NuAxis
NuAxis, LLC.
nuaxis Home Site Map Contact Us
NuAxis
information technology
sortware
NuAxis Overview
sortware development
NuAxis Microsoft Solutions
sortware development
NuAxis Project Management
sortware development
NuAxis Application Development
network management
NuAxis Infrastructure Management
network management
NuAxis Security Management
networks
  information technology
Security Management   Security Management
 
 Security
Certification and Accreditation (C&A)
Network Security
Identity Management
Application Security
Disaster Recovery
Risk Management
Event Monitoring, Alerting and Auditing
   
   
NuAxis Security Triad
NuAxis Security Triad
 
 Identity Management
Authentication and Authorization
Access Control
 
  • role-based access,
  • object-level access
Federated Identity Management
Policy-based Provisioning
 
 Network Security
Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS)
 
  • Net IDS
  • Web IDS
  • Host IDS
Firewalls
OS Hardening
 
 Application Security
Securing Web Applications
 
  • Intelligent Risk Assessment
  • Policies
  • Platform Research, Modular Architecture & Delegation (Layering)
  • Input Validation (to prevent cross-site scripting attacks)
  • Vigilance
Securing Database Access
 
  • Use of Bind Variables in Dynamic Queries (to prevent SQL injection)
  • Use Functions, Stored Procedures and Packages in place of stand-alone SQL statements embedded in application code
  • Timely Deployment of Vendor-supplied Hot Fixes and Patches
  • Monitoring Audit and Event Logs
 
 Disaster Recovery
Emphasis on 24/7 availability
 
  • Project plan for loss of critical infrastructure, critical application
  • Backups
  • Failover
 
| Home | About Us | Services | Our Methodology | Professional Experience | Customers | Company News | Site Map | Contact Us |
Copyright NuAxis, LLC. 2003-2006