Big4GuyWelcome to Big4Guy.com. Big4Guy is an online resource where I will share with you the latest news, insights, knowledge and some experiences as a Big 4 consultant. We will discuss some of the important issues which organisations are facing today in the areas of information security, security and controls in SAP R/3, Oracle Applications, J.D.Edwards, Peoplesoft and various other ERP's. You will also find information on latest complaince regulations like Sarbanes Oxley, Basel II and so on. Big4guy will also attempt to provide valuable resources for individuals interested in examinations the CISA, CISM, CISSP, PMP and various other security certifications considered essential for entry in any Big 4 accounting, auditing and consulting firms. You are invited to post your comments and viewpoints to posts here. I sincerely hope this online journal will be useful to everyone from a budding student to a professional in the accounting, auditing, management and consultancy professions.
|
Someone recently asked me how one can deploy a IDS. Well, I myself had to do some research before I could provide some guidance. An intrusion detection system basically alerts the organziation on intrusion attempts on its netowrks, servers and applications. Intrusion detection systems are either host based or network based. Coming back to the question on how to implement an Intrusion detection System. I have jotted down some brief steps which are required for IDS deployment.
1. Identify what is to be protected - An organization in the first palce must identify what needs to be protected. It can be servers, applications, databases, domain controllers etc. An organization can make a laundry list of softwares, it needs to protect.
2. Determine whether to use host based IDS or network based IDS - A host based IDS monitors intrusion attempts at the server level and a network based IDS monitors all critical network entry ponts.
3. Configure the IDS - Once decision is made, the next thing is to configure the IDs appropriately to reflect the organization security policy.
4. Deploying IDS & Updating Signatures - The final stage requires actually deploying the IDS and updating the IDS with most current signatures at frequent intervals. This is normally provided by IDS vendors. Signatures gain importance in an IDS since the capability to detect intrusions is based on signatures. The more current the signatures, the better the ability of the IDS to detect intrusion attempts.
More on Information Security >>
>> Return on Security Investment
>> Sample Information Security Policy
>> ISO OSI Session Layer Vulnerabilities
>> Confidentiality, Integrity & Availability
No Comments for this post yet...
| Mon | Tue | Wed | Thu | Fri | Sat | Sun |
|---|---|---|---|---|---|---|
| << < | > >> | |||||
| 1 | 2 | 3 | 4 | 5 | 6 | 7 |
| 8 | 9 | 10 | 11 | 12 | 13 | 14 |
| 15 | 16 | 17 | 18 | 19 | 20 | 21 |
| 22 | 23 | 24 | 25 | 26 | 27 | 28 |
| 29 | 30 | |||||