Security Policy Audit
Cisilion's Security Policy Audit will provide technical consultancy to comprehensively review your deployed firewall infrastructure. The audit includes the following activities:
- Gathering technical config details on the deployed security network for:
- Topology (physical and logical)
- Security Device configuration
- Obtain rule base of current firewalls and ACL’s on routers
- Identify Services, Objects, Group IP address and host ref. in rule base.
- For each rule on each firewall, access list and identify:
- nominated application owners
- hosts / subnet
- ports required
- protocols
- flow directions
- rule sensitivity
- logging level
- action
- Identify rules that have no owner or business requirement and determine suitability for removal from the rule base
- Identify multiple rules that can be consolidated into a single rule
- Identification of any vulnerabilities / sub-optimal security configuration
- Assess additional security measures that could be implemented to enhance Internet edge architecture
Collate and assess research findings.
Cisilion will review findings and provide a written report which will be split between a management summary and a technical report. The report will include the following
- Overview of the security infrastructure
- Recommendation of rule base optimisation
- Proposed remediation changes to improve security
- Identification of any areas that may require further review
To book or discuss our Security Policy Audit with a consultant please click on the CALL ME BACK button to the right of this page.