Services Provided

  • PDF
  • Print
  • E-mail

Download Brochures:

Services

Picture_13

PCI

PCIServicesBrochure-thumb

MFSS

MSFF_thumb

Free Gap

Free

D&B Ratings

db_logo

 

We are a PCI QSA

pci_ssc_qsa-xsm

N2NetSecurity, Inc proudly provides the following services:

Picture_4 Security Program Development 

We help our clients develop a security program, specially designed to protect their data using a defense in depth approach.  The program will include policies, procedures, and standards.  This service includes building a Secure Development Life Cycle (SDLC) for client applications and configuration control for network infrastructure.

Picture_6
Regulatory Compliance

Our clients face a myriad of ever changing regulations and standards.  The most common ones are PCI, SOX, HIPAA, and State Regulations.  We assist by first conducting a compliance gap assessment.  Then a targeted and prioritized remediation plan is developed and implemented to meet compliance and reporting requirements.  It is important to remember that Compliance Security, however risk of compromise reduces dramatically when compliance is reached.

Note: We are a certified PCI QSA, contact us for PCI Services.

Picture_12

SIEM

Today, organizations have many security devices: firewalls, IDS, Antivirus, Operating System logs, Application logs, Database logs, remote access control, and web proxy logs.  The question is: how do you monitor all of those devices and maintain the logs for periods ranging from months to years?  The answer: a Security Information Event Manager (SIEM).  We assist our clients with selection, integration, tuning, and operation of SIEM technology.
Picture_10 Penetration Testing

This service is designed to find and fix critical vulnerabilities before the bad guys find them.  Using the same techniques as attackers, but under strict control, issues are systematically found and verified to demonstrate the "True Risk". As required, applications may be assessed with either access to source code or without.  Networks will be assessed by probing external interfaces and then moving to an inside and trusted assessment.  Finally, the results are written up and presented in an actionable remediation plan.

Picture_11 Security Operations

It does not matter how many security tools an organization may have, if they do not have the resources, procedures, or training required to successfully use those tools and secure the environment.  We assist our clients with both Vulnerability Management and Incident Response.  From organization, to training, to staff augmentation, we will help build your security capability.

forensic-button

Managed Forensic Security Services

Once a breach occurs, it is too late to set up a relationship with a security consultant.  This service solves that problem by pre-establishing a relationship and set of procedures to follow in the event of an incident.  Our team will assist you through the entire incident from initial response, to forensics, to remediation to system hardening to monitoring.  You will recieve an incident report which will contain recommendations to prevent future attack.  We will not rest until you are back to normal, back to business!

 

Data Breach News

Imprisoned “Greenpoint Crew” member hit with new ID theft charges

MA: Town of Essex Legal Notice About “Potential” Breach Involving Youth Commission Records

Malware used in Jason’s Deli showing up elsewhere

CT: Hacker stole $87,000 from Putnam school account

UK: Council data leak sparks fraud fears

College Data Breaches Underscore Higher Ed Security Challenges

Investigators Find Famous DJ’s Credit Card Details for Sale

UK: Confiscated blacklist leaked back into market

KCI working to contain employee data breach

Faculty, staff ID threatened

West Virginia accounting firm employee sentenced for ID theft

Nine Former Cell Phone Company Employees with Stealing Customer Information in $15 Million Cell Phone Cloning Scheme (updated)

NZ: Card security breached in Qtown

Cyber Thieves Steal Nearly $1,000,000 from University of Virginia College

MO: Union pension mailer reveals recepient’s Social Security numbers

Delaware government: State retiree sues over Aon data leak

MN: Metro restaurant workers indicted in credit card scam

Email remains a major vector of enterprise data loss

Swiss: No assistance in stolen bank data cases

Heartland Payment Systems, Discover Agree To $5 Mln Intrusion Settlement

(Follow-up) Secret Service: Computer virus to blame for Jason’s Deli thefts

Miami man pleads guilty in ID theft case

MO: Military social security cards & other papers found in dumpster

AIB tells tribunal employee dismissed for accessing accounts

FL: Laptop theft results in data breach for P.K. Yonge employees, students

N2NetSecurity, Inc. News

WALTHAM, MA - February 19, 2010 - N2NETSECURITY, INC. has been certified as a Top 20% Performer based on the Past Performance Evaluation survey responses of its reference customers. N2NETSECURITY, INC.'s PPE score of 98/100 demonstrates outstanding overall customer satisfaction relative to similar companies.  Open Ratings, Inc.

Report can be downloaded here.