Lecture8-Security Audit PDF
Lecture8-Security Audit PDF
Lecture8-Security Audit PDF
Lecture 8
IT Security Audit
Proprietary Tools:
1. PHP Security Audit Script : This script checks for
insecure web configurations.
To Evaluate/Examine
Policy
Processes and Procedures
Operations
Security Policy
Auditing
How?
Which? Who?
Audit
Where? What?
When?
Further information:
http://www.sans.org/security-resources/idfaq/logging-windows.php
Event 3
h2
h3
h1
h4
h5
Fig. 4: Example of a Port scan incident