|
Large
enterprises are known to concentrate their resources on network security management
not realizing the importance of security monitoring. Study
shows that most attacks on enter- prises go undetected for an
average of 38 days, a period for which the system remains
compromised.
The
amount of resource and skills for security monitoring and
intrusion analysis is extremely high and in most cases un aff-
ordable for most enterprises. Now organisations could outsou-
rce this task of enterprise security monitoring to the experts
at NetMonastery.
Our approach
- Site Survey and Decoy
Deployment special
decoys are setup on the client network, these decoys monitor all
security activity on the network
- Initial Attack Analysis
the decoys perform the first phase of intrusion analysis
detecting attacks, the decoy also generates network
statistics.
- Central Correlation the
central analysis facility receives the package from the decoys
and correlates attacks with gathered attack intelligence to
generate an attack map.
- Event Escalation after
a successful detection the event is evaluated for a false
positive. The detect is finally escalated to the client
providing preliminary incident handling and mitigation
support.
This service lets the client
outsource an expensive and a much needed activity to a world
class detection and monitoring facility.
|