GetControl™
—Repeatable and Sustainable Excellence
Security Auditing
Inforonics can help you with short-term or ongoing engagements to Get Control of
your IT security challenges — from assisting with routine internal IT process & procedures to
pre-SAS70 audits to due diligence for merger and acquisition planning. Our security audits can help you
with applications, networks, LANs, network operating systems (NOS), Directory and user level
authentication, and desktop environments.
These engagements are guided by your requirements, but generally consist of discovery interviews and
actions that identify areas of exposure and the tools and infrastructure available. Inforonics can then
deliver a report that provides an assessment of the current state, mitigation strategies and technology
upgrades if appropriate as well as an action plan for you to execute based on your desired business
outcomes. Some security areas considered are:
- File usage on network file servers, including available tools
- Fire wall data, including available tools
- Remote access users and connection methods, including internet access, VPN, and firewall software
- Usage and intrusion detection best practices
- Forensics
- Electronic use policies
- Application security
- McAfee Secure and PCI compliance audits and action plans
- Weekly security scans: Using the commercial version of Nessus, Inforonics scans client systems weekly to find security holes. Inforonics triages and either fixes these holes in coordination with you or delivers recommendations that you can implement. (Remote scanning requires a small hardware investment)
- Managed Security: Inforonics can also deliver its Guardian℠ or InSight℠ management or monitoring services in support of your security devices and systems.






