0A9F E785 1857 50AD 05CA A188 A708 1DB6 7F35 2F2A

Services

Vulnerability Assessment

SANReN CSIRT offers one vulnerability assessment for each constituent per year at zero cost.

Each vulnerability assessment encapsulates a process to identify, classify, report on, and provide remediation advice for the security vulnerabilities of a constituent’s IT infrastructure. It entails a scan to uncover vulnerabilities in network devices, servers, and systems. The results are manually verified and then compiled into an easy-to-read, actionable report.

Regularly scheduled vulnerability assessments will help institutions identify vulnerabilities in IT infrastructure before they can be used in an attack. The institution can then take action to remedy the weaknesses and prevent an attack/compromise.

Key features:
  • External and internal options available

  • Multiple scanners used (commercial and open source)

  • Scalable to unlimited IP addresses

  • Optional DNS verification

  • Customised report and remediation advice

  • Severity-level classification to aid remediation prioritisation

  • Manual (infosec expert) verification

  • User-friendly, actionable report (reduced page count)

  • Follow-up advice or assistance (limited)

  • Cost-effective charging model

What we need:
  • 1. Permission to scan – from the appropriate authority

  • 2. List of domain(s) and/or IP addresses

  • 3. Security contact details

What you gain:
  • 1. Extensive, low-intensity assessment using multiple scanners

  • 2. Manual verification/analysis/research

  • 3. Report summarising the findings and providing actionable remediation advice

  • 4. Limited follow-up consultation if required