CUC Comprehensive IT Audit
Be efficient. Be compliant. Know.
You will know the status of your IT systems beyond compliance.
Credit Union Consulting of Ohio, Inc. will enlighten you to the strengths and weaknesses of your IT infrastructure. Our IT professionals have a diverse knowledge base and will help guide you into the future of your information systems by performing a CUC IT Audit.
Why is CUC uniquely qualified to perform my IT audit?
We are not just IT auditors. We are engineers that have been planning and implementing IT infrastructures for over fifteen years. We do the real work everday. We constantly learn and study new technology, new threats to information security and how to stop the threats. We have not seen any other firm perform with the level of care we do. Your credit union's IT audit will be conducted with the same care and detail that we employ for our IT service clients.
What type of IT audit will CUC conduct for me?
You can expect our CUC IT Audit to be thorough, unbiased, and brutally honest. Our mission is to provide your credit union with a realistic, valuable evaluation. We are a great fit for credit unions that desire to know the truth about their IT infrastructure. We check your entire IT Infrastructure to give you an accurate assessment of your credit union's information security program. Our audit can be tailored to address your areas of concern.
How will CUC deliver the results of my IT audit?
You will benefit from the added value of CUC's results and remediation report. We promptly deliver the intial report which will detail any issues we found and the remediation actions. After discussion with your credit union, we then produce a final report that is board and examiner ready. We work for you and our goal is to provide your credit union with valuable information about your IT infrastructure.
Why does CUC not require long term contracts?
We have found that using the same company for an IT Audit year after year is counter productive for our clients and not best practice. The whole point is to have an outside, objective evaluation. When the same company performs an IT Audit for a credit union year after year, it becomes increasingly biased. It also cannot be considered completely external. We provide ongoing IT Service for many credit unions. We welcome the scrutiny of fresh eyes and ideas and so should you.
Do not just get an IT Audit. Get Value. Get a CUC Comprehensive IT Audit.
We will audit, evaluate and write recommendations on the following for best practice, compliance and policy adherence:
External Vulnerability Risk Assessment
- Network Detection and Diagram
- Perimeter Vulnerability Assessment
- Wireless Access Testing and Review
- Wireless Attack Simulations
- Network Attack Simulations
- Social Network Engineering
- Web Application / Database Assessment
Internal Vulnerability Risk Assessment
- Network Evaluation
- Network Diagram / IP Diagram Analysis
- Internal Penetration / Vulnerability Assessment
- External Penetration / Vulnerability Assessment
- Gateway Antivirus and Anti-Spyware Analysis
- IPS (Intrusion Prevention System) Review
- IDS (Intrusion Detection System) Review
- Firewall and Router Evaluation Review
- Wireless Scan and Policy Review
- Access Management Analysis
- Remote Access Policy Review
- Change Management Analysis
- Server Evaluation
- Physical Controls - Spatial, Environmental Evaluation
- Cleanliness of Environment
- Thermal Evaluation
- Static Electricity Evaluation
- Smoke and Fire Risk and Provisioning
- UPS Systems and Management Evaluation
- Cable Management Evaluation
- Systems Performance and Capacity Analysis
- Hard Drive Space
- RAM
- CPU and Network Usage
- Immunity Analysis
- Spam Protection
- Spyware Protection
- Virus Protection
- Business Continuity Evaluation
- Disaster Recovery Protocol
- Backup Procedure Protocol
- OS Image Procedure Protocol
- Communications System Analysis
- Email Services
- Password Management
- Domain Organization
- Update Analysis
- Service Packs
- Patch Management
- File System Privilege and Admin Management Evaluation
- User and Group Structure
- Group Policy Structure
- Shares / Permission Auditing
- Sensitive System Evaluation
- Access Management Analysis
- Penetration Testing
- Open Port Evaluation
- Password Cracking and Policy
- Remote Access Policy
- Change Management Analysis
- Workstation Evaluation
- Open Port Evaluation
- Patch Management Analysis
- Spam Protection Evaluation
- Virus Protection Evaluation
- Spyware Protection Evaluation
- Software Firewall Analysis
- Removable / Portable Device Security Analysis
- PDA
- Removable USB etc.
Physical Facility Evaluation
- Smoke and Fire Detection
- UPS Systems and Management
- Cable Management
Policy Review and Evaluation
- Identify and Review Current Policy
-
Policy Gap Analysis