18/09/2020
Cyber Security Maturity Roadmap starts in a Phased Approach
Phase - 1 : Make an up-to-date inventory of Organizations assets such as Servers, Users Laptops , User Desktops , Network Printers, IP Cameras, Business Applications, Internal Corporate Applications , Databases and Operating Systems etc.
Note : Phase-1 must be a regularly reviewed and updated as and when there is Change in the environment.
Phase-2 : Tag each of these assets with their Usage, Critically to Business, IT Ownership , Regulatory Compliance and Exposure to the outside world
Phase-3 : Define Systems and Applications health monitoring parameters for all your Business Critical Assets and needs to be monitored on a regular basis with an automated Email alerting set.
Phase-4 : Define an incident response process for the Alerts triggered from Health Monitoring
Phase-5 : Define a thorough Patch Management and Change Management process in consultation and agreement with IT stakeholders and Business stakeholders.
Phase-6 : Perform an authenticated and Un-authenticated Vulnerability scan across all your assets.
Phase-7 : Patch all the Critical and high risk vulnerabilities as per your Change and Patch Management Program.
Phase-8 : Perform Patch Validation Vulnerability scans across all your assets and keep applying patches or workaround until the Vulnerability gets remediated or mitigated
Phase-9 : Define Security Incident Response process in consultation and agreement with IT stakeholders and Business stakeholders.
Phase-10 : Define Security Event Monitoring parameters for each of your assets and configure your Security tools to trigger Security alerts on the defined parameters.
Phase-11 : Monitor Security Events , Analyze, Remediate and Report as per Security Incident Response process.
Phase-12 : Tune your Security tools to reduce noise and
Phase-13 : Perform each phases on an ongoing basis to really Secure your Company and your Customers
Digital TechXpert Solutions