|
- Are you assessing the vulnerability of your perimeter systems annually?
- Does your assessor provide detailed documentation, including an easy-to-understand Executive Summary?
- Most importantly, can you pass your next IT exam?
Gladiator conducts scored evaluations of institutions’ perimeter systems. Using common attack methods, social engineering and drawing on our extensive knowledge of the financial industry and its regulatory requirements, we can effectively determine the external security of your network. Our Penetration Test comprises three phases:
Remote Examination:
- Footprint Process: Your institution is electronically researched to discover all public information that would be available to an attacker. Other searches are conducted to find private information that may be used by unauthorized individuals.
- External Scans and Penetration Testing: A series of automated and manual scans are used to discover all open ports through your Internet presence, find existing vulnerabilities, and identify any rogue modems that allow inbound connections.
- Social Engineering: Publicly gathered information is utilized to orchestrate social engineering tactics on your employees. The resulting report will enable you to examine the security awareness of your employees and plan any necessary training.
Evaluation & Documentation:
- Data Analysis: Information gathered during the external phase will be analyzed to separate false positives from actual vulnerabilities.
- Executive Summary and Supporting Documentation: A comprehensive report will be produced. A non-technical executive level summary is provided to highlight the key findings of the assessment and provide an evaluation of your institution’s external security. A detailed report will describe all vulnerabilities identified, including description of the threat, level of risk, and appropriate mitigation procedures. A raw report data from the various scans will also be included to supplement the assessment report.
Presentation:
- Deliverable Presentation: The completed assessment will be fully reviewed and explained to key personnel, and any questions will be addressed. Both a printed and electronic version of the report will be provided.
"Our recent vulnerability assessment was extremely
complete. We hired Gladiator to check existing systems and processes and
were surprised to discover several critical vulnerabilities that Gladiator
identified and
quickly patched for us."
--SHARON STANLEY
IT Manager
American Heritage Bank
Sapulpa, Oklahoma
|