

A security audit examines the effectiveness of an organization’s security infrastructure and security policies relating to hardware, software and users from a technical viewpoint.
Our standard network security audit comprises of an examination of network topology, an audit of the firewall and server configurations, a review of security policies, and a detailed report of the findings, issues and recommendations. The audit is structured around the requirements of ISO 27001 for an information security management system. This includes access control, backups, antivirus, logging and monitoring, business continuity and patching.
An audit will demonstrate to management if investment in security is required to reduce risk to an acceptable level, and justifies security budget expenditure. A regular audit will identify any infrastructure of procedural changes that have caused any major security vulnerabilities.