BlueKrypt

Security Audit

A company wishes to carry out a security audit of its computer infrastructure. Indeed, further to a virus attack of the managing computer system, security failures were found.

This company will adapt its infrastructure in compliance with security rules recommended further to the previous audit.

Background

The main objectives of the security audit are as follows:

  • Provide the company with a report on its computer security on the basis of the technical and organisational features observed.
  • Measure the breaches in relation with the Security Reference of the company.
  • Define the recommendations to be enforced while putting the system in compliance.

The conclusions of the audit carried out in the premises of the company will enlighten the strong and weak points observed:

Strong points

  • Adequate size of the system for the needs,
  • Strong physical partitioning of the network,
  • Choice of strong and industrial equipment and standards: communication protocols, measuring tools, servers,…

Weak points to be improved

  • Transfer of the new charges in the hands of the Operation Manager,
  • Strengthening of the system security, i.e. Replacement of the obsolete systems and mastering of the network shares,
  • Formalization and maintenance of the procedures: organization of the company’s activity, security management, list of tasks.


 
You are here: Home Case Studies Security Audit

Association

infopoleINFOPOLE is the network which federates professionals from Information Technologies and Communication.