Computer, Network and Information Security Consulting Services
Polar Cove Professional Services

Home

Strategic Consulting
Info Risk Management
Policy Consulting
Security Strategy

Professional Services
Vulnerability Assessment
Penetration Testing
Attack Simulation
Vulnerability Scanning
Application Security Testing

SOX and SAS-70s
Sarbanes-Oxley and IT Regulations
Sarbanes-Oxley Sec. 404 Roadmap
SAS-70 Overview and Planning

SAS-70 Frequently Asked Questions

Company Information
Clients
White Papers
News
Contact Us
Events

Download Polar Cove’s latest Penetration Testing and Vulnerability Assessment Brochure

Penetration Testing

Ignore the Internet and miss the business opportunity. Use the Internet and other business technologies and confront real risks. The response to this dilemma is to mitigate the risks. Polar Cove penetration testing evaluates clients’ business technologies for weaknesses. Testing overall enterprise security provides a safe, effective way to find out if intruders can penetrate our clients’ networks. Testing provides the basis for taking specific steps and reducing risk to acceptable business levels.

Complexity in technology is the enemy of security. Yet, business technology is always becoming more and more complex. Public servers, Internet connections, telecommuters, desktop applications, network devices, constant code updating, and other complexities are inevitable. Each offers a new path into trusted business networks. When intruders find those paths, the results are countless: public embarrassment, interrupted business, lost trade secrets, and lost money, to name a few.

Polar Cove penetration testing minimizes risks, identifying intrusion paths and creating blocking plans before the paths are found and exploited by unwanted intruders.

Penetration Testing Includes:

  • Analyzing overall security posture and network.

  • Comprehensive testing specifically tailored to uncover real and potential access paths into trusted business networks.

  • Evaluating operational readiness, including response personnel.

  • Applying all of the necessary disciplines: Internet security, application security, social engineering, wireless security, communications security, and physical security.

Polar Cove’s highly-regarded penetration testing reports describe vulnerabilities and intrusion paths. They also provide prioritized action lists, with steps for immediate and long-term remediation.

Penetration Testing Processes:

  • Footprinting - Target range definition. Information gathering.

  • Scanning - Target selection and reconnaissance. Vulnerability probing.

  • Enumeration - Account selection and probing, resource enumeration.

  • Gaining Access - Initial system access.

  • Privilege Escalation - Increase access privileges.

  • Trust escalation - Trusted system access

  • Detection evasion - Log clearing. Tool hiding.

  • Access Creation - Backdoor, rogue accounts.



Download this text as PDF

[ Back to Top ]

 
White Papers
›  Understanding the Many Benefits of a SAS 70
›  SAS 70 Overview and Planning Guide
›  Polar Cove’s Experience in Sarbanes-Oxley Sec. 404 – A Roadmap
›  IT Security Benchmarking – Compare yes, but insist on hard data too.
›  IT Security Awareness in Finance – “ People are the weak link

more »


You Should Know...
74% of organizations surveyed report that the Internet is increasingly being used as a point of attack

40% of respondents detected system penetration from the outside.


Source: CSI/FBI Computer Crime and Security Survey

   more »


Contact us
For any questions you may have, contact us at
1-401-454-3939.
Our Polar Cove representative will answer and assist you with your specific needs.

 


   Privacy Statement    ||    Sitemap    ||    Careers
© 2005     Polar Cove