Where to get recognizable, 3rd party security audits?

From: Pigeon (fredit@charter.net)
Date: Fri Mar 03 2006 - 17:40:03 EST


Hello, I need to find a company that will do security testing on our
5 or 6 servers to verify their security level. We will need a very
well recognized certificate from them.. AKA, I couldn't do the
security audit, and no Joe Blow (granted you might be awesome) can do
them. The reason for this is to show VERY large corporations our
credentials.

So far, people have mentioned these certs:
SAS type 2
FISAAA
HIPPA
ISO7799
COSO

but I am unsure on these.. It appears like these could takes months
to prepare internally and then we submit the information to an
organization for review. Is this normal?

thanks!

------------------------------------------------------------------------------
This List Sponsored by: Lancope

"Discover the Security Benefits of Cisco NetFlow"
Learn how Cisco NetFlow enables cost-effective security across distributed
enterprise networks. StealthWatch, the veteran Network Behavior Analysis (NBA)
and Response solution, leverages Cisco NetFlow to provide scalable,
internal network security.
Download FREE Whitepaper "Role of Network Behavior Analysis (NBA) and Response
Systems in the Enterprise."

http://www.lancope.com/resource/
------------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:55:36 EDT