Snapshot of skills and competence of CERT-In Empanelled Information Security Auditing Organisation

  1. Name, Location of the empanelled Information Security Auditing Organisation : PSD & Associates, Jaipur

  2. Carrying out Information Security Audits since : March 1998

  3. Technical manpower deployed for IT security audits :
    CISSPs : 1
    BS7799 / ISO27001 LAs : 1
    CISAs : 5
    DISAs / ISAs : 8
    Total Nos. of Technical Personnel : 15

  4. Outsourcing of External IT Security Auditors / Experts : No

  5. IT Security Audit Tools used (owned, in possession) :
    Freeware : 12
    Commercial : 3
    Proprietary: 0
    Total Nos. of Audit Tools : 15
    (Click here for details of the audit tools)

  6. IT Security Audit Methodology : Own, ISO17799

  7. IT Security Audits carried out since empanelment till now :
    Govt. : 0
    PSU : 7
    Private : 18
    Total Nos. of Security Audits : 25

  8. Business domain of auditee organisations : Banking, Government, Finance, Software Development, Manufacturing (Cement, Paper, Textiles), Telecom.

  9. Typical applications in use by auditee organisations : CBS, risk management applications, accounting & treasury applications, e-governance applications, business intelligence, transaction processing applications (ERP) in manufacturing and service industry

  10. Typical bandwidth (maximum) of any auditee organisations :
    Internal Bandwidth (LAN / Intranet) : 100 Mbps
    External Bandwidth (WAN / Internet) : 2 Mbps

  11. Networked Infrastructure details of an organizations audited with most complex network :
    No. of Computer Systems : 2000
    No. of servers : 45
    No. of switches : 34
    No. of routers : 2
    No. of firewalls : 5
    No. of IDS' : 2

  12. Ability to carry out vulnerability assessment and penetration test : Yes

Key : NA = Not Available (data not provided by the CERT-In empanelled Information Security Auditing Organisation).