Solutions, Inc. enhances network operations through proven, business-focused solutions.
Integrated Solutions, Inc. can Plan, build, or maintain a robust, scalable, and reliable network security infrastructure solution that supports business initiatives and performance requirements.
Integrated Solutions, Inc. can help you protect assets with security solutions tailored to your specific requirements. From state-of-the-art penetration testing to firewall and Intrusion Detection integration, Integrated Solutions, Inc. Consulting Services can design and implement a security solution for the financial industries requirements and your business model.
Security Risk Assessment Service
Information Gathering
Analyze Information
Prioritize Responses
Security Controls Implementation Services
Logical and Administrative Access Contro
Access Rights Administration
Authentication
Network Access
Operating System Access
Application Access
Remote Access
Encryption
Encryption Key Management
Controls to Protect Against Malicious Code
Systems Development, Acquisition, and Maintenance
Host and User Equipment Acquisition and Maintenance
Training
Electronic Media Handling
Intrusion Detection and Response
Business Continuity Considerations
Security Testing Services
Penetration Testing
Audits
Assessments
Monitoring and Updating Services
Monitoring
Updating
|
FFIEC Information Security Booklet, December 2002 (PDF FILE)
Integrated Solutions Security Presentation
(Power Point Presentation)
"Action Summary - Financial Institutions must maintain an ongoing information security assessment program..." - FFIEC Information Security Booklet - December 2002 p. 7
"An institution’s on going security risk assessment process should evaluate the adequacy of the system logging and the type of information collected. Security policies should address the proper handling and analysis of log files. Institutions have to make risk-based decisions on where and when to log activity."- FFIEC Information Security Booklet - December 2002 p. 64
"(NIST) recommends network intrusion detection systems at any location where network traffic from external entities is allowed to enter controlled or private networks." - 28 NIST Special Publication 800-41, FFIEC Information Security Booklet - December 2002 p. 69
"Action Summary - Financial Institutions should have the capability to detect and respond to an information system intrusion ..." - FFIEC Information Security Booklet – December 2002 p. 68
"The following data are typically logged to some extent including Inbound and outbound Internet traffic, Internal network traffic, Firewall events, Intrusion detection system events, Network and host performance, Operating system access (especially high-level administrative or root access), Application access (especially users and objects with write-and-execute privileges), and Remote access." - FFIEC Information Security Booklet - December 20
|