RedSearl 风险评估商 背负我安全优先级的负载
yps补丁应用漏洞在你脑海中跳动。 现在,我讨厌营销推理像下个人一样多(主要理由我停止参加本地ISAC会议),
大约8个月前,我开始寻找风险评估软件-它能为我提供可靠的鸟视线,连网中最深最暗子网都连通并需要最少脚法工作屏幕捕捉仪表板显示即时威胁路径 从大坏云到可信资源
https://www.geospatialdefense.com/RedSeal/Internet-to-Trusted-Threats.png
红色Seel前, 要真正评价我网络安全姿势 需要我数周时间 才能交叉渗透测试结果 脆弱度评估 一次性安全工具并评估路由器/开关/防火墙配置 。 更别提我所有其他日常职责! 两周/三周评价强制超时和周末工作让我们面对它-我完成时已经过时! 我评价数家供应商和选择RedSeel的能力和成本有两个主要原因选择我(其他成本-90K三角洲),包括兼容我当前安全架构和提供外部对面节点破解时提供下游风险能力
网络效率环绕多高
- 系统识别服务器分类度量
- 内部工具互通
- 相联信息反馈
- 并提交用户
Rarely can a security analyst get everything they need regarding an ‘event' from just one application or one data location. Assessing the network's risk is no different! For my network, I was able to utilize the security strategies already deployed including – Qualys, Nessus, Tripwire, Foundstone, etc. Every morning, RedSeal automatically imports the nightly scans and delta changes throughout the network from Tripwire and provides the ‘latest and greatest' security posture (given the network probably doesn't change too significantly every 24 hours but better more information than not enough!) Here are links to 2 of the better reports that I look at regularly.
http://www.geospatialdefense.com/RedSeal/Best Practice Changes_08_03_204429.pdf
http://www.geospatialdefense.com/RedSeal/Security Posture_08_03_204719.pdf
*** 当然我无法发布我自己网络的结果, 但我从RedSeel演示环境提取了一些数据(感谢Randy Williams和Rod Stuhluller)
最后,unsung英雄-即时向Visio输出精确网络布局-自软件导入扫描器和配置后,网络基础设施映射工作相当不错。