You are here: Home Security
Document Actions

An integrated approach to IT Security

by Cesare Brizio last modified 2009-11-03 15:20

RedTurtle enables any Public or private organization to comply with Laws and regulations about IT security, including the most strict requirements, thanks to an integrated suite of services, tipically based on free software technologies

Phylosophy

RedTurtle's approach is technologically neutral, as long as we are not affiliated to any vendor of hardware (such as routers or firewalls) or software (such as antivirus or diagnostic systems): we define the technological platform according to the customer's needs, and if needed we design the solution from scratch, searching for partners as necessitated.

RedTurtle privileges open systems, based on open standards, that allow the customer to inspect easily what we deliver, avoid vendor lock-in and license costs, when useless.

Our approach, according to our internal evaluations, guarantees savings around 20/30% if compared to similar commercial solutions, while delivering comparable or higher service levels.

Compliance with Laws and regulations

The service conforms the legal position of any organization to the Italian normative requirements, such as Decree 196/03 ("Privacy Law") and Decree 144/05 ("Anti-terrorism"). The recent dispositions about the official role of "System Administrator" are also addressed by designing and delivering documents including minimal assured levels of security, and list of people in charge of security roles and their respective tasks.

Policy

If needed, RedTurtle may help defining detailed security policies in fields like:

  • LAN, Web and e-mail;
  • software purchases;
  • authentication (a trustable, user and password based system , including remote authentication protocols and services).

Security Assessment

Maybe RedTurtle's key service, it is aimed to the definition the actual security status of the IT infrastructure. A Security Assessment implies evaluation activities performed by a set of different technologies, and results in a precise overview of the actual risks. This is the starting point to define times and methods to overcome definitely any security issue.

Intervention Project

It lists the possible solutions to the issues emerged form the previous analysis phases (in particular, from the Security Assessment). The project may range form a relatively simple feasibility study, to a coordination plan for third party interventions, to a complete operational plan for the organization.

Secure IT structures

RedTurtle collaborates with top notch professionals with rock-solid experience in the different fields of IT, and can offer a complete coverage of any need, as well as take charge of all the organization and coordination work in the development of particularly complex solutions. Technologies may include:

- firewalls;
- VPN;
- cryptographic solutions;
- traffic segmenting systems;
- log analysis tools;
- Intrusion Detection Systems (IDS).

Maintenance

RedTurtle may also maintain any security solution delivered, and our experts can constantly monitor and control it, ensuring fast detection and solution of any security breach. The usage of IDS may provide a real-time, proactive view on IT security. The scope of maintenance may range from asynchronous analysis of  server logs, to real time security auditing.


Immagine Footer