Snapshot of skills and competence of CERT-In empanelled Information Security Auditing Organisation
- Name, Location of the empanelled Information Security Auditing Organisation : PricewaterhouseCoopers Pvt. Ltd., Gurgaon
- Carrying out Information Security Audits since : 1994
- Technical manpower deployed for information security audits :
CISSPs : 16
BS7799 / ISO27001 LAs : 20
CISAs / CISMs: 77
DISAs / ISAs : 4
Total Nos. of Technical Personnel : 160
- Outsourcing of External Information Security Auditors / Experts : No
- Information Security Audit Tools used (owned, in possession) :
Freeware : 20
Commercial : 7
Proprietary: 5
Total Nos. of Audit Tools : 32
(Click here for details of the audit tools)
- Information Security Audit Methodology : ISO27001, COBIT, ESAS, ESBM
- Information Security Audits carried out since empanelment till now :
Govt. : 5
PSU : 10
Private : 55
Total Nos. of Information Security Audits : 70
- Business domain of auditee organisations : ITES, Manufacturing, Government, PSU, Financial Services, Telecom, Networking
- Typical applications in use by auditee organisations : Client Server, Web Applications, Oracle, Finacle, ERP, CRM, telecom Applications
- Typical bandwidth (maximum) of any auditee organisations :
Internal Bandwidth (LAN / Intranet) : 100 Mbps
External Bandwidth (WAN / Internet) : 20 Mbps
- Networked Infrastructure details of an organizations audited with most complex network :
No. of Computer Systems : 2000
No. of servers : 200
No. of switches : 80
No. of routers : 100
No. of firewalls : 20
No. of IDS' : 10
- Ability to carry out vulnerability assessment and penetration test : Yes
Key : NA = Not Available (data not provided by the CERT-In empanelled Information Security Auditing Organisation).