IT Security

Astyra is a vendor neutral, ethical hacking security services company, that delivers independent security services to our customers.  We have strong Industry Certs and Understanding of:

  • Cyber Security- ITILv3, PMP, CISSP, CISA, CISM, CRISC, CEH, CPT, CHFI, CCFE.
  • Open source security tools & licensed security tools.
  • Scripting of XML and malware.
  • Wireless Technology, Firewalls, Routers, Switches and Servers.  CISCO, JUNIPER, FORTINET, CHECKPOINT, ASA, PALO, HP, BLUECOAT, etc..

 

PENETRATION TESTING:

• Red Team / Blue Team    • Internal / External     • Active/Passive     • Wireless/WiFi     • Mobile Devices

 

ASSESSMENTS – ARCHITECTURE & TECHNOLOGY:

Data Access

• Internal / External Penetration (Active & Passive)     • External/Internal Vulnerability

• Wireless/WiFi     • Mobile Devices

Physical Access

• Data closets/centers     • Guard stations     • Parking areas    • Paper file areas    • Badging procedures     • Office / cubicle areas     • Meeting areas     • Mobile Devices

Risk

• Information Theft     • Information Alteration     • External Plugin/USB Devices

Behavioral

• Email Phishing     • Voice Phishing     • External Plugin/USB Devices

Web Application

• User accounts     • Identification vulnerability

 

POST–ASSESSMENT SERVICES:

Mitigation and Remediation Strategies- Audits & Compliance testing: Writing of detailed security recommendation plans & create strategy templates;  provide extensive analytics and reporting about employee responses to various attack scenarios.

Understanding of Controls-  ISO27000, NIST, FISMA, Risk Ratings (below), etc.

Advisory – Vulnerability management

Training – Phishing, password strength, password rotation,  vulnerability management