Network Security and Network Vulnerability Assessment [author:Vlad Sharoiko Public time:Jun 19, 2005] |
|
Dicar Networks
97 East Brokaw Road
Suite #230
http://www.dicarnetworks.com/
THE DYNAMIC PROCESS OF NETWORK SECURITY
by Vlad Sharoiko
Network security is a dynamic process because of the new threats and vulnerabilities that are uncovered every day. Your software may be secure today, but the intense pace of upgrades will continue to create the openings for new issues to arise. According to statistics released by the CERT Coordination Center, more than 300 vulnerabilities are reported every month. The process of discovering them, determining the potential security risk, and recommending fixes is called a Vulnerability Assessment.
A Network Vulnerability Assessment can:
 Identify any potential security breaches a hacker could exploit
 Analyze discovered vulnerabilities existing in the network
 Provide a detailed explanation of the recommended fix for each threat
Despite the fact that most security measures are put in place to protect a network from the malicious outside world, many intrusion attempts are now happening from inside the organization. With the proliferation of laptops and handhelds, the possibility of an internal intrusion has greatly increased. For this reason, a complete assessment should be done with scanners located inside and outside the network to determine if potential issues exist in either place.
In addition, the reports generated should be structured for 2 levels of review. The Executive Report should represent a high level overview of the number of vulnerabilities detected, while the IT Department should receive a highly detailed report containing descriptions of each vulnerability and explanations of the fixes recommended for each one.
The key features of a Vulnerability Assessment are:
 Automated scanning of internal and external network devices
 Scan schedules customized to times of least activity on the network
 Full SSL support to scan SSLized services such as https, smtps, & imaps
 Smart service recognition to detect services moved to non-standard ports
 Non-destructive scanning to avoid interruption of normal network activity
 Complete reporting designed for 2 levels of review
A Vulnerability Assessment should be performed on a monthly or quarterly basis, depending on network size and usage. New vulnerabilities are discovered every day, including ones that can provide back door access through desktops or laptops already connected to the network. Even a configuration change or faulty upgrade can introduce an opportunity for breach that was not available a week ago. Testing and review on a regular basis can help discover potential issues and reduce the possible damage that can be done to the network, and in turn, the productivity of the organization.
The results of vulnerability assessment tools represent a snapshot of system security at a particular point in time. Although these systems usually don’t reliably detect an attack in progress, they can determine whether an attack is possible, and furthermore, provide information about what can be done to minimize the possibility of damage from an attack.
Vlad Sharoiko is the Director of Technical Services for Dicar Networks, a network security solution provider base in San Jose, CA.
Otherinfo:Dicar Networks
Contact Person:Terry Harnish
97 East Brokaw Road
Suite #230
San Jose, CA 95112
Phone: 408-850-6400
Printed From:http://www.free-press-release.com/news/200506/1119154120.html Source:Free Press Release
Similar news >>
Web Hosting Provider Network Solutions® Wins FindMyHost Editors’ Choice Award [Oct 3, 2007]
Netafreelancer Ltd launches, an innovation in the world of freelancing! [Jul 19, 2007]
Global Network Based Operations Report [May 1, 2007]
Network Security Protector [Mar 5, 2007]
NetSib Releases NetworkShield Firewall 2006 the New Generation Corporate Gateway Firewall for Window [Dec 18, 2006]
Network Security Protector [Dec 15, 2006]
NAC Systems: Dubious Identity shall be debarred! [Nov 25, 2006]
Network LAN Messenger without the Server [Nov 21, 2006]
Network LAN Messenger without the Server [Nov 21, 2006]
Network Traffic Monitor Analysis Report [Nov 6, 2006]
|
|