Security is at the forefront of what we do and keeping on top of the newest security offerings is why our customers trust us with their networks. We are excited to offer a new vulnerability assessment in partnership with SecurityStudio and would like to invite you to join our webinar on May 22nd at 2pm CDT on the 10 reasons why everyone should have a FISASCORE®. It's free to join and you can register by clicking the button below. In the meantime, check out more information on what exactly is a FISASCORE.
What is a FISASCORE?
FISASCORE is a comprehensive, risk-based measurement of information security assigned to your company based on a proven and thorough assessment process. Once completed, FISASCORE will identify critical vulnerabilities, control gaps/ deficiencies, and applicable threats to the security of your organization.
Why is a FISASCORE important?
FISASCORE allows businesses and organizations to know and understand how they are vulnerable and how they compare with peers within similar industries. FISASCORE can also be used to communicate the level of information security risk to interested third-parties (customers, stakeholders, auditors, regulators, etc.).
FISASCORE is constantly calibrated to the latest security threats used by attackers with controls designed to mediate those threats and protect data from unauthorized access, disclosure, distribution and destruction. The FISASCORE framework consists of a thorough evaluation of risks within four phases: Administrative Controls, Physical Controls, Internal Technical Controls, and External Technical Controls.
- ADMINISTRATIVE CONTROLS are sometimes referred to as the “human” part of information security and are controls used to govern other parts of information security. Common administrative controls include policies, awareness training, guidelines, standards, and procedures.
- PHYSICAL CONTROLS are the security controls that can often be touched and provide physical security to protect your information assets. Common physical controls include doors, locks, camera surveillance, and alarm systems.
- INTERNAL TECHNICAL CONTROLS are the controls that are technical in nature and used within your organization’s technical domain (inside the gateways or firewalls). Internal technical controls include things such as firewalls, intrusion prevention systems, anti-virus software, and mobile device manage-ment (MDM).
- EXTERNAL TECHNICAL CONTROLS are technical in nature and are used to protect outside access to your organization’s technical domain (outside the gateways or firewalls). External technical controls consist of search engine indexes, social media, DNS, port scanning, and vulnerability scanning.
Who needs a FISASCORE?
Every organization, big or small, should be aware of their most significant information security risks. FISASCORE will identify and address your organization’s risks through a standardized, consistent and efficient process that enables all members of your organization to quickly and confidently understand and quantify risks.