Low-Level Secure Configuration Review
Assesses the security of a system's configuration, analyzing security settings, identifying weak points, and recommending improvements.

What this achieves.
Comprehensive visibility
Gives organizations detailed visibility into system security weaknesses at the configuration level.
Configuration remediation
Identifies configuration deficiencies and supplies specific remediation guidance for each one.
How the review is done.
Each system is evaluated against vendor security benchmarks, industry hardening guidelines, recognized security research institutions, established standards, and our own internal security expertise.
Deliverables.
Where this connects.
Minimum Baseline Security Standard
Defines the configuration standard this review measures your systems against.
Firewall Rules Review
The same scrutiny applied to the rule base rather than to host configuration.
High-Level Secure Architecture Review
Checks whether the design those configurations implement was sound to begin with.
Common questions.
How is this different from a High-Level Secure Architecture Review?
This review works at configuration level, examining the security settings on the systems themselves. The architecture review works at design level, assessing how systems and networks are structured. They answer different questions and are often scoped together.
What are systems measured against?
Vendor security benchmarks, industry hardening guidelines, recognized security research institutions, established standards, and our own internal security expertise.
Do we get fixes, or just a list of problems?
Every configuration deficiency identified comes with specific remediation guidance, delivered as a configuration security gaps and remediation report.
What does the review actually cover?
The security settings of a system: what is enabled, what is exposed, and where the configuration falls short of the hardening standard it should meet.