Snapshot of skills and competence of CERT-In empanelled Information Security Auditing Organisation
- Name, Location of the empanelled Information Security Auditing Organisation : SISA Information Security (P) Ltd., Bangalore
- Carrying out Information Security Audits since : September 2002
- Technical manpower deployed for information security audits :
CISSPs : 4
BS7799 / ISO27001 LAs : 3
CISAs : 9
DISAs / ISAs : 2
Total Nos. of Technical Personnel : 25
- Outsourcing of External Information Security Auditors / Experts : No
- Information Security Audit Tools used (owned, in possession) :
Freeware : 25
Commercial : 3
Proprietary: 1
Total Nos. of Audit Tools : 29
(Click here for details of the audit tools)
- Information Security Audit Methodology : SISA Proprietary
- Information Security Audits carried out since empanelment till now :
Govt. : 1
PSU : 5
Private : 99
Total Nos. of Security Audits : 105
- Business domain of auditee organisations : Information Technology, Banking, IT services, Manufacturing, Business Process Outsourcing, Telecom
- Typical applications in use by auditee organisations : Banking Applications, Financial Applications, Mobile Applications, Web Applications
- Typical bandwidth (maximum) of any auditee organisations :
Internal Bandwidth (LAN / Intranet) : 10 Mbps
External Bandwidth (WAN / Internet) : 100 Mbps
- Networked Infrastructure details of an organizations audited with most complex network :
No. of Computer Systems : 10000
No. of servers : 25
No. of switches : 50
No. of routers : 30
No. of firewalls : 16
No. of IDS' : 16
- Ability to carry out vulnerability assessment and penetration test : Yes
Key : NA = Not Available (data not provided by the CERT-In empanelled Information Security Auditing Organisation).