ESMS Centralised Security Management

Loading...

Flash Player 9 (or above) is needed to view presentations.
We have detected that you do not have it on your computer. To install it, go here.

0 comments

Post a comment

    Post a comment
    Embed Video
    Edit your comment Cancel

    Favorites, Groups & Events

    ESMS Centralised Security Management - Presentation Transcript

    1. Enterprise Security Management Service (ESMS)
    2. TeamInfoSec Background – About Us TeamInfoSec was founded in 2003 by Paul C Dwyer CISSP, CISM and ISO 27001 Lead Auditor. The firm provides professional information security consultancy. Paul is an Internationally recognised InfoSec expert with over 18 years experience. Credentials include: CISSP CISM ISO 27001 Lead Auditor BSI BS25999 Consultant IEEE Member of the Computer Society Member of the Business Continuity Institute Member of the Computer Security Institute 3Com Certified Partner ENCASE Trained Forensic Specialist Member of the High Tech Crime Network Microsoft Certified Engineer Novell Certified Engineer Certified Ethical Hacker National Crime Faculty preferred supplier Qualys Certified Specialist Association of Information Managers BSI Associate Consultants 2
    3. TeamInfoSec Services 3
    4. TeamInfoSec Clients – Who We Work With?
    5. ESMS – How It Came About ESMS – Where it all began? “It is of course pointless having an access control system and security policy if the system cannot identify any potential abuses. Consequently, a system should be able to identify the user name that accessed a file, as well as the time of the access. A log of alterations made, along with author/editor, should also be created. Not only can this help in the effective administration of the security system, its existence should also act as a deterrent to those staff tempted to abuse the system.” - Data Protection Commissioner 5
    6. TeamInfoSec – Sought Holistic Solution Complete Network Security Monitoring Reporting Forensics Visualization Data Archival ~ end-to-end correlation ~ ESMS Log Management Vulnerability Configuration Asset Performance NBAD Analytics Analytics Analytics Analytics SSH Syslog Scanners Telnet MIB NetFlow API SSH Traditional SIM SNMP API Telnet/SSH Syslog Trap MIB API Flow 6
    7. The Bottom Line • Such a solution did not exist for large & small organisations • Solutions were too complicated • Too expensive ($250,000+) per site • A number of single point solutions required to adequately monitor devices • Not all platforms supported • Reporting capabilities extremely limited (PCI Reports etc.) • Requirement by law and under financial standards and regulation 7
    8. ESMS Was Born 8
    9. Holistic Solution for Network Security
    10. Comprehensive – Tailored Solution
    11. Holistic Solution ------------- Centralised – Lower Cost Log Management Configuration SIM / SEM Solutions Management Enterprise Console Asset NBAD Management A Single Platform to Manage ALL DATA Vulnerability Performance Scanners Management Integrated Security, Risk and Audit Management Platform – ESMS Point Management Products 11
    12. ESMS – Benefits Summary • Multiple Problems – Single Solution • Cost Effective • Flexible • Easy to Deploy • Holistic Solution • Proven Track Record • Tailored for Large & Small Organisations 12
    13. ESMS – How It Works 13
    14. ESMS Security Centre – Graphical & Statistical Breakdown An attacker might: Step 1 Probe your network [LOG DATA] SIM Step 2 Execute an attack [LOG DATA] Step 3 Gain system access [LOG DATA] Step 4 Make configuration changes [CONFIG DATA] ESMS Step 5 Create new accounts [SYSTEM DATA] Step 6 Install rogue applications [ASSET DATA] Step 7 Data Theft [FLOW DATA] 14
    15. ESMS Reporting Capability An attacker might: Step 1 Probe your network [LOG DATA] SIM Step 2 Execute an attack [LOG DATA] Step 3 Gain system access [LOG DATA] Step 4 Make configuration changes [CONFIG DATA] ESMS Step 5 Create new accounts [SYSTEM DATA] Step 6 Install rogue applications [ASSET DATA] Step 7 Data Theft [FLOW DATA] 15
    16. ESMS – 10 Reasons Why You Need It 16
    17. ESMS – Next Steps – Contact TeamInfoSec 17

    + pcdwyerpcdwyer, 6 months ago

    custom

    231 views, 0 favs, 0 embeds more stats

    Centrailsed Security Management Solution from TeamI more

    More info about this document

    © All Rights Reserved

    Go to text version

    • Total Views 231
      • 231 on SlideShare
      • 0 from embeds
    • Comments 0
    • Favorites 0
    • Downloads 0
    Most viewed embeds

    more

    All embeds

    less

    Flagged as inappropriate Flag as inappropriate
    Flag as inappropriate

    Select your reason for flagging this presentation as inappropriate. If needed, use the feedback form to let us know more details.

    Cancel
    File a copyright complaint
    Having problems? Go to our helpdesk?