Vulnerability Assessments
Vulnerability Assessments are critical components of an organization's security policy.. With new vulnerabilities created daily, it's important that an organization keeps an updated view of its current security posture. Want to know how those recent patches affected your security posture? Curious what impact your latest firewall or router changes had on a malicious individual's view of your network? The Vulnerability Assessment Services are your solution to finding such answers.
Vulnerability Assessments have become such a standard best practice that many regulatory bodies strongly recommend or require institutions to have a policy that includes them. The PCI Security Council, publisher of the PCI-DSS set of requirements, is among these bodies now requiring organizations to perform assessments at least quarterly. With so many reasons to scan, it makes sense to consolidate all these scans inside one easily accessible location that includes scan scheduling, report review, and remediation recommendations.
Perimeter E-Security offers many scanning services to best fit your needs. Scanning services are divided into the following types:
- External - this vulnerability assessment utilizes Perimeter's cloud-based scanners to perform scans on your externally facing devices. Performing scans from this perspective helps you understand what an individual trying to break into your network sees. The same web-based portal is included for easy service management and reporting with this service as is included in the Internal service.
- Internal - this assessment performs scan from inside your network, revealing vulnerabilities that an individual would see once they are past the edge devices. The same web-based portal is included for easy service management and reporting with this service as is included in the External service. Scanner software is provided to you with this service that can be installed on a dedicated device or virtual machine, or can be loaded as needed on a shared device.
- PCI- this external scan is customized to include the required Statement of Attestation and Self-Assessment Questionnaire mandated by the PCI-DSS set of requirements.. In addition to the management and reporting portal, this option provides additional reporting options including an overview of your PCI compliance status and more insight into any areas that are currently out of compliance.
- Perimeter E-Security is a PCI Approved Scanning Vendor (ASV), passing a rigorous remote test conducted by each vendor on the PCI Security Standards Council's test infrastructure, which simulates the network of a typical security scan customer.
Within each service listed above there are two versions to select from to provide the optimal solution for your needs:
- On Demand - this version gives you complete control over scan scheduling and allows you to schedule unlimited scans for unique hosts.
- Managed - this version brings our expertise to you. We will configure and schedule a monthly scan for you. Our security experts will then review the outcome and discuss the findings with you. Additional consulting is available upon request as well.
To speak with a security and compliance expert about our Vulnerability Scanning services you can fill out the Contact Me form on the left or call us at 800.234.2175, Option #2.
|
|
Download our Vulnerability Assessments Information Sheet |