|
Security
Engineering
We
integrate information security technologies that provide key
capabilities - confidentiality, integrity, availability, and
accountability - to satisfy an organization's critical security
needs. Today's information systems provide greater access than ever
to a multitude of knowledge resources. But this broad connectivity
means these systems are subject to threats that jeopardize the
privacy and confidentiality of sensitive information, the integrity
of data, and the availability of critical resources.
KCT's challenge is to strike the right balance between new
technology opportunities and the risks of implementing these
technologies. To do this, we take an enterprise-wide view of
security. We provide security services in all areas related to
information systems and technology solutions.
Security
Strategic Planning
Security must be integrated right from the start of any technology
solution. And like other aspects, we need to do it smarter, faster,
and cheaper in today's budget-tightening environment. In providing
system security guidance to our customers, KCT analyzes security
requirements for systems in the context of customer goals with
emphasis on managing risk, not totally eliminating it.
We
develop practical, cost effective security solutions, including
security architectures, policies, and product integration.
Besides technology, we encourage user awareness,
countermeasures, and standard practices and procedures to ensure a
controlled environment. KCT provides life-cycle support from concept
formulation through system development, fielding, and operation. Our
security professionals work with customers who have a corporate
commitment to security and need to plan for and integrate security
into their information systems.
Secure
Solutions Integration
Our
staff understands the multitude of threats to which a system is
vulnerable. We are well versed in security technologies, including
firewall engineering, secure dial-in, unitary login, digital
signature and public key encryption, trusted products, and
anti-viral software. We balance trade-offs between a system's
requirements and the ability of commercially available products to
meet those requirements. We apply our knowledge to integrate
information security "point solutions" (both commercial
and custom) into existing information system environments. Our
expertise in this area extends to Firewalls (Gauntlet, Raptor,
V-One, WatchGuard), Network Encryption System (NES), and Crypto (KG,
KY, KIV, STU, TACLANE, FASTLANE) devices.
·
Firewalls
- KCT studies commercially available firewall products and has
implemented firewalls in various customer environments. KCT offers
firewall security policy and requirements development, firewall risk
assessment, firewall security and performance testing, firewall
product integration, and firewall administrator and user training. KCT
continues to monitor and apply emerging firewall technologies,
especially those that provide firewall transparency (e.g.,
transparent proxies/forwarders and transparent challenge/response
dialogues), firewall-to-firewall encryption (virtual private
networking), packet-level authentication, strong user
authentication, and tools which can assist with firewall
administration and secure posture monitoring.
·
Internet
Security - KCT
analyzes the functional and security aspects of available Internet
security products. We have implemented solutions based on the Secure
Hypertext Protocol (S-HTTP), Secure Socket Layer (SSL) protocol, and
Kerberos (a distributed authentication system). We focus on the
product's security features and the ease with which they can be
applied to commercial and government information systems. Using
the latest in firewall, digital certificates, password protection
and encryption technologies, KCT ensures that your intranet or
extranet remains secure from unauthorized users making it safe for
you to communicate and conduct transactions online. Our security
expertise includes Firewalls (Gauntlet, Raptor, V-One, WatchGuard),
Network Encryption System (NES), Crypto (KG, KY, KIV, STU, TACLANE,
FASTLANE)
·
Trusted
Product Evaluation
- KCT provides technical expertise in the evaluation of operating
systems, Windows system technology, database management systems, and
network components. These products are evaluated against the Trusted
Computer Security Evaluation Criteria (TCSEC) and its
interpretations (commonly referred to as the "Orange Book"
and the "Rainbow Series").
|