NSS Plus

Identity Management
Single Sign-On (SSO)
PKI

Identity is the accurate and positive identification of network users, hosts, applications, services and resources. Identity mechanisms are important because they ensure that authorized users gain access to the enterprise computing resources they need, while unauthorized users are denied access.

NSSPlus' research and development in Identity Management is focused on solutions, such as Single Sign-On (SSO), that will increase productivity by minimizing the number of user accounts and passwords required. Our current focus in this area is Public Key Infrastructure (PKI) solutions, specifically: certificate deployment mechanisms, enrollment, and Certification Authority (CA) implementation.

Increased growth in wireless technologies is driving the growth of PKI implementation. SSO tools such as NetTegrity are streamlining authentication across applications. Our R&D includes working with CA services in Microsoft Windows environments, developing different certificate enrollment templates for automated and manual enrollment based on PKCS or Base 64 encoded certs, and leveraging certificate implementation for wireless and wired network authentication.

Data Protection

Our Data Protection service offerings help safeguard your organization's most critical asset - its information. NSSPlus' key offerings within Data Protection and the services offered for each are as follows:

Application & Database Security

  • NSSPlus conducts security assessments of databases and web/custom applications.
  • Our database assessment leverages the robust AppDetective tool, A network-based, vulnerability assessment scanner that locates database applications within the infrastructure and assesses their security strength.
  • Our web application assessment leverages the power of the AppScan tool, used to conduct on-going audits to validate web application security and compliance against regulatory and organizational initiatives in the live environment.
  • For custom and vertical market applications, we offer an internally-developed assessment process

Cryptography
NSSPlus is currently developing services to assist organizations in implementing Cryptographic solutions.
Forensics & Incident Response
For incident response/management, NSSPlus' GIAC-certified and other engineers utilize our special methodology that includes procedures for identification, verification, eradication, and lessons learned.
Our approach to forensics is designed to facilitate root cause analysis and assessment of collateral damage.
We use Guidance Software's EnCase, an investigation tool recognized by the FBI as forensically sound.

Disaster Recovery & Business Continuity Planning and Management
NSSPlus works with organizations on disaster recovery and business continuity planning and management, helping to develop policies and procedures and perform or validate business continuity testing.

 

 

Services

Network Security

NSSPlus provides network security services to assist organizations in the d...

Certification & Compliance

Certification & Compliance Services Include: DIACAP NIST Risk Assessmen...

Security Management & Architecture

.

Training

NSSPlus provides training in the following areas using our own internally d...

Vulnerability Assessments

NSSPlus customers benefit from access to state-of-the-art vulnerability/ris...

Data Protection

Our Data Protection service offerings help safeguard your organization's mo...