
Specializations › Telecommunication networks › Network security
A corporate network is a necessary platform for ensuring workability and development of the company’s business. In its turn the network infrastructure is vulnerable to malicious actions.
The network security is very closely connected with other processes for ensuring the business safety and continuity in the organization, and it lies on the junction of the processes of economic security, financial security, physical security and IT. Architecturally the network security cannot exist independently, without the connection with these processes.
In our projects we consider the systems of network security not as an additional option of the corporate network, but as one of its main and permanent functions. This means that the functions of network security are implemented in each device, of which the network consists.
Offered solutions:
- Network segmentation;
- Firewalls and packet filters;
- Systems for detection and prevention of intrusions;
- Individual host protection systems;
- Antivirus and antispam systems of email gates;
- Data enciphering systems of WAN connections;
- Control systems of network security devices;
- Systems of proactive analysis of events and reactions to attacks;
- Systems of network audit and testing for vulnerabilities.
Firewalls implement the function of traffic filtration, checking the state of connections, deep analysis of network and application protocols for delimiting the access to the network resources, protecting against attacks, blocking viruses and worms. The firewall functions are implemented both in separate devices and as safety functions of routers and switches.
Systems for detection and prevention of intrusions. Using a wide spectrum of algorithms of attack detection, these systems make it possible to detect both known and many of unknown attacks. The techniques of analysis of security events make it possible to lower the number of false triggering and react only to actually critical attacks that can substantially damage the corporate network resources.
Host protection systems. Software that realizes various protective mechanisms and functions: prevention of attacks, personal firewall, antiviral protection, checking of integrity, blocking of information leakage through USB ports and other external devices, detection of keyboard interceptors, etc. The host protection systems make it possible to rebuff a wide spectrum of attacks – port scanning, buffer overflow, trojans and worms, DoS attacks, etc. This, in its turn, ensures the computer protection against unknown attacks, whose signatures are not determined yet and they are absent in the bases of traditional protection means.
Antivirus and antispam systems of email gates – they are software and hardware sets intended for comprehensive control and protection of email traffic.
Data enciphering systems. They are devices and software that supports modern algorithms of authentication and enciphering for creating VPN between the company branches and organizing access to the corporate resources for mobile users.
Control systems of network security devices. These systems implement various forms of control information presentation, mechanisms of detection of discrepancies in security policies, automatization of routine administration tasks and thus simplify the control over the network information security.
Systems of proactive analysis of events and reactions to attacks. They are software and hardware complexes intended for managing security threats. The role of data sources therein can play the network equipment (routers and switches), protection facilities (firewalls, antiviruses, attack detection systems and security scanners), OS logs (Solaris, Windows NT, 2000, 2003, Linux) and application logs (DBMS, web, etc.), as well as the systems of network traffic registration (e.g. Netflow). The system makes it possible to display in real time the way an attack spreads. The automatic blocking of detected attacks is achieved by means of built-in mechanisms that make it possible to reconfigure various protection means and network equipment.
Systems of network audit and testing for vulnerabilities. They are the systems that make it possible to check the network infrastructure for conformity with the requirements of various state, international and corporate standards in the field of information security. The implementation of such systems helps to identify changes in the network equipment settings, better understand tendencies in the network infrastructure, which permits to quickly eliminate gaps in the network protection, thus increasing the stability of its operation.
You can contact our specialists online and get the consultation

