Services
Argent Security offers a comprehensive suite of security services to strengthen application and network infrastructure from attack. As IT Security is often overlooked until the occurrence of a breach, Argent also offers incident response and forensic analysis. Perfect security is impossible to achieve in an online environment, however the number of potential attack vectors can be dramatically reduced through professional audit and assessment techniques.


Web Application Security

  • Examines Web portals and commerce applications for potential vulnerabilities with respect to authentication, authorization, data integrity, data confidentiality, and consumer privacy concerns.
  • Testing conducted using zero-knowledge (black box) testing or full-access (white box) testing to examine full range of potential vulnerabilities.
  • Access to source code needed for complete assessment.


Database Assessments

  • Review to ensure protection of health, credit card and other confidential information held in databases.
  • Integrity of database security challenged to identify vulnerabilities leading to disclosure of sensitive information.


Infrastructure Review

  • Assessment of network exposure to external and internal network attacks (Internet and insider based).
  • Analysis of network devices including routers, firewalls, Intrusion detection systems, storage devices and underlying server infrastructure.
  • Vulnerability tests conducted to determine potential entry points into the environment.


End-to-end Perimeter Review

  • Review will encompass test strategies from all other assessments to penetrate and obtain secret information from an organization.
  • Attacks will be conducted both as an external unaffiliated entity, and as an employee and/or contractor.
  • Vulnerability assessments will include social engineering attacks and physical analysis.


Forensics and Incident Response

  • Evaluation of past security breach or suspected breach.
  • Includes examination of log reports, MAC times, and malicious activity.
  • Determines the extent to which the network has been compromised, and mitigates potential damages from the intrusion.
  • Analysis is conducted as though pre-trial, all results can be used as expert testimony.