Book Image

Network Security Strategies

By : Aditya Mukherjee
Book Image

Network Security Strategies

By: Aditya Mukherjee

Overview of this book

With advanced cyber attacks severely impacting industry giants and the constantly evolving threat landscape, organizations are adopting complex systems to maintain robust and secure environments. Network Security Strategies will help you get well-versed with the tools and techniques required to protect any network environment against modern cyber threats. You’ll understand how to identify security vulnerabilities across the network and how to effectively use a variety of network security techniques and platforms. Next, the book will show you how to design a robust network that provides top-notch security to protect against traditional and new evolving attacks. With the help of detailed solutions and explanations, you'll be able to monitor networks skillfully and identify potential risks. Finally, the book will cover topics relating to thought leadership and the management aspects of network security. By the end of this network security book, you'll be well-versed in defending your network from threats and be able to consistently maintain operational efficiency, security, and privacy in your environment.
Table of Contents (15 chapters)
1
Section 1: Network Security Concepts, Threats, and Vulnerabilities
5
Section 2: Network Security Testing and Auditing
10
Section 3: Threat Management and Proactive Security Operations

Penetration testing best practices

To understand some of the best practices that we can employ when pen testing our network, we'll look at a case study. The following is a case study that John (a made-up character for our case study) performed on one of the leading medical organizations in the United States.

Some information has been tampered with and changed for confidentiality purposes.

Case study

The organization has most of its services running on a single web server that was behind an IPS with a few other network services installed separately. The separate services included a mail server, the on-site employees' (system and network administrators) workstations, and a few other machines. They commissioned John to carry out the pen testing exercise to provide an analysis of how much their systems are at risk. The wanted to know whether, in the case of an attack, the breach can be extended and the different ways the system can be breached.

John was told that he had to carry...