IT AssuranceTesting and assuring the security of your business
Identify, Understand, Resolve
GraVoc’s IT assurance services help you identify, understand and resolve configuration and security vulnerabilities before they are exploited by real-life attacks. Our expert team of Information Security consultants use sophisticated technology tools to scan and identify potential risks to your information system environment.
IT Assurance Services Include…
External Penetration Testing
Vulnerabilities at the network perimeter expose an organization to a variety of external threats, ultimately increasing its overall risk exposure. Through a series of scans run outside of the network perimeter, GraVoc’s external penetration test examines configurations of the firewall and other devices in place to prevent intrusions into an organization’s network. Once the data has been collected and analyzed, GraVoc provides a set of recommendations indicating the best methods for improving the security of the network perimeter. Along with these recommendations, GraVoc also analyzes firewall rules and configurations to further determine a company’s overall risk exposure and the appropriateness of existing security settings, and it can provide a report assessing risks surrounding remote access connections into the network.
Wireless Security Assessment
GraVoc’s wireless security assessment combines internal/external vulnerability testing and configuration analysis to ensure that wireless networks are properly secured. This service analyzes potential threats and vulnerabilities associated with an organization’s wireless activities, and it evaluates the wireless network’s susceptibility to threats such as unauthorized access, rouge access points, privilege escalation, wardriving, and accessing a wired corporate network through wireless access points. After using a variety of tools to evaluate the strength of wireless security controls, GraVoc provides a report prioritizing potential issues and suggesting remediation measures.
Internal Network Vulnerability Assessment
With so much attention focused on protecting the network from hackers, viruses, and other external threats, a network’s internal vulnerabilities are often overlooked. GraVoc’s internal network vulnerability assessment identifies weaknesses within the local area network (LAN) by analyzing security-related configurations, services running, and other potential weaknesses through a series of scans run from inside of the network perimeter. Once data has been collected and analyzed, GraVoc compiles a set of recommendations to address discovered vulnerabilities and ensure compliance with industry best practices and related regulatory guidelines.
Web And Mobile Application Testing
GraVoc uses a variety of tools and manual testing methods to assess the security and integrity of websites and mobile applications. This service tests for issues with code, potentially harmful files present, insecure services running, and potentially harmful plugins in place. After analyzing the potential web and mobile app weaknesses, GraVoc provides a report identifying potential issues, prioritizing remediation efforts, and suggesting remediation measures.
The FFIEC Issues a FAQ Guide on the Cybersecurity Assessment Toolread more
GraVoc is seeking a Senior Information Security Consultant for our growing Information Security practice. Please see qualifications.read more
On September 9, 2016, the Federal Financial Institutions Examination Council (FFIEC) released a revision of its IT Booklet on Information Security.read more
GraVoc is a technology-consulting firm located in Peabody, Massachusetts just north of Boston. GraVoc is committed to solving business problems for customers through the development, implementation, and support of technology-based solutions.
"One Company, Many Solutions"