<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.securityprocedure.com" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>Checklists</title>
 <link>http://www.securityprocedure.com/tag/checklists</link>
 <description>The taxonomy view with a depth of 0.</description>
 <language>en</language>
<item>
 <title>Complete list of free Web Application Security Scanner</title>
 <link>http://www.securityprocedure.com/complete-list-free-web-application-security-scanner</link>
 <description>&lt;p&gt;Complete list of Free Download Open Source Web Application Security Scanner Tools&lt;/p&gt;
&lt;p&gt;&lt;b&gt;1. Grabber by Romain Gaucher&lt;/b&gt;&lt;br /&gt;
&lt;a href=&quot;http://rgaucher.info/beta/grabber/&quot; title=&quot;http://rgaucher.info/beta/grabber/&quot;&gt;http://rgaucher.info/beta/grabber/&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Grabber is a web application scanner. Basically it detects some kind of vulnerabilities in your website. Grabber is simple, not fast but portable and really adaptable. This software is designed to scan small websites such as personals, forums etc. absolutely not big application: it would take too long time and flood your network. Grabber is a very small application (currently 2.5kLOC in Python) and the first reason of this scanner is to have a &quot;minimum bar&quot; scanner for the Samate Tool Evaluation Program at NIST. Grabber is also for me a nice way to do some automatics verification on websites/scripts I do. Users should know some things about web vulnerabilities before using this soft because it only tell you what vulnerability it is... not how to solve it. &lt;/p&gt;
&lt;p&gt;&lt;b&gt;2. Grendel-Scan by David Byrne and Eric Duprey&lt;/b&gt;&lt;br /&gt;
&lt;a href=&quot;http://grendel-scan.com/&quot; title=&quot;http://grendel-scan.com/&quot;&gt;http://grendel-scan.com/&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Grendel-Scan is an open-source web application security testing tool. It has automated testing module for detecting common web application vulnerabilities, and features geared at aiding manual penetration tests. The only system requirement is Java 5; Windows, Linux and Macintosh builds are available.&lt;/p&gt;
&lt;p&gt;&lt;b&gt;3. Paros by Chinotec&lt;/b&gt;&lt;br /&gt;
&lt;a href=&quot;http://parosproxy.org/&quot; title=&quot;http://parosproxy.org/&quot;&gt;http://parosproxy.org/&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Paros is for people who need to evaluate the security of their web applications. It is free of charge and completely written in Java. Through Paros&#039;s proxy nature, all HTTP and HTTPS data between server and client, including cookies and form fields, can be intercepted and modified.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.securityprocedure.com/complete-list-free-web-application-security-scanner&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.securityprocedure.com/complete-list-free-web-application-security-scanner#comments</comments>
 <category domain="http://www.securityprocedure.com/tag/checklists">Checklists</category>
 <category domain="http://www.securityprocedure.com/tag/download">Download</category>
 <category domain="http://www.securityprocedure.com/tag/mobile-security">Mobile Security</category>
 <category domain="http://www.securityprocedure.com/tag/security">Security</category>
 <category domain="http://www.securityprocedure.com/tag/wireless-security">Wireless Security</category>
 <pubDate>Sat, 12 Dec 2009 14:00:11 -0800</pubDate>
 <dc:creator>root</dc:creator>
 <guid isPermaLink="false">300 at http://www.securityprocedure.com</guid>
</item>
<item>
 <title>ITIL management checklist for the optimising phase</title>
 <link>http://www.securityprocedure.com/itil-management-checklist-optimising-phase</link>
 <description>&lt;p&gt;&lt;IMG SRC=&quot;http://img385.imageshack.us/img385/9560/mgmtoptimizingchecklistyf0.jpg&quot; alt=&quot;ITIL Management Checklist&quot;&gt;&lt;/p&gt;
&lt;h3&gt;Configuration Management&lt;/h3&gt;
&lt;p&gt;As the application is reviewed within the optimise phase, is the CMDB used to assist with the review?&lt;/p&gt;
&lt;p&gt;Are Configuration Management personnel involved in the optimisation process, including providing advice in the use of and updating the inventory?&lt;/p&gt;
&lt;h3&gt;Change Management&lt;/h3&gt;
&lt;p&gt;As modifications are identified within this phase, does the team use the Change Management system to coordinate the changes?&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.securityprocedure.com/itil-management-checklist-optimising-phase&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.securityprocedure.com/itil-management-checklist-optimising-phase#comments</comments>
 <category domain="http://www.securityprocedure.com/tag/checklists">Checklists</category>
 <category domain="http://www.securityprocedure.com/tag/documents">Documents</category>
 <category domain="http://www.securityprocedure.com/tag/itil">ITIL</category>
 <enclosure url="http://www.securityprocedure.com/files/management-checklist-optimising-phase.xls" length="15872" type="application/vnd.ms-excel" />
 <pubDate>Thu, 01 Jan 2009 13:21:49 -0800</pubDate>
 <dc:creator>root</dc:creator>
 <guid isPermaLink="false">289 at http://www.securityprocedure.com</guid>
</item>
<item>
 <title>Download Backup Question Checklist Template</title>
 <link>http://www.securityprocedure.com/download-backup-question-checklist-template</link>
 <description>&lt;p&gt;&lt;IMG SRC=&quot;http://img384.imageshack.us/img384/4530/backupquestionchecklistvj3.png&quot;&gt;&lt;br /&gt;
Below some question audit checklist for backup process:&lt;/p&gt;
&lt;p&gt;What SLAs are required for this server?&lt;br /&gt;
What is the role of this server? The role will have a direct impact on the backup options and requirements for it, and will directly feed into the remaining questions to be considered for servers. Sample server roles might include production, development, test, and quality  assurance (QA).&lt;br /&gt;
Are there any special backup handling requirements for applications on the server?&lt;br /&gt;
Are there any special backup handling requirements for data on the server?&lt;br /&gt;
What times can the server be backed up?&lt;br /&gt;
What times are backups not allowed to occur?&lt;br /&gt;
What types of backups should this server receive? At minimum, most organizations will need to evaluate the necessity of the following:&lt;br /&gt;
Daily: What rotation between fulls, differentials, and incrementals are required?&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.securityprocedure.com/download-backup-question-checklist-template&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.securityprocedure.com/download-backup-question-checklist-template#comments</comments>
 <category domain="http://www.securityprocedure.com/tag/backup-restore">Backup Restore</category>
 <category domain="http://www.securityprocedure.com/tag/checklists">Checklists</category>
 <category domain="http://www.securityprocedure.com/tag/documents">Documents</category>
 <enclosure url="http://www.securityprocedure.com/files/BackupQuestionchecklist.xls" length="19456" type="application/vnd.ms-excel" />
 <pubDate>Mon, 01 Dec 2008 13:43:49 -0800</pubDate>
 <dc:creator>root</dc:creator>
 <guid isPermaLink="false">284 at http://www.securityprocedure.com</guid>
</item>
<item>
 <title>Download Simple Network Vulnerability Assessment Checklist</title>
 <link>http://www.securityprocedure.com/download-simple-network-vulnerability-assessment-checklist</link>
 <description>&lt;p&gt;&lt;IMG SRC=&quot;http://img221.imageshack.us/img221/2744/networkassessmentchecklot9.png&quot; align=&quot;left&quot; hspace=&quot;5&quot;&gt;Network Vulnerability Assessment Checklist is a simple checklist for your Vulnerability Assessment Checklist. This checklist contain 100 controls that every security professional / auditor could used during walkthrough process on the network infrastructure.&lt;/p&gt;
&lt;p&gt;The strength of this checklist is could get a big picture of the current network security status. However some of the controls is lack of focus. At least you can use this simple checklist as reference for your assessment. And this checklist would be more useful if its combine with others control that unique to your environment.&lt;/p&gt;
&lt;p&gt;Any opinion with this? hope it could be useful for you. Enjoy, and don&#039;t forget to give us some comments&lt;/p&gt;
</description>
 <comments>http://www.securityprocedure.com/download-simple-network-vulnerability-assessment-checklist#comments</comments>
 <category domain="http://www.securityprocedure.com/tag/checklists">Checklists</category>
 <category domain="http://www.securityprocedure.com/tag/documents">Documents</category>
 <enclosure url="http://www.securityprocedure.com/files/Network Assessment Checklist.xls" length="25088" type="application/vnd.ms-excel" />
 <pubDate>Thu, 06 Nov 2008 22:49:56 -0800</pubDate>
 <dc:creator>root</dc:creator>
 <guid isPermaLink="false">278 at http://www.securityprocedure.com</guid>
</item>
<item>
 <title>Download Free E-mail virus attack checklist</title>
 <link>http://www.securityprocedure.com/download-free-e-mail-virus-attack-checklist</link>
 <description>&lt;p&gt;The next time your organization gets hit with an e-mail virus, don&#039;t panic. Stay calm and use this six-part checklist to follow the steps needed to identify the virus, remove it, and make notes that will help you avoid future infections.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://downloads.techrepublic.com.com/abstract.aspx?&amp;amp;kw=checklist&amp;amp;docid=172578&quot;&gt;Download Page&lt;/a&gt;&lt;/p&gt;
</description>
 <comments>http://www.securityprocedure.com/download-free-e-mail-virus-attack-checklist#comments</comments>
 <category domain="http://www.securityprocedure.com/tag/checklists">Checklists</category>
 <category domain="http://www.securityprocedure.com/tag/documents">Documents</category>
 <pubDate>Sat, 16 Aug 2008 18:56:51 -0700</pubDate>
 <dc:creator>root</dc:creator>
 <guid isPermaLink="false">264 at http://www.securityprocedure.com</guid>
</item>
<item>
 <title>Download Free Network documentation checklist</title>
 <link>http://www.securityprocedure.com/download-free-network-documentation-checklist</link>
 <description>&lt;p&gt;Creating documentation is time-consuming and boring. It&#039;s also essential to maintaining the health and continuity of your Windows network. If your network documentation is weak (or nonexistent), recording the key details will be well worth your time. This checklist will help guide you through the process of documenting your physical network, servers and server apps, and Active Directory configuration. This popular checklist has been reformatted for ease of use, and it also includes a collection of links to a variety of TechRepublic&#039;s other network documentation resources.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://downloads.techrepublic.com.com/abstract.aspx?&amp;amp;kw=checklist&amp;amp;docid=172347&quot;&gt;Download Page&lt;/a&gt;&lt;/p&gt;
</description>
 <comments>http://www.securityprocedure.com/download-free-network-documentation-checklist#comments</comments>
 <category domain="http://www.securityprocedure.com/tag/checklists">Checklists</category>
 <category domain="http://www.securityprocedure.com/tag/documents">Documents</category>
 <pubDate>Sat, 16 Aug 2008 18:55:15 -0700</pubDate>
 <dc:creator>root</dc:creator>
 <guid isPermaLink="false">263 at http://www.securityprocedure.com</guid>
</item>
<item>
 <title>Download Free IT and Office relocation checklist</title>
 <link>http://www.securityprocedure.com/download-free-it-and-office-relocation-checklist</link>
 <description>&lt;p&gt;Whether you&#039;re helping a client tackle a move or relocating to a new building, you&#039;ll need to implement a system to help you get organized and avoid potential disasters. This checklist, based on suggestions submitted by TechRepublic members, covers questions, issues, and advice relating to office relocations.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://downloads.techrepublic.com.com/abstract.aspx?docid=173935&quot;&gt;Download Page&lt;/a&gt;&lt;/p&gt;
</description>
 <comments>http://www.securityprocedure.com/download-free-it-and-office-relocation-checklist#comments</comments>
 <category domain="http://www.securityprocedure.com/tag/checklists">Checklists</category>
 <category domain="http://www.securityprocedure.com/tag/documents">Documents</category>
 <pubDate>Sat, 16 Aug 2008 18:47:49 -0700</pubDate>
 <dc:creator>root</dc:creator>
 <guid isPermaLink="false">262 at http://www.securityprocedure.com</guid>
</item>
<item>
 <title>Download free Firewall failure plan checklist</title>
 <link>http://www.securityprocedure.com/download-free-firewall-failure-plan-checklist</link>
 <description>&lt;p&gt;Download Free Firewall failure plan checklist. Whether your firewall is hardware- or software-based it&#039;s a terrific target for experienced hackers and at some point it will fail. How you prepare for that failure and the actions you take following the failure are critical. This comprehensive Firewall failure plan checklist contains two sections: a checklist of critical information to have on hand and a list of techniques for troubleshooting both operational and non-operational firewall failures.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://downloads.techrepublic.com.com/abstract.aspx?docid=173133&quot;&gt;Download Page&lt;/a&gt;&lt;/p&gt;
</description>
 <comments>http://www.securityprocedure.com/download-free-firewall-failure-plan-checklist#comments</comments>
 <category domain="http://www.securityprocedure.com/tag/checklists">Checklists</category>
 <category domain="http://www.securityprocedure.com/tag/documents">Documents</category>
 <pubDate>Sat, 16 Aug 2008 18:37:51 -0700</pubDate>
 <dc:creator>root</dc:creator>
 <guid isPermaLink="false">261 at http://www.securityprocedure.com</guid>
</item>
<item>
 <title>100 Network Assessment Checklist</title>
 <link>http://www.securityprocedure.com/100-network-assessment-checklist</link>
 <description>&lt;ol&gt;
&lt;li&gt;Unique user ID and confidential password required&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;Additional identification required for remote access&lt;/li&gt;
&lt;li&gt;&amp;quot;Help&amp;quot; screen access available to logged-on users only&lt;/li&gt;
&lt;li&gt;Last session date and time message back to user at sign-on time&lt;/li&gt;
&lt;li&gt;Exception reports for disruptions in either input or output&lt;/li&gt;
&lt;li&gt;Session numbers for users/processors that are not constantly logged in&lt;/li&gt;
&lt;li&gt;Notification to users of possible duplicate messages&lt;/li&gt;
&lt;li&gt;Threshold of errors and consequential retransmission on the network related to management via automatic alarms&lt;/li&gt;
&lt;li&gt;Encryption requirements&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/li&gt;
&lt;li&gt;Encryption key management controls&lt;/li&gt;
&lt;li&gt;Message Authentication Code requirements for nonencrypted sensitive data transmission&lt;/li&gt;
&lt;li&gt;System authentication at session start-up (wiretap controls)&lt;/li&gt;
&lt;li&gt;Confirmation of host log-off to prevent line grabbing&lt;/li&gt;
&lt;li&gt;Downloading controls for connected intelligent workstations&lt;/li&gt;
&lt;li&gt;User priority designation process&lt;/li&gt;
&lt;li&gt;Transaction handling for classified communications&lt;/li&gt;
&lt;li&gt;Trace and snapshot facilities requirements&lt;/li&gt;
&lt;li&gt;Log requirements for sensitive messages&lt;/li&gt;
&lt;li&gt;Alternate path requirements between nodes&lt;/li&gt;
&lt;li&gt;Contingency plans for hardware as well as all usual system requirements&lt;/li&gt;
&lt;li&gt;Storage of critical messages in redundant locations&lt;/li&gt;
&lt;li&gt;Packet recovery requirements&lt;/li&gt;
&lt;li&gt;Physical access for workstations when units are not in use&lt;/li&gt;
&lt;p&gt;&lt;a href=&quot;http://www.securityprocedure.com/100-network-assessment-checklist&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.securityprocedure.com/100-network-assessment-checklist#comments</comments>
 <category domain="http://www.securityprocedure.com/tag/checklists">Checklists</category>
 <category domain="http://www.securityprocedure.com/tag/documents">Documents</category>
 <category domain="http://www.securityprocedure.com/tag/risk-assessment">Risk Assessment</category>
 <category domain="http://www.securityprocedure.com/tag/security">Security</category>
 <pubDate>Tue, 06 May 2008 08:32:45 -0700</pubDate>
 <dc:creator>root</dc:creator>
 <guid isPermaLink="false">131 at http://www.securityprocedure.com</guid>
</item>
<item>
 <title>Audit Committees: A Self-Assessment Checklist</title>
 <link>http://www.securityprocedure.com/audit-committees-self-assessment-checklist</link>
 <description>&lt;p&gt;&lt;b&gt;What is an Audit Committee?&lt;br /&gt; &lt;/b&gt;The Audit Committee is regarded as the cornerstone of the Board&amp;rsquo;s oversight process and has critical governance responsibilities related not only to public financial reporting, internal controls, and management of financial risks, but also to the oversight of an organization&amp;rsquo;s values and ethics&lt;/p&gt;
&lt;p&gt; Audit Committees need to ensure that all those involved in the financial reporting and internal controls process understand their roles, and carry out their responsibilities in an efficient and effective manner Hence, Audit Committees operate at the junction between the Board of Directors and its external auditors, its internal auditors, and its executive management&lt;/p&gt;
&lt;p&gt; Audit Committees form many of their judgments of management&amp;rsquo;s performance based largely on the information and feedback obtained from internal and external auditors. Hence, developing an effective working relationship with both external and internal auditors is essential for an Audit Committee to effectively fulfill its oversight responsibilities&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.securityprocedure.com/audit-committees-self-assessment-checklist&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.securityprocedure.com/audit-committees-self-assessment-checklist#comments</comments>
 <category domain="http://www.securityprocedure.com/tag/audit">Audit</category>
 <category domain="http://www.securityprocedure.com/tag/checklists">Checklists</category>
 <category domain="http://www.securityprocedure.com/tag/documents">Documents</category>
 <pubDate>Mon, 21 Apr 2008 01:21:52 -0700</pubDate>
 <dc:creator>root</dc:creator>
 <guid isPermaLink="false">122 at http://www.securityprocedure.com</guid>
</item>
</channel>
</rss>
