17 basics question for SOX vulnerability assessment

  1. Do you have any security-related policies and standards
  2. If so, do you want us to review them
  3. Do you want us to perform a review of the physical security of your servers and network infrastructure
  4. How many Internet domains do you have
  5. How many Internet hosts do you have
  6. Do you want us to map your Internet presence Otherwise, can you provide us with a detailed diagram of your Internet presence, including addresses, host OS types, and software in use on the hosts We will also need addresses in use on both sides of the hosts if they connect to both the Internet and the internal network.
  7. Do you want us to review the security of your routers and hubs
  8. If so, how many routers and hubs exist on your network
  9. Do you want us to perform a security review of the workstations on the network
  10. If so, what operating systems are the workstations running
  11. If so, how many workstations would you like tested
  12. Our review will assess five or less servers of each type (NT, UNIX, and Novell); do you want us to review more than that
  13. If so, how many of each
  14. Do you want denial-of-service testing to be conducted This testing can have adverse effects on the systems tested. We can arrange to do this test during nonproduction hours.
  15. Do you want us to perform a modem scan of your analog phone lines
  16. What kind of RAS server are you using, and how many modems are used
  17. Do you want us to travel to other sites to perform assessments on systems

Popularity: 7% [?]

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • StumbleUpon
  • Digg
  • del.icio.us
  • Technorati
  • Sphinn
  • Facebook
  • Mixx
  • Google
  • blinkbits
  • BlinkList
  • NewsVine

Leave a Reply