Firewall Managed Service. I.T. Security Specialists. Firewall Managed Service 1



Similar documents
Caretower s SIEM Managed Security Services

24/7 Monitoring Pro-Active Support High Availability Hardware & Software Helpdesk. itg CloudBase

G-Cloud 6 Service Definition DCG Enterprise Backup Reporting Service

Service Definition Document

Auxilion Service Desk as a Service. Service Desk as a Service. Date January Commercial in Confidence Auxilion 2015 Page 1

Spyders Managed Security Services

Hosted SharePoint: Questions every provider should answer

CloudDesk - Security in the Cloud INFORMATION

ManageEngine (division of ZOHO Corporation) Infrastructure Management Solution (IMS)

STL Microsoft SharePoint Consulting and Support Services

Company Overview. Enterprise Cloud Solutions

Open Networking User Group SD-WAN Requirements Demonstration Talari Test Results

VODAFONE G-CLOUD SMS-SERVICE

G-Cloud 6 Service Definition DCG Cloud Disaster Recovery Service

Ellucian Cloud Services. Joe Street Cloud Services, Sr. Solution Consultant

All your apps & data in the cloud, all in one place.

Security Annex for Firewalls Additional Terms for Firewall Service

Vodafone Private Cloud

G-Cloud Service Definition. Canopy Unmanaged Enterprise Private Cloud (IL3 Capable) IaaS

Managed IT Services. Maintain, manage and report

Cloud Vendor Evaluation

Vodafone Total Managed Mobility

Agio Remote Monitoring and Management

FULLY MANAGED SERVICE COMPLETE SUPPORT FOR YOUR MOBILE ENTERPRISE

With Windows, Web and Mobile clients Richmond SupportDesk is accessible to Service Desk operators wherever they are.

Service Specification. ICT Support 2014/2015

Business Operations. Module Db. Capita s Combined Offer for Business & Enforcement Operations delivers many overarching benefits for TfL:

Market Data + Services. Advanced outsourcing solutions. IT Hosting and Managed Services

I.T. Security Specialists. Cyber Security Solutions and Services. Caretower Corporate Brochure

NETWORK MONITORING & ALERTING SERVICES SERVICE DEFINITION

THE BLUENOSE SECURITY FRAMEWORK

Securing the Service Desk in the Cloud

Infrastructure & Software

The Time has come for A Single View of IT. Sridhar Iyengar March 2011

Enterprise IT is complex. Today, IT infrastructure spans the physical, the virtual and applications, and crosses public, private and hybrid clouds.

Current IBAT Endorsed Services

Firewall Administration and Management

Running Mission-Critical Enterprise Applications in Private and Hybrid Cloud Environments

xxx Managed Services ans.co.uk

Vistara Lifecycle Management

IBM G-Cloud Microsoft Windows Active Directory as a Service

Remote Voting Conference

CNS Security and Network Monitoring. Managed Services Description

Platform as a Service

pavassure Resolve Service desk Onsite diagnosis and recovery Enhanced hours support Monitor Event monitoring & alerting Reporting Services

STL Microsoft Dynamics CRM Consulting and Support Services

LOG AND EVENT MANAGEMENT FOR SECURITY AND COMPLIANCE

Security Annex for Firewalls Additional Terms for Firewall Service

Invest in your business with Ubuntu Advantage.

MANAGED CLOUD INFRASTRUCTURE Bronze Disaster Recovery Services

Ancero Backup & Disaster Recovery (BDR) Service Guide

SECURE CLOUD SOLUTIONS FOR YOUR BUSINESS.

END-USER REMOTE SUPPORT AND HELPDESK SERVICES SERVICE DEFINITION

WebFOCUS Cloud Express. The WebFOCUS Cloud Express service is delivered as a managed G-Cloud service by Amtex Solutions Ltd.

What s New in Help Desk Authority 8.2?

Managed Security Services SECURING YOUR BUSINESS

Onsight IntelliDefense SECURING YOUR BUSINESS

System Security. Your data security is always our top priority

Xerox Print Monitoring Service (XPMS)

A Global IT Managed Service Provider

Everything you need for your mobile enterprise

G-Cloud Service Definition. for. Xicon Cloud SCS - SQL Server Managed Services

End-User Remote Support and Helpdesk Services

Thales Service Definition for NOC Services for Cloud

Mailwall Remote Features Tour Datasheet

TalentLink Disaster Recovery & Service Continuity

Business process efficiency is improved with task management, alerts, notifications and automated process workflows.

Security & Reliability in VoIP Solution

Service Level Agreement: Support Services (Version 3.0)

The SMB IT Decision Maker s Guide: Choosing a SaaS Service Management Solution

IPL Service Definition - Data Recovery, Conversion and Migration

Guardian365. Managed IT Support Services Suite

SP Monitor. nfx One gives MSPs the agility and power they need to confidently grow their security services business. NFX FOR MSP SOLUTION BRIEF

Lot 1 Service Specification MANAGED SECURITY SERVICES

N e t w o r k E n g i n e e r Position Description

Operationalize Policies. Take Action. Establish Policies. Opportunity to use same tools and practices from desktop management in server environment

Managed IT Services by

Client Study Portfolio

Creating Added Value for the IT Service Management Practice. How ConsoleWorks Creates Value for ITSM Best Practices

Customized Cloud Solution

Thales Service Definition for PSN Secure Gateway Service for Cloud Services

The business case for managed next generation firewalls. Six reasons why IT decision makers should sit up and take notice

Dimension Data Hosted Private Cloud

Network Management System (NMS) FAQ

The Education Fellowship Finance Centralisation IT Security Strategy

Roles within ITIL V3. Contents

Transcription:

Firewall Managed Service I.T. Security Specialists Firewall Managed Service 1

BACKGROUND Caretower Managed Security Service provides remote managed security services for customers. We have extensive experience of partnership with all major security vendors and provides vendor approved support for a range of security technologies and products. This document describes our Firewall Managed Security Services for all major vendors firewalls. Caretower Managed Security Service The Managed Service operates through our SOC (Secure Operation Centre) on the principle of proactive security management, deploying a Network Management System (NMS) that processes notifications and auto-generates tickets for proactive remote management. This facilitates proactive incident management and also incorporates a change management component. Our infrastructure is housed in a hosted environment, in redundant configuration. Connectivity with the customer is achieved by a remote encrypted connection to the managed device(s). Customers can raise tickets by email or phone or by logging onto our Managed Service web portal. If you would like more information on any of our services, please speak to your dedicated Caretower Account Manager or if you don t have one, email: info@caretower.com Security Operations Centre (SOC) Our SOC is manned 24x7x365 by experienced firewall engineers. The SOC is secured with swipe card access control and only authorised personnel have access. Physical and logical access is controlled via a list of authorised personnel.soc engineers remotely manage and monitor customer devices proactively. Our managed services follow laid down procedures, within the ITIL model.* *Caretower will not be responsible for failures or degradation beyond our reasonable control, such as customer infrastructure, cabling, telecoms service/ equipment, power provision, utility suppliers, ISP etc. 2 Firewall Managed Service

Caretower s Service Elements 24x7 Management The Managed Security Services are delivered through our Security Operations Centre (SOC), which operates 24 hours a day, 7 days a week, 365 days a year. System Availability Checks Caretower SOC is available to monitor and manage security devices 24x7x365. Co-manage The customer may retain admin privileges to the managed device - if not on a fully managed contract. Configuration Backup Where possible a configuration backup of the device shall be made. Reporting Portal Monthly reports will be provided for the managed device(s). A Web Portal is provided to the customer to interface with the Managed Service. The customer CSM/CSO may access the Web Portal through the Caretower Managed Service web site. Access to the Web Portal is encrypted, additional Web Portal accounts can be requested but these incur a one-off charge and should be ordered through the Caretower account manager. Firewall Managed Service 3

change control Changes are managed to completion within the change management system, and are requested via the Web Portal. If either Caretower or the customer wishes to make a change to the configuration of the managed device(s), Caretower or the customer shall provide in the request a description of the proposed change. If Caretower requests a change, the customer shall not unreasonably withhold or delay consent to it, however the customer can reject the change. If the customer wishes Caretower to proceed with the change, the customer must approve the change. If Caretower does not proceed with a change requested by the customer, Caretower will document and communicate the reasons why it will not proceed and may provide counterproposals for the customer s consideration. 24 changes per year are included in the service, and additional changes in bundles of 10 can be purchased subsequently ( 250 per bundle of 10). In accordance with ITIL, non-impact changes do not need to go through change control. Incident Management For the purposes of this specification, reference to an incident generally means an incident in ITIL, which is an unplanned interruption to an IT service or a degradation of the quality of an IT service. Reported incidents will be responded to within 30 minutes. 4 Firewall Managed Service

Managed Firewall Service Elements Services Available 24/7 Monitoring 24/7 Management Co-Manage System Availability Checks Visual management console Configuration Backup via management console before and after change implementation Reporting Portal Security Appliance (VM) OPTION OPTION Security Appliance (HW) Rulebase Audit via management console Rulebase management via management console, includes 24 changes, with additional bundles of 10 changes chargeable Platform Management Operating system and firmware, via management console SLA Fully Managed Customer has read only access OPTION OPTION Firewall Managed Service 5

implementation Prior to the Managed Service go-live, an audit of the customer s rulebase is carried out, in the case of existing firewalls. For new firewall installations, these are built at Caretower, and shipped to site for installation. All of these activities are scoped within the setup costs, to determine the number of days required for build and/or site visit. 1 Rulebase Audit We will undertake an assessment of current policies and rules and contrast that with the enterprise objectives and compliance requirements. In addition we will optimise the rulebase, simplifying on-going management and minimising misconfiguration 2 Rulebase Management If the customer wishes us to make configuration changes to the Security Device policy/rulebase, then this will be done in accordance with the Change Control process detailed. The CSM/CSO or designated person will need to provide sufficient network detail in order to design and implement the changes. We will use reasonable commercial effort to perform all maintenance and configuration management activities remotely. 3 SLA Summary Single Device We shall ensure that the device under contract is up (available) for 99.8% of the time over a one year (365 day) period except in those situations described below*. High Availability We shall ensure that the device under contract is up (available) for 99.9% of the time over a one-year (365 day) period, except in those situations described. A high availability system is one that is configured in active/active or active/passive which is designed to come active automatically. It does not include systems that have a cold/warm standby, or which need to be manually switched to active. In this situation these would be considered as single devices and so a lower SLA applies. *We will not be responsible for failures or degradation beyond our control, such as customer infrastructure, cabling, telecoms service/equipment, power provision, utility suppliers, ISP etc. We work with all major vendors, some of which are: 6 Firewall Managed Service

Benefits of Caretower s Firewall Managed Security Service Speed of implementation Our Managed Security Firewall Service seamlessly integrates with your network and can be up running within days, not months. We deliver instant results through visibility of events and analyse on a live dashboard with in-depth reporting. Robust reporting Our Managed Security Firewall Service brings you comprehensive technical, operational and trend reports that communicate security status and satisfy compliance requirements. 24/7 Caretower Security Operation Centre Our Managed Security Firewall solution allows you to be a Firewall service user, not an administrator. This means that you have access to Firewall service to view the data and run required reports whilst maintaining a certain level of privileges. The Firewall service is constantly monitored by our 24/7 Security Operations Centre where the team will carry out monitoring, management and incident response to security events and alerts. We will evaluate which of our services suit you best and customise it to make sure that it fits your business needs. Firewall Managed Service 7

Why Caretower? As an independent IT security specialist, with over 17 years experience, we provide comprehensive solutions to individual problems, thus allowing our recommendations to be unbiased. Over the years, we have quickly established many long standing relationships with all of our vendors, achieving the highest status within these organisations based on the level of expertise within our internal sales, support and professional services teams. This relationship ensures we provide our customers with key changes within the industry which assists in their on-going security management strategy. ÎÎ Live global 24/7 Firewall Managed Service ÎÎ Dedicated GIAC Certified Digital Forensic Security Engineers (SANS (SysAdmin, Audit, Networking, and Security) Institute) ÎÎ Full-onsite and hosted architecture options, depending on your requirements ÎÎ We are CSA (Cloud Security Alliance) member and ISO 27001 Accredited Get in touch: 020 8372 1000 info@caretower.com www.caretower.com