|
|
INCIDENT REPORTING
Incident reporting is a communication channel for system or network
administrators reporting and acquiring for assistance on security incidents.
MAILING LIST SUBSCRIPTION
The following lists are provided for different purposes:
· Advisory announces the latest security information, system
vulnerabilities, and solution to improve system security.
· Announce notifies the latest security news and events.
DOWNLOAD
Download provides the security tools, history advisories, vulnerability
patch information, scan tools, and security related documents.
RESEARCH
Research on local ICT industry's standing with regards to information
security, industry best practices, vulnerabilities (O/S, Network, Application
etc.), security product evaluation etc.
SECURITY ASSESSMENT & PENETRATION TESTING
SERVICES (ETHICAL HACKING)
Also known as Ethical Hacking, the techniques employs advance tools and
techniques that normally a skilled cracker would use to compromise networks. The
idea is crack (hack ??) a system but in a controlled environment with the
intentions of finding out vulnerabilities in a system and thus harden it in
order to protect it from the real bad guys.
ISO17799 AND OTHER INDUSTRY STANDARD'S
COMPLIANCE
ISO17799 is "a comprehensive set of controls comprising best practices in
information security". It is essentially, in part (extended), an internationally
recognized generic information security standard. Managing compliance with
ISO17799 is a complex task. Assessing compliance levels for information systems,
and then deriving and implementing plans to become compliant, can by a very
intensive process. We focus on the Security Audit Process to ensure business
outcomes.
FORENSIC INVESTIGATION SERVICES
NepCERT provides an extensive range of services in relation to the
investigation and handling of computer related fraud, abuse and email misuse.
DEVELOPMENT & IMPLEMENTATION OF SECURITY POLICY FRAMEWORK
NepCERT helps institutions to develop their security policy, provides them
with guidelines and help them to implement and operate these under a
continuously changing environment.
TRAINING AND EDUCATION
NepCERT conducts training and education on a range of computer security
related topics. Typically all events consist of detailed view of hacking with
live examples! |