Solutions
Our solutions are listed below.
|
|
At Digiss, we are able to use data stored in your organisation's computer to reconstruct and uncover malicious or fraudulent activities. The evidence produced through this process can then be used in a disciplinary hearing or a court of law.
If you suspect computer misuse in your organisation or you would like to uncover the preceding steps to a fraudulent activity, it is vital that you ensure that the evidence is not tampered with in any way. All our clients have a copy of the guidelines detailing the steps to take when a forensic investigation is required.
A high level overview of our process involves the acquisition of a bit-level copy of the data of interest whilst preserving the original evidence. Every case is unique and our analysis, from start to finish, respects such uniqueness.
In the end, we would present an evidence which can be used to determine the sequence of events leading to the activity of interest.
Contact us today for more information about this offering. |
|
Last Updated on Monday, 16 January 2012 14:54 |
|
Ethical Hacking & Penetration Testing |
|
|
|
|
So you think your systems are secure and you've closed all the doors available to the attacker? Think again!
There is an old adage that says to catch a thief; you need to think like one.
At Digiss, we are constantly evaluating the attack surface of our clients. Once terms and timing are agreed with the relevant personnel within your organisation, we would proactively assess your systems whilst employing the same set of tools in the attackers' arsenal. Following this, a comprehensive report that gives a view of your organisation's risk profile will be presented. As part of this report, recommendations will be made as to how your risk can be effectively mitigated. |
|
Information Security Policy |
|
|
|
|
Whether your organisation has an information security policy or not, we are able to help you review, implement and measure the effectiveness of your information security policy. An organisation without a concise and effective information security policy is setting itself up for failure.
Every day, we hear about attacks against organisations by highly resourceful and sophisticated hackers. Website defacement, Denial of Service Attacks, Cross-site scripting are some of the attacks that have made the news in the past. However, far more prevalent attacks are the ones caused by employees.
Every organisation will always have one or two disgruntled employees, and knowing that some of these employees have intimate knowledge of the organisation that could be damaging to the company's brand, reputation and profitability is a good way to start assessing and mitigating the insider threat.
Having an effective information security policy will ensure that everyone within the organisation knows what is acceptable and what is not.
Your information security policy is your organisation's first line of defence, and Digiss is able to guide you all the way from careful development through to effective implementation. |
|
Security Awareness Training |
|
|
|
|
It is impossible to successfully implement a strong IT Security program without making the users aware of their security responsibilities – keeping the organisation safe!
The employees of any organisation are its greatest assets, but they also represent the weakest link in her security chain. Rather than focusing on exploiting vulnerabilities in systems and applications, modern attackers are now going after human vulnerabilities. Social engineering attacks have become even more popular with the proliferation of social networking solutions - resourceful attackers are now leveraging publicly available information about high profile targets to conduct social engineering attacks.
From day-to-day, users make decisions as to whether to click on a (malicious) link, or to attach a personal mobile device to a corporate workstation. For an organisation to minimise her exposure to digital security risk, significant attention must be given to educating users on security best practices, policy, procedures, and guidelines, as well as the various management, operational, and technical controls necessary and available to secure IT resources.
To address this, we educate the employees of our clients on IT Security best practices. Our world class security awareness solution provides additional benefit of helping you to enforce acceptable use policy.
Digiss has partnered with a global leader in the security awareness training space to deliver security awareness training of the highest standard. The training materials have been designed and developed in line with the SANS twenty security controls framework, and can be customised to suit the need of your organisation. Depending on the resources available to your organisation, you can either choose to host the training materials on your Learning Management System (LMS) or have it delivered through our Virtual Learning Environment (VLE).
Contact us today for more information about this offering. |
|
Threat Management & Security Intelligence |
|
|
|
|
Gone are the days when script kiddies and security enthusiasts attack organisations for fame and bragging rights; the modern computer criminals now look to make financial gains from their illicit activities – these guys are incredibly well-resourced, and have stealthy and sophisticated tactics. Businesses are now up against deliberate, targeted and well-planned threats.
From a technical standpoint, we offer secure web and e-mail gateway solutions that provide extensive protection against web-based and e-mail borne threats. However, given that only a defence-in-depth approach is capable of thwarting the attackers, we take a global approach to threat management.
Our security intelligence service also ensures that you're kept in the know whenever any movement in the ever-changing threat landscape affects your enterprise environment. Security after the fact is often too late - this is why we guarantee that our proactive approach to threat management will ensure that the risk to your critical assets is significantly reduced.
Tell us about your challenges today and we'll propose a solution that meets your requirements. |
|
Last Updated on Tuesday, 10 January 2012 12:08 |
|
Vulnerability & Asset Management |
|
|
|
|
The field of information technology is constantly evolving, with regular emergence of new solutions to common problems. This means that an average organisation is constantly acquiring new technology to solve specific or multiple problems, giving rise to disparate systems and/or applications.
What most businesses do not often realise, however, is that with every new solution comes new opportunities for malicious people and cyber criminals. The presence of multiple systems in an organisation is not necessarily a bad thing. However, this inevitably widens the attack surface and presents enormous opportunities for attackers to gain unauthorised access to the network of the target organisation.
The good news, though, is that for an attack to be successfully pulled off, certain conditions must be fulfilled by target system.
Our job at Digiss is to get ahead of your adversaries by ensuring that such conditions are constantly identified and proactively eradicated before your attackers detect them.
Let us preserve your competitive advantage by helping you to protect your crown jewels! |
|
|
|
|
|
|