pen-test
[Top] [All Lists]

Re: Vulnerability Assessment

To: "Uzair Hashmi" <uzair@kse.com.pk>
Subject: Re: Vulnerability Assessment
From: "Mondai Ji" <mondaig@gmail.com>
Date: Mon, 23 Jul 2007 23:46:08 +0900
Cc: listbounce@securityfocus.com, pen-test@securityfocus.com, security-basics@securityfocus.com
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
Dkim-signature: a=rsa-sha1; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=rBp0w78R6wAbiojwVx88uB+h1aONp3YVua6/K2ELgF8d/hd100S5PeWBtX01RJsHXpc8TTkov5kCdo358/xor4fnjKw5s35rExCefwig0JZdv4qr6f+68DxkXlLjxwxGU4Mhz3xIbDkpEgtEDwgW243ixwv3ygCl+vGxryrQxXU=
Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=GamAVkpnbBKdLveY/IVY2shhgzKnd/VrAqqrr6FV0SeOFxo04z+P8M3R3rHunmN5IZGDDscNS1x3P/H9aVOAcLwK6p4+Levi5caFbALXp8Js9hkq+e6Hft3JNRy5Uko5Bd3PyVw7Zdg27hZ62hk8dyrPSIwepyYigdEc9CXrFxs=
In-reply-to: <MHEAIIDDABAHPIJFFKBHAEPMCBAA.uzair@kse.com.pk>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
References: <928304718-1180733864-cardhu_blackberry.rim.net-193472141-@bxe017-cell01.bisx.prod.on.blackberry> <MHEAIIDDABAHPIJFFKBHAEPMCBAA.uzair@kse.com.pk>
Resent-date: Mon, 23 Jul 2007 17:32:43 -0600 (MDT)
Resent-from: pen-test-return-1078484672@securityfocus.com
Resent-message-id: <20070723233243.96505237092@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
Uzair,
 There are a number of products on the market each with different
pros, cons and prices.  You have to also keep in mind the hardware,
and support costs as well.

As mentioned before, you should check out Nessus and Retina
(http://www.eeye.com/html/products/retina/index.html) .

Networkcomputing world also has a number of reviews, so search there
site. (http://www.eeye.com/html/products/retina/index.html)

Also review the reporting tools of the software.  For myself I the
flexibility of reporting is one of my main purchase factors, as I have
to prepare reports both for upper management, compliance, internal
audit, and the engineers.

On 6/4/07, Uzair Hashmi <uzair@kse.com.pk> wrote:
Hello list,

I have been evaluating an automated vulnerability assessment software, have 
found two of them better for the organizational needs. I need your help to 
select only one out of the two.

1- QualysGuard (http://www.qualys.com)
2- Foundstone Enterprise 
(http://www.mcafee.com/us/enterprise/products/vulnerability_management/foundstone_enterprise.html)

Please advice.

Regards,
Uzair


------------------------------------------------------------------------
This List Sponsored by: Cenzic

Are you using SPI, Watchfire or WhiteHat?
Consider getting clear vision with Cenzic
See HOW Now with our 20/20 program!

http://www.cenzic.com/c/2020
------------------------------------------------------------------------



------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>