M2B
Web Solutions
Security ctd.
What does a Security Auditor do?
An auditor interested in achieving a high level of effective security engages in two activities:
First, the auditor helps the network administrator determine whether or not the security policies that are in place are effective and whether or not there is compliance.
Second, the auditor performs a risk analysis. For this the auditor must approach the network from at least two perspectives: that of a security manager as well as that of white-hat hacker. From both points of view he will test and probe the network and attempt to discover, penetrate, and control the network. The first will be an on-site analysis of the network's resources (including people) ,policies and procedures ; the latter is an "attack" from the outside.
|
 |