AVIT
Security Scan
Typical Price: $750 - $1050
IT professionals face a difficult battle
in ensuring their network's security. To win, they must
find and eliminate every vulnerability in their network:
if they miss one, attackers will eventually find it, and
leverage it to undermine the entire network.
AVIT
Security Scan is designed
to enable IT to win this battle. An expert analyst from
AVIT will carefully scrutinize your network, identifying
vulnerabilities, one by one. He'll issue a detailed report,
documenting the weaknesses and instructing how to fix
them. And, as your point of contact, he'll walk you through
the process of implementing his recommendations and ensuring
your network's security.
More Than an Automated
Vulnerability Scan
AVIT
Security Scan is a complete security process – assessment,
reporting, recommendations, and implementation – not a
mere automated vulnerability scan.
Services performing automated vulnerability
scans have become ubiquitous. These services, which provide
customers with a report generated automatically by vulnerability
scanning software, simply do not enable IT to ensure security.
These computer generated reports lack accuracy (false
positives and negatives abound), and present massive amounts
of data in an unstructured and confusing way. What's more,
after the report is issued, the service provides no one
to explain it.
In order to facilitate security, IT must
be provided with an accurate, complete, and clear report,
and be guided through the security process. AVIT
has developed a package, implemented from start to finish
by a skilled analyst, designed to do exactly this. Our
process consists of:
More than just an audit,
AVIT
Security Scan is a complete
security process.
See the difference for yourself: Compare
a sample report from AVIT
with a report from one of our competitors.
For a detailed description of
AVIT's
testing methodology, please see AVIT
Security Scan Procedure.
All of our assessment services come with a full guarantee,
and are available both individually and on a subscription
basis.
Network Assessment
Typical Price: $6000 - $10000
We scrutinize every component of your
network for its security ramifications and vulnerabilities.
What's more, we will demonstrate the real world susceptibility
to attack through penetration testing. We'll produce a
detailed report, showing were your weaknesses lie, and
how to correct them. Please contact us for more information.
Penetration Testing
Penetration testing is a
key component of our network assessment service. It demonstrates
a system's real world susceptibility to attack, and provides
a model for risk management.
Firewall Testing
Typical Price: $1100
Our comprehensive firewall testing procedure
analyzes:
Coverage & Configuration - Is the
firewall set up to allow only desired traffic, and nothing
else?
Resistance to Subversion - Can an attacker subvert it,
sneaking malicious traffic past it?
Upkeep - Is it maintained properly? Is it immune to newly
discovered vulnerabilities?
Administrative Access - Is the administrative interface
secured (via authentication and encryption) from an attacker?
Information Leakage - Does the firewall reveal sensitive
information about itself or its network?
For a detailed description of AVIT's testing methodology,
please see AVIT Firewall Testing Methodology.
Is Your Firewall Doing Its Job?
Simply put, most firewalls are not doing their job.
"If you audit the firewall of a big
corporation, you find that five people have worked on
the configuration over three years and two versions; it
has thousands of objects and hundreds of rules, and nobody
knows what the beast is doing any more..."
These words, spoken candidly by a security
researcher at Bell Labs, relate a sad truth: configuring
a production firewall to effectively keep out attackers
is an elusive task. Skilled attackers will try technique
after technique, until finding a hole that lets them in.
Administrators, unable to keep up with the ever changing
hacker methods, often do not realize that their firewall
is leaking... at least, until the hackers show them.
Conventional Scanning Can Miss Weaknesses
Many security professionals limit their firewall testing
to a conventional "port scan" - an automated
scan that enumerates the network channels, or "ports,"
that the firewall permits into the network. While port
scanning provides an excellent overview, it does not address
basic questions, such as:
Are there any backdoors in the firewall through which
malicious traffic can pass?
Can an attacker disguise traffic to appear to the firewall
as a permitted type of traffic?
Is the firewall itself vulnerable to direct attack?
Does it leak information?
Leaving these questions unanswered, port scanning alone
cannot ensure the firewall's effectiveness and security.
How Does AVIT's Testing Ensure Rigorous Security?
AVIT's testing battery answers these vital questions.
We rigorously scrutinize the five major areas of firewall
vulnerabilities. We ensure that your firewall effectively
keeps attackers out, in a manner conforming with the ICSA
Lab Firewall Standards (an independent set of criteria
for firewall potency).
Our penetration testing is fully guaranteed:
if we are unable to demonstrate how your system can be
compromised, we'll refund you the full price.
If you'd like to find out more, please
continue here,
or call us now at (616) - 446 - 7603.