Vulnerability Assessment and Network Security

Network security is a dynamic process because ofreduce the possible damage that can be done to the
the new threats and vulnerabilities that are uncoverednetwork, and in turn, the productivity of the
every day. Your software may be secure today, butorganization.
the intense pace of upgrades will continue to createThe results of vulnerability assessment tools represent
the openings for new issues to arise. According toa snapshot of system security at a particular point in
statistics released by the CERT Coordination Center,time. Although these systems usually don’t
more than 300 vulnerabilities are reported everyreliably detect an attack in progress, they can
month. The process of discovering them, determiningdetermine whether an attack is possible, and
the potential security risk, and recommending fixes isfurthermore, provide information about what can be
called a Vulnerability Assessment.done to minimize the possibility of damage from an
A Network Vulnerability Assessment can:attack.
- Identify any potential security breaches a hackerMany companies provide Vulnerability Assessments,
could exploitbut it is advisable to consult with multiple vendors prior
- Analyze discovered vulnerabilities existing in theto deciding who will be given access to the network.
networkThe key factor is whether you are comfortable with
- Provide a detailed explanation of the recommendedtheir experience level, and the type of reports that can
fix for each threatbe provided.
Despite the fact that most security measures are putVlad Sharoiko is the Director of Technical Services for
in place to protect a network from the maliciousDicar Networks, San Jose, CA.
outside world, many intrusion attempts are nowDicar Networks, a network security solution provider
happening from inside the organization. With thebase in San Jose, CA, is pleased to announce an
proliferation of laptops and handhelds, the possibility ofaddition to their staff that will increase their ability to
an internal intrusion has greatly increased. For thisassist in the planning and implementation of their
reason, a complete assessment should be done withsecurity focus. Vlad Sharoiko, Vice President of
scanners located inside and outside the network toEngineering for Barbedwire Technologies, will focus on
determine if potential issues exist in either place.designing security assessment programs that will help
In addition, the reports generated should be structuredcompanies reduce the risks from either internal or
for 2 levels of review. The Executive Report shouldexternal network attacks.
represent a high level overview of the number ofMr. Sharoiko has an extensive background in network
vulnerabilities detected, while the IT Department shouldsecurity, including design work on various network
receive a highly detailed report containing descriptionsinfrastructure projects. He has extensive experience
of each vulnerability and explanations of the fixesarchitecting and installing network security products for
recommended for each one.large ISP environments and corporate customers. Prior
The key features of a Vulnerability Assessment are:to joining Barbedwire Technologies, Mr Vlad was a
- Automated scanning of internal and external networkfounding member of two successful internet startups,
devicesand had previous assignments with Beltelcom and
- Scan schedules customized to times of least activityMinsk Motor Plant in Belarus, where he was also
on the networkinvolved in new product designs.
- Full SSL support to scan SSLized services such asAs a local provider of network security products, Dicar
https, smtps, & imapsNetworks can provide assistance with all phases of
- Smart service recognition to detect services movednetwork design and installation, plus offer telecom and
to non-standard portsnetworking assistance. Dicar works with small and
- Non-destructive scanning to avoid interruption ofmedium size businesses to provide a full range of
normal network activitynetworking services, with the goal of simplifying
- Complete reporting designed for 2 levels of reviewnetworks. Other services include security
A Vulnerability Assessment should be performed on aassessments, network audits, and technical support.
monthly or quarterly basis, depending on network sizeMaintaining strong relationships with partners like
and usage. New vulnerabilities are discovered everySonicWall, Cisco, Adtran, & Barbedwire, Dicar is
day, including ones that can provide back door accessable to offer a full range of network management and
through desktops or laptops already connected to thesupport services, including anti-virus and anti-spam
network. Even a configuration change or faultyprograms. All these offerings help companies increase
upgrade can introduce an opportunity for breach thatthe efficiency of their network while providing a good
was not available a week ago. Testing and review onreturn on investment.
a regular basis can help discover potential issues and