Information Technology & Services - San Diego, California, United States
It's a scary world out there. All companies need to have some level of security around their data but many don't have the resources to bring an expert onboard at $200,000 per year. For those companies, Tracc offers part time security officer (vCISO) services on a monthly basis tailored to fit their needs. Free from the salary and overhead of a senior level hire, many smaller companies find vCISO services affordable and efficient ways of dealing with security compliance, governance, reporting, management, and disaster planning.Tracc will audit the following CIS Top 20 Critical Security Controls and document the state of each control including a gap analysis of current vs. desired state. This information will be presented on a regular basis and include the following controls:1. Inventory of Authorized and Unauthorized Devices2. Inventory of Authorized and Unauthorized Software3. Secure Configurations for Hardware and Software on Mobile Devices, Laptops, Workstations and Servers4. Continuous Vulnerability Assessment and Remediation5. Controlled Use of Administrative Privileges6. Maintenance, Monitoring and Analysis of Audit Logs7. Email and Web Browser Protections8. Malware Defenses9. Limitation and Control of Network Ports, Protocols, and Services10. Data Recovery Capability11. Secure Configuration of Network Devices such as Firewalls, Routers and Switches12. Boundary Defense13. Data Protection14. Controlled Access based on the Need to Know15. Wireless Access Control16. Account Monitoring & Control17. Security Skills Assessment and Appropriate Training to Fill Gaps18. Application Software Security (including management of Code Reviews)19. Incident Response & Management20. Penetration Tests and Red Team Exercises (in process or planned)
Outlook
Typekit
Google Tag Manager
Mobile Friendly