“Securecare is a comprehensive suite of premier managed security services which are strategically aligned to meet the security needs of a client’s individual business environment and critical information assets/systems.”
Firewall Management, a bigger problem than you would expect
The firewall is the single most common security countermeasure deployed to protect corporate networks. It reviews all information coming into, out of a network, and uses a set of rules to identify what is permitted. Recent research undertaken has shown that up to 83 per cent of firewalls are incorrectly configured and as a result expose the associated organisations to unacceptable risk.
Many businesses believe that a firewall is a standard piece of equipment that is an install and forget solution. In fact a firewall is a very sophisticated security countermeasure that requires a specific technical expertise that differs totally from the normal IT skills sets needed in general day-to-day ICT operations.
Once installed a firewall is only as good as the rules and the version of the operating system. Unless the firewall is monitored for performance, attempted penetrations, attack signatures and updated you have a firewall that is great for the first month and slowly degrades in efficiency over the succeeding months
Because firewalls only require infrequent re-configuration, it is often difficult for even internal IT personnel to "log enough" hours on the system to be proficient with its features and characteristics. Add to this the general lack of familiarity with the concepts involved in firewall technology and firewall management can quickly become a major problem for many companies, large or small.
Securecare - Server Security Managed Service
To meet such customer needs Brookland Computer Services - has developed, as part of the Securecare programme, the Firewall Assist support solution.
These services assist organisations by;
- Ensuring optimised firewall performance and perimeter security.
- Delivering security expertise where dedicated staff is either too expensive or not available.
- Ensuring that security best practice is implemented.
- Providing an experienced external 'pair of eyes and hand’s to validate an organisation's firewall maintenance practice.
The SecureCare approach
Re-configuration
Once installed on a client's premises, our engineers monitor and configure the system remotely. Customers are not required to know anything about network security. At initial configuration and prior to each change, the client informs us of exactly what is required of the system and the trained technician evaluates what modifications are required to affect the desired outcome.
Changes are then reviewed by our network security specialists who will evaluate what, if any, residual risk will be created. If necessary bur support team will explain any residual risk to the customer so they can decide if this is acceptable authorising the change. Detailed logs are kept of all notification of risk and modifications which may be undertaken.
Alerts and logs
From time to time attackers will attempt to gain Information or penetrate the client's network.
All such alerts are automatically logged and evaluated on a monthly basis. While non urgent alerts are commented on in our quarterly report, urgent ones receive immediate attention and action.
Maintenance
Annually we "tune up" the firewall to ensure that the device's operation is optimised. All firewall components are checked to ensure functionality and interoperability with each other. By evaluating the load the firewall is taking, and is capable of taking given projected future traffic levels, we look to anticipate any future problems or issues.
On an ongoing basis we ensure the Firewall's continuing optimum performance lily applying on a weekly basis interim software update releases/patches, or more frequently as demanded by the severity of a threat. Based on well founded best practice, we prefer to only apply service packs and version upgrades once "field" proven.
Reporting
On a quarterly basis we provide each of our clients with a report detailing the changes requested and carried out during the period, statistics on alerts received and the results of our findings on any serious alerts investigated. The report includes a statement from one of our security specialists drawing attention to any items of particular note.
The services
- Deliver regular specialist firewall administration including support for VPN where ending at the firewall.
- Ensure that firewalls are configured and maintained according to current best practice.
- Provide a regular review of suspicious network traffic.
Part of the SecureCare suite of products
