SSB logo
Technology field image
American flag image
Medical stethoscope & fingerprint image WWW image
IT professional
Title: Capabilities > Information Security
Ounce of Prevention Security (OOPS) Overview
An ounce of prevention is worth a pound of cure. That's SSB Inc's network security philosophy. Prevention means effective intrusion detection combined with staff security training and firewall management. Combined, these methods create a crunchy network outer surface and a prickly middle to deter the most relentless intruder.
 
Our OOPS approach minimizes your upfront cost by evaluating your specific requirements and combining the right level of good basic security practices with forensic study to meet your needs. After we do the forensics and help you apply the security basics through implementation and training, we work with you on a customized security solution effectively designed to meet your business needs.
 
Information Security Image
 
Heading: Network Security & Intrusion Prevention
Managed Firewalls and VPN’s
 
Our managed firewall program comes in four tiers.
arrow Tier 1: S-OOPS Small Business or Government offices up to 50 users
  arrow Tier 2: M-OOPS Medium Sized Business or Government offices up to 150 users
  arrow Tier 3: FOE-OOPS Full and Open Enterprise Unlimited Users
  arrow Tier 4: LI-OOPS Legacy Interlock Firewall Support
 
S-OOPS – This managed program, designed for small business or government offices offers an industry leading stateful inspection firewall technology at an affordable price. The firewall hardware and software are free when you sign a one year contract with SSB to provide on-line and remote support for all rule base changes, health and welfare of the server.
 
M-OOPS – This managed program, designed for medium sized business or government offices, offers a choice between two of the industries leading firewall developers. SSB can easily provide information assurance across multiple locations and users through an IKE encrypted Virtual Private Network (VPN). We provide on-line and remote support for all rule base changes, health and welfare of the servers.
 
FOE-OOPS – This managed program, designed for large enterprises and government offices, offers hardware that has been tested for mission critical application and unlimited users. All Network Intrusion Systems are included as part of the Full and Open Enterprise package. SSB can easily provide information assurance across multiple locations and users through an IKE encrypted Virtual Private Network (VPN). We provide on-line and remote support for all rule base changes, health and welfare of the servers.
 
LI-OOPS – This phone support program was developed by our in-house Interlock specialists. They posses many years of expertise gained from working with the original interlock developer. The program was designed to assist those Legacy Interlock customers who no longer receive support from the original developer.
 
Managed Network Intrusion Detection Systems
Our managed Intrusion Detection Systems use the pioneer in NIDS technology, SNORT. Snort is an open source network intrusion detection system, capable of performing real-time traffic analysis and packet logging on IP networks. It can perform protocol analysis, content searching/matching and can be used to detect a variety of attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts, and much more.
 
We bundle our NIDS services with our firewall management tiers. The firewall tier you choose determines which NIDS server you receive if you elect to purchase this service with your management tier.
 
Managed Mail and Spam Protection
Email borne viruses pose an extreme threat to your organization. Internet borne viruses such as "Loveletter" and "Nimda" propagate via email at an alarming rate causing billions of dollars worth of damage. Extreme virus attacks call for extreme levels of defense. Email protection is your key weapon in the war against viruses and a vital component in your overall virus defense strategy.
 
SSB Inc has an answer to this growing concern: TotalMail. The TotalMail server is a closed mail server client system. All mail is stored locally on the TotalMail server. Users interact with our TotalMail server through a secure socket layer (SSL) and web based client. Your users can access their mail from anywhere in the world while minimizing risk to your local or partner networks. Viruses can’t get in because the mail is never downloaded from the server. Your users would still need to manage attachment downloading. However we can work with you to determine the best virus scanning tools to deter attachment viruses.
 
Corporate Email archiving is easy because all mail is stored locally on TotalMail. We will help you develop custom scripts to address your archiving needs.
 
We also help you manage spam blocking. Automated spam blocking services mean well however, because of their uniform spam blocking lists you may lose out on a potential real business opportunity because they do general mail server blocking. This means that if one user for an ISP has been spamming others, some of these automated spam blocking services will block an entire ISP’s mail servers to prevent future spam. You could potentially lose business from a wanted contact.
 
Using SSB’s managed mail service, we will help you maintain a spam rulebase to help prevent mail from unwanted users not entire networks.
 
Heading: Network Security Training
SSB offers introductory Network Security Training which will assist you and your users in understanding the basic concepts of network security. Currently, the class covers:
bullet
Social Engineering threat management
bullet Password selection Importance
bullet Workstation management
bullet Proper virus handling
bullet Email and spam management
bullet What is a DOS attack?
bullet Basic firewall technology
bullet FTP, TELENT and RSH threats
bullet Ethereal LAB (affects of telnet and ftp)
bullet IDS LAB (“What’s in your wallet?”)
bullet Discussion
 
Heading: Centralized Security Management Systems
At SSB we understand that sometimes a totally managed solution may not be the right solution for your small or information sensitive business. We also understand that IT security can be a daunting task when one considers the many different tools and alerts those tools produce. That’s why we offer all of our servers for sale to you without a managed contract and a custom centralized tool development program.
 
We will help you install each server we offer and then work with you to design and determine a custom secure web based tool to centrally manage each server. Our staff possesses many years of database and dynamic web content design.