<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Vulnerability Management Program</title>
	<atom:link href="http://infosecminds.com/2008/10/10/vulnerability-management-program/feed/" rel="self" type="application/rss+xml" />
	<link>http://infosecminds.com/2008/10/10/vulnerability-management-program/</link>
	<description>For like-minded people</description>
	<lastBuildDate>Mon, 12 Dec 2011 06:04:35 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3</generator>
	<item>
		<title>By: Praveen Reddy</title>
		<link>http://infosecminds.com/2008/10/10/vulnerability-management-program/comment-page-/#comment-53</link>
		<dc:creator>Praveen Reddy</dc:creator>
		<pubDate>Wed, 28 Jan 2009 08:32:05 +0000</pubDate>
		<guid isPermaLink="false">http://vputhuseeri.wordpress.com/?p=57#comment-53</guid>
		<description>Amit,

For Audits:
I would suggest you to use Information Systems Security Assessment Framework (ISSAF) from www.oissg.org, it covers all the aspects that are required to assess Network Infrastructure.

For Hardening:
NIST has published some hardening documents, you can also refer to http://www.cisecurity.org/

-Praveen</description>
		<content:encoded><![CDATA[<p>Amit,</p>
<p>For Audits:<br />
I would suggest you to use Information Systems Security Assessment Framework (ISSAF) from <a href="http://www.oissg.org" rel="nofollow">http://www.oissg.org</a>, it covers all the aspects that are required to assess Network Infrastructure.</p>
<p>For Hardening:<br />
NIST has published some hardening documents, you can also refer to <a href="http://www.cisecurity.org/" rel="nofollow">http://www.cisecurity.org/</a></p>
<p>-Praveen</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Amit</title>
		<link>http://infosecminds.com/2008/10/10/vulnerability-management-program/comment-page-1/#comment-54</link>
		<dc:creator>Amit</dc:creator>
		<pubDate>Wed, 28 Jan 2009 07:19:53 +0000</pubDate>
		<guid isPermaLink="false">http://vputhuseeri.wordpress.com/?p=57#comment-54</guid>
		<description>I am working as an ISMS auditor in my organization. I am new in this role and require assistance from you. I need checklists to identify vulnerabilities in router, switch, firewall, vlan etc as well as other steps to harden the information security. Please guide me in this endeavour.</description>
		<content:encoded><![CDATA[<p>I am working as an ISMS auditor in my organization. I am new in this role and require assistance from you. I need checklists to identify vulnerabilities in router, switch, firewall, vlan etc as well as other steps to harden the information security. Please guide me in this endeavour.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

