Network Infrastructure Security Assessment CONSULTANTS EXPERTS PROFESSIONALS

Our Network Architecture Assessments aim at reviewing the network infrastructure design and configuration for deficiencies that would expose the organization to risk. A Network Architecture Review engagement is focused on the architecture of the network, with an emphasis on identifying and analyzing the effectiveness of security controls present in the network. The objective of a Network Architecture Review is to analyze the effectiveness of network security controls, identify weaknesses, and make recommendations for improving the security posture of the network.

Beyond and in addition to network-based testing, this assessment utilizes network design reviews, benchmarking and analysis of the configurations of firewalls, routers, switches, and other networking devices to ensure these systems are set-up to best protect the networks and communications they enable and that they themselves are also protected against threats to prevent being used for attack propagation. The assessment also ensures that the return on investment of the cost of this equipment is maximized from a security standpoint by verifying that all available and effective security features have been implemented.

Internal vulnerability assessment, manual validation and penetration testing of mission-critical assets including applications, servers, routers, and switches for validation of layered-security and defense in depth. Testing is performed inside the network perimeter, behind firewalls, for unfiltered results. The assessment tests susceptibility to attack propagation should perimeter defenses be breached. Scope includes internal-only systems, as well as Internet-facing (DMZ) critical assets but in this case analyzed from within the network.

Our Platform Vulnerability Assessment focuses on an organization's information technology infrastructure for device and service vulnerabilities resulting from unpatched or misconfigured services. This assessment is focused on layers 2-4 of the OSI model, and can help an organization identify potential attack targets, or devices and services which may expose an organization to unacceptable risk. Platform Vulnerability Assessments can also help an organization identify devices or services which are not configured according to the organization's standards, have unauthorized services running, or may have already been the target of an attack.

Specific Areas of focus in our Assessment

  • Scoring and benchmarking of configurations
  • Manual review of configurations
  • Network design and topology reviews
  • Network-based vulnerability testing and manual validation
  • Comparison against best-practices
  • Remediation recommendations
  • Classification of severity of findings
  • Benchmark analysis of results vs industry

Assessment Targets

Networks, systems, applications, services, ports, protocols – unfiltered analysis:

  • Firewalls
  • Routers
  • Load balancers
  • Gateways
  • Other networking devices
  • Configurations
  • Security features and capabilities
  • Network architecture and topology
ADVANCED ICT » Consultants and Auditors LLP.