Pathfinder Assessment
Are you a small or medium-sized organization that knows it must address
security, but isn't sure where to start?
Are you planning a security project in the near future, and need to establish
a baseline of your existing policies and practices to effectively monitor
improvements to your business?
Are you recovering from a security breach, and need a quick "sanity check"
of your organization's security posture?
Often, an organization knows that they need to improve the security and privacy of their data, but they’re not sure where to start. When this happens, you need an objective, rapid and cost-effective review of your security posture. It should highlight where you are, where you should be, and the best path to get from “here to there”.You need a Pathfinder Audit.
With the Pathfinder Audit, Digital Defence will perform an assessment of your organization’s current security and privacy practices in the eleven domains of the international security standard ISO 27001:2005.
Service Description
Digital Defence's Pathfinder Audit goes beyond checklist-based reviews—Digital Defence will perform the following tasks:- Confirm existing network documentation
- Working with business and technical stakeholders, conduct a risk assessment to identify your critical assets
- Document your critical business assets, processes, networks and systems
- Complete an administrative security assessment of your security policies, standards, and procedures
- Complete a technical security assessment, including a review of the network architecture, security devices (firewalls, IDS/IPS, etc), and advanced technologies such as VoIP and wireless networking
- Complete a vulnerability scan of the network, servers, and representative workstations from a "full knowledge" perspective to maximize the scan's effectiveness and allow the testers to reduce false-positive results"
- Identify the presence of data "leakage" within your organization - instances when sensitive information may accidentally or purposely been made available to the Public Internet
- Develop a gap analysis to document the current state of your network against the "ideal" security state, as defined by accepted standards or known industry most effective practices

