Snapshot of skills and competence of CERT-In empanelled Information Security Auditing Organisation
- Name, Location of the empanelled Information Security Auditing Organisation : Network Security Solutions (India) Ltd., Noida
- Carrying out Information Security Audits since : September 2002
- Technical manpower deployed for Information security audits :
CISSPs : 5
BS7799 / ISO27001 LAs : 13
CISAs : 6
DISAs / ISAs : 2
Total Nos. of Technical Personnel : 26
- Outsourcing of External Information Security Auditors / Experts : No
- Information Security Audit Tools used (owned, in possession) :
Freeware : 29
Commercial : 4
Proprietary: 2
Total Nos. of Audit Tools : 35
(Click here for details of the audit tools)
- Information Security Audit Methodology : COBIT, ISACA, BS25999, OSSTM, OWASP, ISO27001, NIST
- Information Security Audits carried out since empanelment till now :
Govt. : 237
PSU : 3
Private : 107
Total Nos. of Information Security Audits : 347
- Business domain of auditee organisations : Government, Defence, Electrical Power Generation, BPO / KPO, Telecom, Manufacturing, Pharma, Banking & Finance
- Typical applications in use by auditee organisations : Web, ERP, SAP, Finance, Proprietary Security
- Typical bandwidth (maximum) of any auditee organisations :
Internal Bandwidth (LAN / Intranet) : 1000 Mbps
External Bandwidth (WAN / Internet) : 2 Mbps
- Networked Infrastructure details of an organizations audited with most complex network :
No. of Computer Systems : 3000
No. of servers : 125
No. of switches : 250
No. of routers : 0
No. of firewalls : 8
No. of IDS' : 2
- Ability to carry out vulnerability assessment and penetration test : Yes
Key : NA = Not Available (data not provided by the CERT-In empanelled Information Security Auditing Organisation).