NTL’s benchmarks metrics cover the following business functions:
Application Security
- Number of Applications
- Percentage of Critical Applications
- Risk Assessment Coverage
- Security Testing Coverage
Configuration Change Management:
- Mean-Time to Complete Changes
- Percent of Changes with Security Review
- Percent of Changes with Security Exceptions
Financial:
- Information Security Budget as % of IT Budget
- Information Security Budget Allocation
Incident Management:
- Mean-Time to Incident Discovery
- Incident Rate
- Percentage of Incidents Detected by Internal Controls
- Mean-Time Between Security Incidents
- Mean-Time to Recovery
Patch Management:
- Patch Policy Compliance
- Patch Management Coverage
- Mean-Time to Patch
Vulnerability Management:
- Vulnerability Scan Coverage
- Percent of Systems Without Known Severe Vulnerabilities
- Mean-Time to Mitigate Vulnerabilities
- Number of Known Vulnerability Instances
NTL can perfrom a Security Assessment and Hardening of the following hosts:
- Apache Tomcat
- Apple OSX 10.5
- Debian Linux
- HP-UX 11i
- IBM AIX 4.3-5.1
- Microsoft Windows 2003
- Microsoft Windows XP
- Microsoft Windows Server 2008
- Microsoft Windows 7
- Mozilla Firefox
- Oracle Database 11g
- Oracle Database 9i-10g
- RedHat Enterprise Linux 4
- RedHat Enterprise Linux 5.0-5.1
- Slackware Linux 10.2
- Solaris 10 1106-10 0807
- Solaris 10
- Solaris 2.5.1-9
- SUSE Linux Enterprise Server 10
- SUSE Linux Enterprise Server
- VMware ESX 3.5 Benchmark
|