Penetration Testing mailing list archives

Where to get recognizable, 3rd party security audits?


From: Pigeon <fredit () charter net>
Date: Fri, 3 Mar 2006 17:40:03 -0500

Hello, I need to find a company that will do security testing on our 5 or 6 servers to verify their security level. We will need a very well recognized certificate from them.. AKA, I couldn't do the security audit, and no Joe Blow (granted you might be awesome) can do them. The reason for this is to show VERY large corporations our credentials.


So far, people have mentioned these certs:
SAS type 2
FISAAA
HIPPA
ISO7799
COSO


but I am unsure on these.. It appears like these could takes months to prepare internally and then we submit the information to an organization for review. Is this normal?


thanks!

------------------------------------------------------------------------------
This List Sponsored by: Lancope

"Discover the Security Benefits of Cisco NetFlow"
Learn how Cisco NetFlow enables cost-effective security across distributed enterprise networks. StealthWatch, the veteran Network Behavior Analysis (NBA) and Response solution, leverages Cisco NetFlow to provide scalable, internal network security. Download FREE Whitepaper "Role of Network Behavior Analysis (NBA) and Response Systems in the Enterprise."

http://www.lancope.com/resource/
------------------------------------------------------------------------------


Current thread: