<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:admin="http://webns.net/mvcb/"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#">
	<channel> 

      <title>Comments on: Who should we hire to secure our network in NoVA?</title>
      <link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA/</link>
      <description>Comments on Ask MetaFilter post Who should we hire to secure our network in NoVA?</description>
	  	  <pubDate>Wed, 27 Dec 2006 13:03:45 -0800</pubDate>
      <lastBuildDate>Wed, 27 Dec 2006 13:03:45 -0800</lastBuildDate>
      <language>en-us</language>
	  <docs>http://blogs.law.harvard.edu/tech/rss</docs>
	  <ttl>60</ttl>

<item>
  	<title>Question: Who should we hire to secure our network in NoVA?</title>
  	<link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA</link>	
  	<description>Network Security: I&apos;m looking for recommendations for an individual or company that can come check out our network and make sure it&apos;s secure.  In Sterling, VA (NoVA/DC). &lt;br /&gt;&lt;br /&gt; My dad&apos;s small business has had a secure non-wireless network setup in our warehouse for a few years.  Recently, we&apos;ve noticed some weird activity in our firewall and anti-virus logs.  To our untrained eyes, it looks like a competitor is trying to load Trojans onto our computers.  The firewall seems to be blocking them.  This is good.  But we want to be extra-cautious.  I hate Geek Squad, the guy who originally set up the network moved away, craigslist has proven quite useless and my Google-fu seems to be failing me.  Besides, recommendations would be better, I think.  Can you vouch for anyone&apos;s expertise and trustworthiness?</description>
  	<guid isPermaLink="false">post:ask.metafilter.com,2008:site.53884</guid>
  	<pubDate>Wed, 27 Dec 2006 12:29:45 -0800</pubDate>
  	<dc:creator>sa3z</dc:creator>
	
	<category>networksecurity</category>
	
	<category>smallbusiness</category>
	
	<category>trojans</category>
	
</item>
<item>
  	<title>By: SirStan</title>
  	<link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA#811762</link>	
  	<description>While I can&apos;t help you out (unless you wana pay travel costs, and hotel costs), I will take a look at any logs you have, and explain them to you.  (email plz -- its in my profile)&lt;br&gt;
&lt;br&gt;
A true good penetration test will run you a couple grand.</description>
  	<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.53884-811762</guid>
  	<pubDate>Wed, 27 Dec 2006 13:03:45 -0800</pubDate>
  	<dc:creator>SirStan</dc:creator>
</item>
<item>
  	<title>By: WetherMan</title>
  	<link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA#811789</link>	
  	<description>Sign up to the &lt;a href=&quot;http://www.securityfocus.com/archive&quot;&gt;Security Focus Pen-Test&lt;/a&gt; mailing list. There are many security professionals who specialize in this sort of work who read this list and will most likely be able to recommend someone appropriate for your needs.  Re-post this question there, with perhaps a bit more detail, including a brief rundown on your IT infrastructure, (Systems, Applications, etc).  Also include, in general what you want done. If you&apos;d like it to be on-site, make sure you include your location. If you want something more than some basic packet analysis and an answer to the question &amp;quot;is a human attacker actively attempting to penetrate my network&amp;quot; be prepared to pay a bit of money.&lt;br&gt;
&lt;br&gt;
If you want dirt simple/cheap, setup &lt;a href=&quot;http://www.wireshark.org/&quot;&gt;Wireshark (Ethereal) &lt;/a&gt; on your border gateway and start scanning, as SirStan recommends. The logs will probably contain confidential information, so don&apos;t post them publicly. Maybe a kind soul will take a look at them for you.</description>
  	<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.53884-811789</guid>
  	<pubDate>Wed, 27 Dec 2006 13:23:51 -0800</pubDate>
  	<dc:creator>WetherMan</dc:creator>
</item>
<item>
  	<title>By: cmonkey</title>
  	<link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA#811865</link>	
  	<description>If you want a serious firm, give &lt;a href=&quot;http://www.neohapsis.com/&quot;&gt;Neohapsis&lt;/a&gt; a call.&lt;br&gt;
&lt;br&gt;
&lt;small&gt;You didn&apos;t really consider asking the Geek Squad to take a look at your network security, did you?&lt;/small&gt;</description>
  	<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.53884-811865</guid>
  	<pubDate>Wed, 27 Dec 2006 14:25:23 -0800</pubDate>
  	<dc:creator>cmonkey</dc:creator>
</item>
<item>
  	<title>By: scalefree</title>
  	<link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA#811910</link>	
  	<description>Neohapsis has very good people, I&apos;ve worked with them a time or two some years ago (I&apos;d offer myself but it&apos;s a little far for me plus I&apos;m not strictly in the field anymore, not 100% in practice these days).  If they think they&apos;re not right for the job they&apos;d certainly be willing to point you in the direction of an independant consultant who is.</description>
  	<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.53884-811910</guid>
  	<pubDate>Wed, 27 Dec 2006 15:05:56 -0800</pubDate>
  	<dc:creator>scalefree</dc:creator>
</item>
<item>
  	<title>By: BigVACub</title>
  	<link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA#812034</link>	
  	<description>TruSecure/Cybertrust is operated out of Herndon VA.  Not sure how expensive they are.  www.trusecure.com.  I work in the same building as them, and they have some heavy-duty geeks working there.</description>
  	<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.53884-812034</guid>
  	<pubDate>Wed, 27 Dec 2006 17:12:33 -0800</pubDate>
  	<dc:creator>BigVACub</dc:creator>
</item>
<item>
  	<title>By: paulsc</title>
  	<link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA#812218</link>	
  	<description>&lt;a href=&quot;http://www.iss.net/&quot;&gt;ISS&lt;/a&gt; is one of the 400 lb. gorrillas in network security. They have a good spread of products, plenty of people (including &amp;quot;&lt;a href=&quot;http://en.wikipedia.org/wiki/Whitehat&quot;&gt;white hats&lt;/a&gt;&amp;quot; on staff, and go to some lengths to remain on speaking terms with &amp;quot;&lt;a href=&quot;http://en.wikipedia.org/wiki/Grey_hat&quot;&gt;grey hats&lt;/a&gt;,&amp;quot; and &amp;quot;&lt;a href=&quot;http://en.wikipedia.org/wiki/Black_hat&quot;&gt;black hats&lt;/a&gt;&amp;quot;), and the flexibility/resources to tackle most any network security issue. But as a small business, your problem in dealing with a company such as ISS may be less in running their intrusion detection products, and implementing their recommendations, than in affording their products and services, and navigating their organization. Still, if you have specific concerns, and at least as definable a focus as you&apos;ve laid out in your question, a phone conversation with them may result in a practical short term plan, at minimal cost, and a connection for far heavier duty services, if it turns out you need them. If the situation points to criminal issues, I think you&apos;ll find that the reaction of law enforcement people to learning you&apos;ve engaged ISS is quite positive.&lt;br&gt;
&lt;br&gt;
If you&apos;ve got a problem, ISS can put the resources on the case to find out, and fix it. Their &lt;a href=&quot;http://www.iss.net/services/professional_services/index.html&quot;&gt;professional services group&lt;/a&gt; is as good as any in the business, and if you want a &lt;a href=&quot;http://en.wikipedia.org/wiki/Tiger_team&quot;&gt;Tiger Team&lt;/a&gt; effort run, ISS is one of the few firms on the planet that can do this to credible standards. They can scan your firewall, assess your network, go through your garbage, and trick your employees. The report you get from their &lt;a href=&quot;http://www.iss.net/services/professional_services/penetration_testing/service_main_page.html&quot;&gt;Penetration Testing &lt;/a&gt;group is likely to be humbling (if you think you have good security and loyal employees), but illuminating.&lt;br&gt;
&lt;br&gt;
If your business is at risk, contact ISS.&lt;br&gt;
&lt;br&gt;
I am not a shareholder, employee, customer, or otherwise beneficial stakeholder of ISS, nor have I been in the past, nor am I likely to be in the future. But I have seen them work.</description>
  	<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.53884-812218</guid>
  	<pubDate>Wed, 27 Dec 2006 21:10:24 -0800</pubDate>
  	<dc:creator>paulsc</dc:creator>
</item>
<item>
  	<title>By: sa3z</title>
  	<link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA#812403</link>	
  	<description>Thanks for all the great advice.  As some of you mentioned, a lot of the really good options might be out of the practical budget for a small business, but this is definitely not a situation that we want to mess around with.  I&apos;ll explain the options to my dad and see what we can figure out.  I really appreciate all the help.  Please feel free to keep commenting if you have more suggestions.&lt;br&gt;
&lt;br&gt;
&lt;small&gt;Geek Squad was my dad&apos;s suggestion.  I told him it was out of the question.  Thanks for backing up what was really just a gut feeling.&lt;/small&gt;</description>
  	<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.53884-812403</guid>
  	<pubDate>Thu, 28 Dec 2006 07:06:27 -0800</pubDate>
  	<dc:creator>sa3z</dc:creator>
</item>
<item>
  	<title>By: phearlez</title>
  	<link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA#812438</link>	
  	<description>You can drop me an email if you like; I&apos;m just down the street and I can put you in touch with a few people who would be willing to take a small side job like this. You&apos;ll have to talk with them about exactly what your goals are here, however. Do you want to make sure no baddies got in? Identify the source of the icky? Analyze the logs for more certainty of what happened?&lt;br&gt;
&lt;br&gt;
If the idea was rolling around in your head, let me tell you this from my personal experience in the field: the chances you&apos;re going to get law enforcement to pay the slightest bit of attention to an attempted unsuccessful penetration are effectively nil.</description>
  	<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.53884-812438</guid>
  	<pubDate>Thu, 28 Dec 2006 08:04:15 -0800</pubDate>
  	<dc:creator>phearlez</dc:creator>
</item>
<item>
  	<title>By: scalefree</title>
  	<link>http://ask.metafilter.com/53884/Who-should-we-hire-to-secure-our-network-in-NoVA#812667</link>	
  	<description>I have issues with ISS in general but in any event their offerings just aren&apos;t scaled for your class of business.  An option that just occurred to me is to get in touch with the local security practitioner&apos;s user group &lt;a href=&quot;http://novasec.blogspot.com/&quot;&gt;NoVASEC&lt;/a&gt;.  It&apos;s kind of like &lt;a href=&quot;http://www.2600.com/&quot;&gt;2600&lt;/a&gt; meetings for adults.  They&apos;ll definitely be able to hook you up with someone of high quality &amp;amp; reputation within your price range.</description>
  	<guid isPermaLink="false">comment:ask.metafilter.com,2008:site.53884-812667</guid>
  	<pubDate>Thu, 28 Dec 2006 13:03:50 -0800</pubDate>
  	<dc:creator>scalefree</dc:creator>
</item>

    </channel>
</rss>
