Through Talisen's expertise and strategic partners, Talisen offers a
suite of products and technical services that address the needs of your security program.
Whether you need a one time penetration test or a comprehensive information security management
system, Talisen can help you put the right pieces into place.
Services
Application Security Assessment
Our experts will work along side your teams to scrutinize the architecture and implementation of
your applications to identify flaws that may reduce the confidentiality, availability, and integrity
of your information assets. Talisen has demonstrated expertise in locating security issues at the
interface, code, and binary levels across a multitude of platforms and development languages.
Infrastructure Security Assessment
Talisen's team will evaluate your organizations core infrastructure components, including routers,
firewalls, switches, access points, DNS, Active Directory, Single Sign On, identity management, and
others to identify flaws that will impact the foundation of your organization?s technology solutions.
Penetration Testing
Talisen and approved partners will test the limits of your organizations security posture by
employing the same advanced techniques attackers use. Talisen's experts are at the forefront of
vulnerability discovery, exploitation, and post exploitation methodologies. As such, upon mitigating
the risks uncovered via a Talisen executed Penetration Test, your organization will be confident in
the resilience of your security controls.
Security Program Services
Talisen and approved partners will work with your team to analyze current system and software
development lifecycles and identify key points within the process to integrate new or refine existing
security checkpoints. Throughout, Talisen will identify areas of opportunity to create
standardized, repeatable, and measurable processes to drive efficiencies within the security program
while lowering the overall risk of running your business. Our Security Program Services include:
Through a strategic partnership, Talisen offers SecureAware ISMS. Which is a comprehensive
information security management system complete with tools and content for creating and
communicating information security policies, procedures, awareness training & testing, and compliance
& risk assessment. It provides platform where business executives and IT managers can collaborate on
their common concerns. Patent-pending technology and tightly integrated functional modules
significantly reduce time and effort while ensuring that all aspects of your information security
process are addressed.
SecureAware ISMS is the name of our five modules bundle which consists of:
SecureAware Risk
Corporate Governance guidance and best practices require businesses to manage their risk through
regularly conducted risk assessments and analyses (RAA). SecureAware Risk is a unique and cost-effective
RAA tool for commercial businesses and government agencies. It assists in the RAA process, by providing
an easy to use framework and content to quickly guide you through the process. The outcome will give
you an information security overview and allow you to focus on your business.
SecureAware Compliance
Built-in compliance checklist follows ISO27001:2005 and ISO17799:2005
Includes questions for specific controls and implementation guidelines
Control status can be set to: Compliant / Partially compliant / Not compliant / Irrelevant
Allows linking of related documentation, expected date for compliance, links to
related references
Role-based user management ensures that only designated staff can view assessment
PDF report with executive summary and detailed report of compliance status
SecureAware Policy
SecureAware® Policy is an efficient tool to create, maintain and communicate your business'
security policies, procedures and guidelines. The relational database structure makes it easy
for organizations to implement policies and link them to certain procedures and target user groups.
If your business already has a security policy, SecureAware® Policy will help you structure and
target your content, and automatically convert your content into security awareness programs with
SecureAware® Survey and SecureAware® Education. Talisen includes all relevant content in SecureAware®,
making it easy to establish a security policy with a couple of mouse clicks. Once the policy is
established, modifying and updating the content is fast and easy.
SecureAware Survey
Powerful Measurement Tool
SecureAware Survey is a comprehensive tool for ongoing measurement of an often overlooked critical
attribute: The human security awareness level. To improve or maintain any level, a baseline must
be determined. SecureAware Survey evaluates the information security knowledge of your staff and
tests their understanding of your security policy and rules. Based on this information, a
custom-tailored security training program can be delivered and evaluated on a regular basis.
Simplified Management
The web browser interface and centralized management of SecureAware facilitate fast installation
in any environment. The database object approach, and integration between Policy, Education and
Survey modules, enables automatic creation of awareness quizzes based on your specific policies.
The simple interface and standards-based testing content further reduce deployment time and
significantly lower the total cost of ownership.
SecureAware Education
Security learning
SecureAware Education makes it possible to educate all employees in security on the exact level
relevant for any particular group of employees. SecureAware Education is e-learning based
security education.
Focus
The courses particularly focus on teaching in the areas where SecureAware Survey has found weak
spots in the knowledge level.
Awareness generator
Additional targeting is achieved by integrating SecureAware Education with your business'
security policy. This way the education relates common, background knowledge about security with
your specific security policies. Your users develop an understanding for the reasons for
safeguarding information on computers as well as knowledge about specific rules and guidelines
decided by their employers.