Any Customer with Internet facing IT Assets.


    Not Relevant.


    CSP/08

Vulnerability Assessment and Penetration Testing

Malware Free File, Document Protection, File Sanitisation , KIOSK Based Installation , CDR Solution

 

  1. Application Security Testing.
  2. Vulnerability Assessment.
  3. Penetration Testing.
  4. Compliance Report (PCI/HIPPA/NIST/CIS) for Various Governing local or international bodies.
  5. Security Testing with Purple Approach. Don’t just find the security bugs but also test the capabilities of security controls deployed by customer.
  6. Basic OR Advanced VAPT services as per customers requirement.
  7. Certified and experienced resources to execute the project.
  8. Use of commercial, open source and in-house developed tools.

 

 

    QOS Technology Pvt Ltd.




    Any Customer with Internet facing IT Assets.


    Not Relevant.


    CSP/08


Differentiators

 

  1. Perform VAPT with Purple Approach. Don’t just find the security bugs but also test the capabilities of Security Control Devices.
  2. Certified and Experienced resources to execute the project.
  3. One time re-verification of reported security bugs included in the service offering.

 

 

Solution

 

  1. Based on Purple Teaming approach.
  2. Combination of commercial, open source and in-house developed tools.
  3. Manual payload development as per scope of work.
  4. Executive Summary and Detailed reporting.

 

 

Features

NA

Solution Components

 

  1. Vulnerability Assessment tools (Commercial, Open Source and in-house developed)
  2. Local Virtual Machine Instance for Internal LAN testing.
  3. Red and Blue skilled engineers.
  4. Re-verification of identified security problems.

 

 

Frameworks

 

  1. NIST Framework.
  2. OWASP Framework.
  3. Cyber Kill Chain Framework.
  4. ATTACK MITRE Framework.
  5. CERT-IN Guidelines

 

 

Client end Requirment

NA

Support

NA

Training

 

  1. Number of modules: 3
  2. Module1: Red team tactics
  3. Module2: Popular Security Frameworks.
  4. Module 3: Playing in cyber range (Red vs Blue).
  5. Duration of training: 5 days

 

 

Scope

 

  1. Internet facing Applications.
  2. Number of sub-domains per website/application.
  3. Internet facing IP addresses.
  4. Internal LAN's
  5. Cloud Services.
  6. Mobile Applications.

 

 

Architechture

NA

Infrastructure/Operation

NA

Technical Specifications

NA

Current Market

NA

Target Clients

NA

Pricing / commercial model

NA

Use cases

NA

Differentiators

 

  1. Perform VAPT with Purple Approach. Don’t just find the security bugs but also test the capabilities of Security Control Devices.
  2. Certified and Experienced resources to execute the project.
  3. One time re-verification of reported security bugs included in the service offering.

 

 

Solution

 

  1. Based on Purple Teaming approach.
  2. Combination of commercial, open source and in-house developed tools.
  3. Manual payload development as per scope of work.
  4. Executive Summary and Detailed reporting.

 

 

Features

NA

Solution Components

 

  1. Vulnerability Assessment tools (Commercial, Open Source and in-house developed)
  2. Local Virtual Machine Instance for Internal LAN testing.
  3. Red and Blue skilled engineers.
  4. Re-verification of identified security problems.

 

 

Frameworks

 

  1. NIST Framework.
  2. OWASP Framework.
  3. Cyber Kill Chain Framework.
  4. ATTACK MITRE Framework.
  5. CERT-IN Guidelines

 

 

Client end Requirment

NA

Support

NA

Training

 

  1. Number of modules: 3
  2. Module1: Red team tactics
  3. Module2: Popular Security Frameworks.
  4. Module 3: Playing in cyber range (Red vs Blue).
  5. Duration of training: 5 days

 

 

Scope

 

  1. Internet facing Applications.
  2. Number of sub-domains per website/application.
  3. Internet facing IP addresses.
  4. Internal LAN's
  5. Cloud Services.
  6. Mobile Applications.

 

 

Architechture

NA

Infrastructure/Operation

NA

Technical Specifications

NA

Current Market

NA

Target Clients

NA

Pricing / commercial model

NA

Use cases

NA

A Technologist's Expertise Company