Quick Links
 
Security Implementation
Secure Network Design

A secure IT infrastructure begins with a secure network design. Who better to design your network securely and for maximum performance than consultants who have assessed and designed hundreds of networks for clients all across the globe. This service includes analyzing your current architecture and security products, assessing your current and future network needs, and complementing these with a comprehensive risk assessment exercise. These form the inputs that help design a robust, scalable, and secure network. Various security aspects of a network are then implemented including:

  • Network segregation - dividing the network into various zones such as internal, management, external, DMZ, etc.
  • Access controls - rules for permitting and denying traffic between the zones, including between internal VLANs
  • Virtual Private Networks - securing communication over insecure channels with options such as SSL VPN, 2-factor based VPN, site-to-site and client VPNs
  • Wireless security - securing WLAN configurations
No matter what the size of your organization or the nature of its business, certain basic security controls are mandatory in your network. We provide these basic building blocks of security to your organization to help mitigate the most common threats.

These services include:

Active Directory

Designing the tree, forest, and organizational unit structures, ensuring proper user provisioning and identity management, configuring and deploying group policies, and creating administrative delegation groups.

Malware control

Malware controls have to be implemented at various levels of the network, including gateway anti-virus, host-based anti-virus, and spam controls.

Patch management

Based on the risk profile and the cost feasibility, we help implement freeware or commercial patch management solutions. Past experience covers Windows SUS, Hfnetchk Pro, and others.

Content filtering

Helps you reduce productivity and infrastructure losses by implementing gateway URL and content filtering mechanisms, including Websense, BlueCoat, and open-source solutions such as Squid.

Host Hardening

Security must be implemented in layers and this includes hardening of the hosts themselves. Especially those hosts that are present in vulnerable network segments such as the DMZ. Hardening services cover securely configuring various components, as well as designing security baseline configurations and checklsits to ensure continued compliance.