Internal scans are performed with the same tools as an external scan.  All possible measures will be taken to get an accurate and complete analysis scan of the network while minimizing the impact to production system in use.

 

 
         
   
   
                 
 
News & Highlights
CAT join hands with Provincial Police implemented intelligent red box system with complete IT Security.
Monday, October 13, 2008
 
Events
Industrial RoadShow @Laemchabang
Thursday, June 28, 2007
 
Promotions
Special Promotion - Secure Log Management Service
Wednesday, July 09, 2008
 
                 
   
   

 

      Term of Use   |   Credits
      Securing your Digital Assets by CAT Telecom