Security Services

A sccurity assessment service where security specialists identify vulnerabilities in network device and servers and report findings clearly
Security Plus
Security Assessment Services:
Platform Assessment

“Platform Assessment” is a service that examines your network devices, operating systems, servers, and middleware to determine whether any vulnerabilities exist and whether there are configuration issues.
Platform-level vulnerabilities refer to security flaws that exist in components such as operating systems and middleware. Because OSs and middleware are used and studied worldwide, new vulnerabilities are discovered almost on a daily basis and disclosed as they are found.

Many cyberattacks exploit these publicly disclosed vulnerabilities. As a result, addressing such “vulnerabilities” is critically important to prevent incidents such as data breaches and unauthorized access.

However, as noted above, it is not easy to continuously and exhaustively track information on vulnerabilities that are discovered almost every day and to be ready to apply the security patches provided as soon as they are released. In addition, configuration issues at the platform level can also help enable cyberattacks. For example, “port scanning” is a technique used by attackers to collect information needed for intrusion when selecting targets. Simply leaving ports open for unused services effectively provides attackers with more opportunities to attack. To eliminate such potential attack vectors, it is essential to proactively assess platform vulnerabilities and identify improper configurations in advance.

In Asgent’s Platform Assessment Service, our experienced security specialists examine and identify vulnerabilities hidden in your network devices and servers. After the assessment, we hold a review session based on a detailed, easy-to-understand report prepared by our engineers, during which we explain the results and propose appropriate countermeasures.

 For vulnerability assessments of web applications, please refer to our “Security Plus Web Application Assessment Service.” For evaluating vulnerabilities and attack readiness through simulated attacks, please refer to our “Penetration Test” service.

プラットフォーム診断サービス概要


Asgent’s security assessment services are registered in the “List of Services Conforming to the Information Security Service Standards” as services compliant with the “Information Security Service Standards” established by the Ministry of Economy, Trade and Industry (METI).

SSS_Vulnerability_019002320.png

Features

  1. Identify Vulnerabilities In Servers and Network Devices, and Report On Issues Within the Internal Network Along With Required Countermeasures
    Using multiple highly reliable assessment tools in combination with manual testing performed by engineers with extensive experience in vulnerability assessments, Asgent achieve a high level of accuracy while minimizing false positives. Following the assessment, we provide customers with a detailed and easy-to-understand report outlining recommended remediation measures.
  2. Post-Remediation Reassessment and 30-Day Q&A Support
    For identified vulnerabilities, Asgent we can perform a reassessment (optional service) to verify whether the issues have been resolved by the remediation work carried out by your team. In addition, we provide 30 days of Q&A support after delivery of the report, enabling you to improve your security level while resolving technical concerns related to security measures that require experience and expertise.
  3. Available On-Site or Remotely
    The Platform Assessment Service is typically performed remotely against the target environment, but we can also visit a designated location to conduct the assessment onsite if required.
プラットフォーム診断サービス特長

Service Benefits

  1. Optimize the timeframe and costs of security measures through precise assessments by security specialists
  2. Reduce the risk of personal data breaches and associated liabilities
  3. Gain a clear understanding of the security posture of the network infrastructure supporting website operations, enhancing trust among stakeholders.
  4. Benefit from objective findings provided by an independent third party, which can also be used effectively in external audit reports

Scope of Assessment

Operating systems, middleware, server software running on servers and devices connected to your network, as well as network devices (routers, firewalls, IDS/IPS, etc.).
プラットフォーム診断サービス診断対象

Service Flow

プラットフォーム診断サービスの流れ

Service Scope

Service Items Details
Assessment Items Port scan Examine TCP and UDP ports (on ports designated by Asgent) on the target systems.

Host information collection Collect information on the target OS and applications and check for issues such as outdated product versions. .
Vulnerability assessment Using multiple highly reliable assessment tools, inspect the target OS and software for known vulnerabilities.
Manual testing For detected vulnerabilities, perform additional manual verification.

Service configuration assessment Check for improperly exposed directories or misconfigurations in server setting.
Account assessment Verify that commonly used services (e.g., FTP, Telnet) do not easily guessable accounts or passwords.