Assessment of IT and technical security controls
This service is designed for Clients who want to assess only technical aspects of IT security, without looking into formal issues, unlike in audits and integrated security assessments.
Within this service, IT and technical security controls are assessed, which includes verifying how vulnerable they are to an attack. The scope of this assessment covers the technical path under the LP-A methodology (a methodology for performing IT security audits), i.e.:
- analysis of technical documentation of IT networks and systems,
- penetration tests (controlled attempts to break through security controls) from the Internet,
- configuration reviews, including:
- Internet nodes,
- key servers,
- network equipment,
- security equipment and software,
- workstations (sample),
- analysis of applied software upgrades,
- analysis of the state of technical and physical security, e.g. overview of physical and technical security controls (including fire security).