preview

Questions On Security Assessment Services

Better Essays

Security Assessment Services Checklist and Auditlist related points for an organization called “Cvent”, whose core business is SaaS and Mobile Application related to System Application Domain. Hence we need to make sure that the application servers are physically and virtually secure and provide round the clock availability and reliable data integrity. There should also be a checklist to ensure due privacy and confidentiality of client data.  Physical Security The organization should make sure that the severs, firewalls and mainframes should be placed in safe and secure area. So the following checklist should cover aspects pertaining to physical security like: • Are the application servers hosted in a safe and secure environment? Yes/No • Are the mainframe machines placed in a cool and secure environment, as they tend to get quickly overheated? Yes/No • Do the mainframes have alternative power backup to support the outages in power? Yes/No • Does the hosting space for Application servers provide reserve power backup for servers in case of power outage? Yes/No • Is there a backup and recovery policy in case of hard drive or failure of any other device? Yes/No • Do all the people who enter the application server room have valid/authorized access to work in the room? Yes/No • Does the people who attend to the mainframe server room have valid/authorized access to work in the room? Yes/No  Network Based (Attack & Penetration) Anything that is accessible via the internet

Get Access