Vulnerability Management
Network penetration tests are conducted on an annual basis through arrangements with an independent outside consultant. External vulnerability scans are conducted on a quarterly basis. CSI also maintains a robust vulnerability management program that conducts vulnerability scans on at least a monthly basis.
These penetration tests and vulnerability scans not only evaluate the network infrastructure but web-based applications with Internet access. Vulnerabilities are prioritized by criticality with mandated remediation dates by corporate policy.
CSI monitors several areas of the infrastructure 24/7 as indicated in the high-level diagram below.

70015
|