Ensuring that a sever and website are secure

kevin_at_ppic.com
Date: 02/22/05


Date: 22 Feb 2005 07:41:50 -0800

My company is looking into developing web-based data hosting and access
system for several of our clients. Their data is somewhat sensitive,
and they are very concerned about security. We are not an IT company,
and do not have experience setting up secure servers or websites, but
we would like to be as sure as possible that the servers and data on
them are secure before we launch this service. We need to know who to
go to both for help securing our sever and website, as well as for
testing whether it is secure once the process is complete.

Several people have recommended having a security audit done once our
technical staff believe the website and servers are secure. Is this a
good idea, or a waste of time? If it's a good idea, who are the best,
as well as the most respected, companies that do this?

Any advice and suggestions will be appreciated.



Relevant Pages

  • RE: Hacking to Xp box
    ... Aren't there any more important servers than CEO box? ... In what aspect do you need better security? ... Audit your website security with Acunetix Web Vulnerability Scanner: ... Up to 75% of cyber attacks are launched on shopping carts, forms, ...
    (Pen-Test)
  • Re: [fw-wiz] I wonder, how to test..
    ... >responsible for security at our company, ... >of my head make me wonder how secure it all is. ... Internally locking down the servers: ... administrator's privileges if he managed to execute code with webserver ...
    (Firewall-Wizards)
  • Re: Frontpage 2002 NETWORK security Problem in Shared Hosting Environments
    ... Well Security by obscurity doesn't really work when one can browse the ... try to find an ISP that can security host our website. ... Surely the ISPs don't consider this to be an acceptable ... Given the amount of Microsoft IIS 5.0 servers that exist today, ...
    (microsoft.public.dotnet.framework.aspnet.security)
  • Web Hosting / and Site Security Question
    ... using their website more actively. ... First off we are going to use a third party to host an application ... confident that this company is secure and reliable. ... Does this actually add security? ...
    (Security-Basics)
  • Re: Anyone hear of ANSA (Asp.Net Security Analyser)??
    ... you if your servers that provide Asp.Net shared hosting ... ANSA (Asp.Net Security Analyser) is not a commercial ... results will tell us if your servers are secure or not. ...
    (comp.security.misc)