CUC Network Evaluation

Know your weakness. Build your strength.

Your credit union cannot be expected to be IT experts. You need expert advice to make the best decisions. CUC will empower you with knowledge to make the right IT decisions by performing a CUC Network Evaluation. You can rely on our ability to construct an accurate accounting of your IT infrastructure. Then we will show you how to build the weaknesses into strengths.

When should I get a CUC Network Evaluation for my credit union?

Because your IT Infrastructure is the foundation for your ability to conduct business, it is best practice to have your network evaluated or audited once a year. A CUC Network Evaluation is also recommended if you have experienced a security breach, changes to your systems, employee turnover, or inefficiencies and problems.

Does CUC help me overcome any problems they might discover?

Yes, CUC will explain our report on what we discovered from your CUC Network Evaluation. If there are problems, we will help you plan and prioritize your actions. Then if you choose, CUC has the staff and resources to complete the recommended work.

How will CUC approach my CUC Network Evaluation?

Your credit union is unique; therefore, we will approach your network evaluation on a case by case basis. We take into consideration your situation and concerns for your credit union. We make our services flexible to meet the needs of your credit union.

The CUC Network Evaluation is most effective when paired with a CUC Immunity Analysis.
We will audit, evaluate, and write recommendations on the following for best practice, compliance, and policy adherence:

  1. External Vulnerability Risk Assessment
    1. Network Detection and Diagram
    2. Perimeter Vulnerability Assessment
    3. Wireless Access Testing and Review

  2. Internal Vulnerability Risk Assessment
    1. Network Evaluation
      1. Network Diagram / IP Diagram Analysis
      2. Internal Penetration / Vulnerability Scan
      3. External Penetration / Vulnerability Scan
      4. Gateway Antivirus and Anti-Spyware Analysis
      5. IPS (Intrusion Prevention System) Policy Review
      6. IDS (Intrusion Detection System) Policy Review
      7. Firewall and Router Evaluation Review
      8. Wireless Scan and Policy Review
      9. Access Management Analysis
      10. Remote Access Policy Review
      11. Change Management Analysis
    2. Server Evaluation
      1. Performance Analysis
      2. Penetration Testing and Vulnerability Assessment
      3. Password Cracking Scan and Policy Review
      4. Open Port Evaluation
      5. File System Privilege and Admin Management Evaluation
        1. User and Group Structure
        2. Group Policy Structure
        3. Shares / Permission Auditing
        4. Sensitive System Evaluation
    3. Workstation Evaluation
      1. Open Port Evaluation
      2. Patch Management Analysis
      3. Spam Protection Evaluation
      4. Virus Protection Evaluation
      5. Spyware Protection Evaluation
      6. Software Firewall Analysis
      7. Removable / Portable Device Security Analysis
        1. PDA
        2. Removable USB