Penetration Testing is a Vital Component to Network DefensePenetration testing is the process of probing a network to identify security vulnerabilities that could be exploited by outside parties. From a business perspective, it is a necessary process in determining the current state of your network security and is recognized as a vital part of ongoing due diligence to prove compliance to your industry regulators, customers and shareholders.
NCX Group’s Penetration Testing addresses external and internal networks, physical security, network topology, and directory and domain services. Our testing helps you shape and direct your information security strategy by identifying vulnerabilities and quantifying their impact so that proactive, appropriate steps can be taken and corrective action implemented.
NCX recommends a complete look at your organization’s network and its vulnerabilities, which is why we review the following components:
After testing and analysis, we provide a comprehensive report including an executive summary, a report card with an industry standard letter “grade” for each category of security tested, a detailed report documenting the vulnerability, the risk level associated with that vulnerability, the systemic cause, and the correction or best practices recommendation to remediate the exposure. We also provide a matrix based on the potential amount of danger it poses to the infrastructure to help guide the remediation effort of the findings. This allows your network administrators to quickly view exactly what areas of your network security need improving to apply patches, reconfigure software, and correct other discovered issues that could jeopardize your critical assets.
Our testing supports compliance initiatives for regulations such as GLBA, HIPAA, Sarbanes-Oxley Act, PCI DSS, FISMA, FFIEC, and others that require penetration tests.