Network Vulnerability Assessment for a US Equipment Manufacturer
Summary
A US manufacturer of warehouse and dock equipment was concerned that malware and potential breaches could disrupt its workflow and cause manufacturing downtime. It wanted to check the IT networks in its office and factory areas for security gaps — without disturbing operations — and get practical advice on fixing them. INNERLUXES performed a non-intrusive network vulnerability assessment and delivered a severity-ranked report with a remediation roadmap in 14 days.
About the Customer
The Customer is a US manufacturer of warehouse and dock equipment.
The Challenge
The Customer was concerned about malware threats and potential security breaches that could cause workflow disruption and manufacturing downtime. It wanted to check the IT networks in the office and factory area for security gaps and get practical advice on how to fix them, and was looking for an experienced vendor to perform a comprehensive security assessment of its IT networks without disturbing operations.
The Solution
INNERLUXES recommended a vulnerability assessment as the optimal option for a non-intrusive, cost-efficient security evaluation of the required IT networks.
The team mapped the assessment targets — 5 servers, 50 workstations, network equipment, and firewalls — then used an automated vulnerability scanner to detect as many network vulnerabilities as possible. INNERLUXES analyzed the scan findings to filter out false positives and classified the detected vulnerabilities by criticality. Some flaws were of high and medium severity: missing and weak passwords, misconfigured firewalls, outdated software versions (Windows OS, Microsoft SQL Server, Microsoft Exchange Server, Autodesk Vault, VMware Workstation), and insecure SSL.
INNERLUXES prepared a detailed report describing the high-, medium-, and low-severity vulnerabilities, their nature and impact, along with corrective measures to fix all the detected security gaps. The network vulnerability assessment took 14 days from planning and preparation to execution and reporting.
The Results
- The Customer got a full view of its existing network security vulnerabilities and a roadmap for their remediation.
- The Customer was able to step up its cybersecurity by fixing the detected security flaws.
Technologies and Tools
Nessus, CIS Benchmarks.