Not so long ago, getting your computer equipment to work at all was
quite an achievement. Today, that is the easy part. Now the problem
is keeping it safe! The Internet has become an essential resource for all of us, yet,
at the same time it is a more hostile environment than it ever was
and is becoming more dangerous every day. You bring your shiny new laptop home from the shop, take it out of
the box, switch it on and connect to the internet (possibly even wirelessly).
You do not activate your anti-virus software and you do not activate
any kind of firewall. Within ten minutes your new toy has caught the
'Sasser' virus and has been reduced to a vegetable. No, you say, that can't be true. Believe me, today it happens. I have
seen reports of unprotected computers being infected by viruses within
30 seconds of being connected to the Internet. See our check list for safe computing before you go any further. Security Audits begin with physical security, then look at entry points
and exit points to and from the network. We look at security risks
from the outside and also from the inside.
|
We
look at firewalls
We look at software vulnerabilities
We look at Virus protection
We look at adware and spyware
We look at procedures for authentication and encryption
We look at permissions and group policy and password policy
We look at the use of the Internet – which web sites, what is downloaded
We look at Internet temp files, cookies, browser add-ons
etc. and
We look at email and attachments. Email client settings.
Then
we compile a summary report with recommendations grouped into priorities:
Critical, Recommended, Desirable.
Then
we present it and discuss it and agree an Action Plan.
|
|