Home ยป Services
 

Login Form




Pro CERT Services

Reactive Services

Incident Response
Pro CERT will assist anyone within the constituency in handling the technical and organizational aspects of incidents. In particular, it will provide assistance or advice with respect to the following aspects of incident management:

Incident Triage
•    Investigating whether indeed an incident occurred.
•    Determining the extent of the incident.

Incident Coordination
•    Determining the initial cause of the incident. (which vulnerability was exploited)
•    Facilitating contact with other sites which may be involved.
•    Facilitating contact with appropriate law enforcement officials, if necessary.
•    Making reports to other CSIRTs
•    Composing announcements to public or constituents, if applicable

Incident Resolution
Pro CERT will provide incident resolution services for all constituents according to the mutually agreed SLAs. These services include :
•    Providing assistance for removing the exploited vulnerabilities and enrolling in a complete vulnerability management system.
•    Securing the systems from the effects of the incident and implementing security quality management services such as : Risk Analysis, Business Continuity / Disaster Recovery.
•    Provide assistance in evidence collection and artifact analysis if required.

In addition, Pro CERT will collect statistics concerning incidents processed, and will notify the community as necessary to assist it in protecting against known attacks.To make use of Pro CERT's services please refer to section 2.11 for points of contact.

Proactive Services

One of the core goals of Pro CERT is stopping security incidents from happening trough it’s extended range of proactive services. There are three pillars which make the foundation of Pro CERT’s proactive services : people, technologies and processes.

The first component is represented by security training and educational services which are the delivered in close partnership with Pro CERT’s sponsor: Provision  For more details please see http://www.securitytraining.ro/ for more details.

Another line of defense in Pro CERT’s proactive services is made of state-of-the art technologies deployed in the fields of : Intrusion Detection, SIEM (Security Information and Event Management), Configuration Monitoring and others.

Pro CERT’s activity is regulated by well established policies and procedures which are derived form industry’s best practices and it’s worth mentioning that Pro CERT’s sponsor, Provision has earned ISO 27001 Certification for Information Security Management.