http://www.computerweekly.com/feature/How-to-fully-test-IT-networks-for-vulnerabilities?utm_medium=EM&asrc=EM_ERU_51944717&utm_campaign=20160104_ERU%20Transmission%20for%2001/04/2016%20(UserUniverse:%201892052)[email protected]&utm_source=ERU&src=5467978


How to fully test IT networks for vulnerabilities

Steve Evans
Making sure a company network is secure is a very important task, and one
that should be scheduled regularly

o

The network is the lifeblood of a business. It is what keeps the
information flowing and ensures workers can do their jobs. So making sure
it is secure is a very important task, and one that should be scheduled
regularly.

One of the key elements of that is testing the network
<http://searchwindowsserver.techtarget.com/tip/The-price-is-right-for-these-Windows-security-tools>
for vulnerabilities, whether they are open ports, unpatched software or
something else. A full network scan is also a good way to ensure a business
can inventory everything connected to it, as even devices can and do
provide security weak points.

Ensuring the prolonged security of the network
<http://searchsecurity.techtarget.com/securityschool/Network-perimeter-security-in-a-perimeterless-world>
is a multi-step process. First, companies should look into a vulnerability
scanner
<http://searchsoftwarequality.techtarget.com/definition/vulnerability-scanner>.
There are many options available, both free and paid-for. However, as is so
often the case, the paid-for versions tend to have more features and offer
better support.

The vulnerability scanner will identify open ports
<http://searchnetworking.techtarget.com/definition/port> and IP addresses
<http://searchwindevelopment.techtarget.com/definition/IP-address> in use,
as well as operating systems
<http://whatis.techtarget.com/definition/operating-system-OS> and software.
It will then compare what it has discovered against its database of known
vulnerabilities and report back. Generally, vulnerabilities will be
presented on a risk scale, from low risk to high risk.

It is up to the business to then verify whether the vulnerabilities are in
fact dangerous, rather than a false positive or a port that has been
intentionally left open, for example.

It is crucial to assess the potential risk to the business from each
vulnerability and the likelihood of that vulnerability being used as an
attack vector. It is also important to look at how easy it would be to fix.
Some will be as easy as patching software, but others may require a more
in-depth and time-consuming fix.

Most modern vulnerability scanners will be updated as and when new threats
emerge. The recent Heartbleed
<http://searchsecurity.techtarget.com/definition/Heartbleed> vulnerability,
for example, would be picked up if a business was at risk from it.
Penetration testing

The next step for some businesses is to look at penetration testing. This
is when existing vulnerabilities are exploited to see how much of a threat
they are to the network, looking at how much damage an attacker cloud do if
they used a certain vulnerability to access an organisation’s systems.

A pen test differs from a vulnerability scan as specifically targets the
exploits to learn how much of a risk they present, rather than just
discovering any vulnerabilities and reporting back the findings. Pen tests
are much closer to what a hacker would do to gain access to a company’s
network, which is why people carrying out pen tests are often referred to
as white hat hackers
<http://searchsoftwarequality.techtarget.com/definition/penetration-testing>
.

It is important to ensure the vulnerability testing targets both the
network from within and any public-facing elements of the network. This
will give a business an indication of the potential threats from inside its
network and any weaknesses in the public-facing network that hackers could
look to exploit.

Some modern network vulnerability scanners are offered as-a-service and
delivered over the cloud. These scanners can offer always-on monitoring of
the network, reducing the amount of manual involvement needed to run a
scan. The scanners can also be updated in real time as new threats are
discovered. This method is one potential way of reducing false positives,
as the threat database should, in theory, be more up-to-date than an
on-premise scanner.




__._,_.___
------------------------------
Posted by: "Beowulf" <[email protected]>
------------------------------


Visit Your Group
<https://groups.yahoo.com/neo/groups/grendelreport/info;_ylc=X3oDMTJmYWljZjUxBF9TAzk3MzU5NzE0BGdycElkAzIwMTk0ODA2BGdycHNwSWQDMTcwNTMyMzY2NwRzZWMDdnRsBHNsawN2Z2hwBHN0aW1lAzE0NTE5MjcyNzg->


[image: Yahoo! Groups]
<https://groups.yahoo.com/neo;_ylc=X3oDMTJlNm85dThjBF9TAzk3NDc2NTkwBGdycElkAzIwMTk0ODA2BGdycHNwSWQDMTcwNTMyMzY2NwRzZWMDZnRyBHNsawNnZnAEc3RpbWUDMTQ1MTkyNzI3OA-->
• Privacy <https://info.yahoo.com/privacy/us/yahoo/groups/details.html> •
Unsubscribe <[email protected]?subject=Unsubscribe>
• Terms of Use <https://info.yahoo.com/legal/us/yahoo/utos/terms/>

__,_._,___

-- 
-- 
Thanks for being part of "PoliticalForum" at Google Groups.
For options & help see http://groups.google.com/group/PoliticalForum

* Visit our other community at http://www.PoliticalForum.com/  
* It's active and moderated. Register and vote in our polls. 
* Read the latest breaking news, and more.

--- 
You received this message because you are subscribed to the Google Groups 
"PoliticalForum" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
For more options, visit https://groups.google.com/d/optout.

Reply via email to