CYBER4SIGHT
®
NE T WORK RECO N N A IS SA N CE: A N TICI PATIN G A ND PRE V EN TIN G CY BER AT TACKS
CY B E R4 S I G H T®
Predictive Threat Intelligence Services
www.boozallen.com
Maintaining complete awareness of your external network perimeter is increasingly difficult in today’s dynamic IT and business environment. Computer networks in every industry and profile are a target for malicious groups interested in seeking key information for financial gain, protesting certain company policies, or otherwise trying to exploit a network. Organizations must constantly defend themselves against sophisticated, and often unknown, attacks. While many technological solutions exist to protect corporate computer networks, attackers are still able to penetrate even the best defended networks. BOOZ ALLEN CAN HELP PROVIDE CONTINUOUS RECONNAISSANCE Booz Allen Hamilton, a leading strategy and technology consulting firm, has decades of experience understanding adversary attack vectors, complex attack scenarios, and ever evolving offensive techniques and methods. Our professional team, composed of former intelligence community and expert computer industry analysts, are the key differentiator of our network
reconnaissance capabilities. We combine extensive offensive and defensive computer network operation experience to effectively evaluate your network from the attacker perspective—discovering the exploitable information that malicious actors will use to gain access to your network.
BOOZ ALLEN’S PROVEN METHODOLOGY Traditional methods of monitoring network security fail to keep up with the sophistication of attackers. Network vulnerabilities are limited through an acute understanding of the diverse information adversaries can find and exploit for an attack. Booz Allen applies this awareness to perform sophisticated network analyses that identify attack surface areas: ++ T arget identification establishes a baseline, allowing discovery of key technical, organizational and location assets
Network Surface Area: Maintaining awareness of the external network perimeter is increasingly difficult.
2
++ C ollection of information utilizes scanning and enumeration, web harvesting and proprietary sources to provide insight for the processing of discovered data
++ A nalysis by expert intelligence community and tech industry analysts derives valuable, actionable intelligence from the collected data ++ R eporting is provided from the attacker perspective, including target network architecture diagrams
OUR CAPABILITIES IN ACTION Even in sophisticated organizations, our network reconnaissance uncovers unexpected network weaknesses. Our analysts expose infrastructure equipment and sensitive network topology from a variety of sources, from unsecured teleconferencing equipment to undisclosed Internet points of presence, to disaster recovery sites. Corporations leak pieces of seemingly disparate data onto the Internet, which, when combined, are in-fact critical to enterprise security. There can be high value projects unknowingly correlated to undisclosed locations, or open, easily exploitable network ports. Our network analysts seek out unsecured network protocols susceptible to eavesdropping, and situations like hostnames exposing private IP addresses, locations and specific equipment model information. Beyond corporate assets, analysts can discover exposure of executives‘ personal information, such as the location of their private residences, and further leakage from social networking profiles.
A Deeper Level of Network Reconnaissance: Network intelligence analysts customize support based on a client’s unique network
We provide a customized capability for a company’s unique networking needs, which evolves as requirements change. Using a dynamic and tailored approach, we cover geographic, business architecture, personal communications, data and social insights changes. Our network reconnaissance looks for, and finds, vulnerabilities across the full scale surface of a company’s network to provide more visibility and a better understanding of where defenses are needed.
For More Information SUZANNE STORC Principal
[email protected] 703-984-0939 SHAUN RAUSCH Senior Associate
[email protected] 301-313-7221
3
About Booz Allen Booz Allen Hamilton has been at the forefront of strategy, technology, and engineering for more than 100 years. Booz Allen partners with private and public sector clients to solve their most difficult challenges. To learn more, visit www.boozallen.com. (NYSE: BAH) © 2015 Booz Allen Hamilton Inc. C.06019.15 06/26/15
www.boozallen.com