Members
About the Company
We are a company that provides security services in the field of Cyber Security. Below I share the services we provide with you. 1- Penetration Tests We are doing it as a TSE certified company. TSE, BRSA, ISO/IEC 27001:2017, ISAE 3402, NIST, PCI DSS, SoX/ Cobit, SAS 70 compliant reporting and standards. Penetration test of all services on the server and network device systems to be audited, in accordance with Establishment Security Audit techniques in a way that also meets OWASP, OSSTMM standards. HTTP, DNS, SMTP, POP3, FTP, IMAP, TELNET, SSH, SSL etc. Weakness analysis, penetration tests to be performed manually of all detected running services, software and protocols. Detection of all configuration errors and deficiencies that can be detected remotely and from the local network. Web-based software, manually counter-inspection of connected databases against all kinds of web-based attack techniques and Essay Security Audit techniques to meet OWASP, OSSTMM, BDDK, TSE standards. Authentication, session spoofing, character filtering, parameter manipulation, cookie manipulation, etc., including CSS, XSS, SQL Injection, CSRF. Manual testing of many techniques such as both a normal visitor and other user rights on the website. Manual control of all user-side and server-side vulnerabilities related to system and databases, including rights abuse with different user rights. 2- Information Security ISO27001 consultancy ISO 27001 Information Security Management System (ISMS) is a worldwide standard that every institution can implement. Thousands of institutions that meet the standard have been awarded the ISO certificate. The document is spreading rapidly in Turkey as well as all over the world and has been made compulsory for telecom companies by the Telecommunication Authority. With our experienced staff, ESBİLGİ prepares your company for ISO 27001 certification audit by implementing ISO 27001 consultancy service and all ISMS processes together with you. This service starts with the determination of the scope document and ends with the company receiving the document. 3- KVKK Personal Data Protection Law Consultancy It covers the technical and administrative measures that data controllers should take in order to prevent the unlawful processing of personal data and illegal access to personal data, and to ensure the protection of personal data in accordance with the Law on the Protection of Personal Data No. 6698 (KVKK). As ESBİLGİ, our experience in the protection of your Personal Data related to your Organization within the scope of the "Personal Data Protection Law" published in the Official Gazette No. 29677 dated 07 April 2016, in compliance with the ISO 27001 Standard and GDPR (General Data Protection Regulation) We carry out the activities. 4- Network Security Products And Installation Maintenance Services In the field of Cyber Security, products suitable for companies' networks are positioned. At the end of the process in which the processes are started by performing gap analysis in the networks of our customers and the analysis results are interpreted and continued, the most suitable products are selected for our customers. DLP, NAC, Firewall, PAM, AV, Sandbox, 2FA etc. The supply and installation of products and software are carried out. https://esbilgi.com/