Cyber Vulnerability Assessments

Cyber Vulnerability Assessments

NERC challenges organizations to perform an objective evaluation of its applicable Cyber Assets by requiring the completion of either a paper or active Cyber Vulnerability Assessment (CVA) to be completed at least once every 15 calendar months. CRSI understands that many organizations lack the availability of personnel with technical knowledge to complete these assessments in a timely, consistent, and repeatable manner. At a minimum, these Cyber Vulnerability Assessments must include the following areas:

  • Network DiscoveryCyber Vulnerability Assessments
  • Network Port and Service Identifications
  • Vulnerability Review/Scanning
  • Wireless Review/Scanning
Read More

CRSI researched and developed a CVA process which exceeds these specifications and instills confidence in the entity’s SME team regarding the security they provide to their organization. CRSI’s team provides an objective third-party review of the current configurations, and network diagrams. The full report package provided by CRSI includes the following:

  • Executive Summary
  • Detailed list of discovered issues ranked by CRSI’s institutional knowledge and CVSS scores and correlated to approximate CIP Requirements
  • A workbook including detailed information regarding each Cyber Asset’s baseline configuration and discrepancies within the running configurations
  • An action plan addressing how to remediate discovered issues which allows for an entity’s personnel to quickly process and remediate the issues with limited time and resource investment
  • Any reports generated by tools and scripts by CRSI

Other services CRSI offers in coordination with a CVA are the following:

CRSI strategically partnered with more than 250 electric utilities in the last five (5) years for their NERC CIP Compliance Solutions. To find out more about how to create your Security Compliance Roadmap, call us today to schedule a free, no obligation consultation.

Efficient. Effective. Sustainable.

Let's Talk Solutions