EH-Net
May 22, 2013, 08:03:16 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: 1 [2]   Go Down
  Print  
Author Topic: Security Dashboard  (Read 19643 times)
0 Members and 1 Guest are viewing this topic.
sachitre
Newbie
*
Offline Offline

Posts: 22


View Profile
« Reply #15 on: June 14, 2010, 11:33:04 PM »

Hi,

I dont exactly have a dashboard but if I could I would put all my monthly reports in it. Right now I provide a monthly report which has graphs and charts (Top 10) covering the following

1. Virus - detected, cleaned, PC name and Username (identify repeat offenders)
2. Patching update
3. Graph on number of attacks by type
4. Graph on most targeted servers
5. Any security incidents within the month.
6. External vulnerability scans - server and number of vulnerabilities identified/fixed.

Cheers.
Logged

CISSP, GPEN, CCNA
sil
Hero Member
*****
Offline Offline

Posts: 549



View Profile WWW
« Reply #16 on: June 15, 2010, 07:10:48 AM »

Dengar, you should check out OSSIM which has almost all of the reports you requested. *If not* all of them
Logged

H1t M0nk3y
Hero Member
*****
Online Online

Posts: 864



View Profile
« Reply #17 on: June 15, 2010, 01:59:05 PM »

If I may...

I worked 3 years developing Dashboards. I have been an assistant-director at one point in my life and I am a project manager (ok, so much for the big head! Wink).

What they want to see is a status report easy to understand, maximum 3 pages. You need these 5 things, in that order:

1) Executive summary (Green, Yellow or Red with a 2 line description of the current situation)
2) Accomplishments (What you team has accomplished since the last report)
3) Risks and mitigation strategies (What are you afraid of but didn't happen yet)
4) Issues and actions (What is wrong, currently)
5) Next Steps (what are you planning to do next)

I am telling you, they want these things more than a bunch of graphs.

You provide the facts and they make decisions. You propose and they chose.

Anyway, better than a dashboard if you want my opinion.

Another question, do they have security-related Performance Indicators to report on? If it is the case, you may want to have a graph or two about them...
Logged

OSCP, GPEN, GWAPT, GSEC, CEH, CISSP
Pages: 1 [2]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines Valid XHTML 1.0! Valid CSS!
Page created in 0.084 seconds with 19 queries.