Strategic Consulting

Evaluate the Effectiveness of Your Security Program

Effective information security management is more than just putting out fires. Organizations must identify how they use information to meet their strategic business goals and then determine the best ways to protect those assets throughout the information security lifecycle.

Many business leaders escalate information security from an IT responsibility to a business requirement. While the priority is higher, IT budgets haven’t grown proportionately. Meanwhile, the number of vulnerabilities increases, threats are more sophisticated, and greater regulatory oversight is a fact of life.

McAfee Strategic Security Services is a trusted information security advisor to hundreds of organizations across a wide spectrum of industries. Tight budgets can force some organizations to implement a disjointed security strategy that doesn't include all the criteria of an effective information security program. McAfee Strategic Security Services' strategic services help fill those gaps. Our Compliance services help enterprises meet increasingly complicated regulatory requirements. Comprehensive McAfee Strategic Security Services Health Checks evaluate network security to assess current risks and vulnerabilities, so companies maintain strong, enforceable security policies. With our Incident Response and Forensics services, enterprises can secure immediate crisis response and proactively prepare for a security emergency, while our series of Program Development services strengthen the foundation of any information security program.

Compliance

Critical Infrastructure Security Assessment

Identify and prioritize risks to Supervisory Control and Data Acquisition (SCADA) systems, analyze threats, and resolve vulnerabilities in your critical infrastructure. McAfee Strategic Security Services experts evaluate your security posture and develop actionable recommendations to mitigate risks from external attackers, insider threats, and automated worms.

Experian’s Independent Third-Party Assessment (EI3PA)

Meet Experian’s Independent Third-Party Assessment (EI3PA) requirements. McAfee Strategic Security Services experts apply PCI standards to ensure you meet this compliance goal.

Identity Theft Red Flags Rule Service

Meet compliance requirements and improve your organization’s overall security posture. McAfee Strategic Security Services experts help you implement an identity theft prevention program, analyzing data flow and risk, as well as developing policies for detecting, preventing, and mitigating identity theft.

Payment Card Industry (PCI) Security Solutions

Meet PCI DSS requirements. McAfee Strategic Security Services’ PCI Security Solutions strengthen data security, ensuring you meet industry requirements.

Health Checks

Data Loss Prevention Assessment

Detect and prevent the unauthorized transmission or disclosure of sensitive information. McAfee Strategic Security Services reduces your risk of exposure by identifying sensitive data copied or currently in transit from its original intended container.

Incident Management Check

Build a better, more effective incident response and management program. McAfee Strategic Security Services analyzes the gaps in your incident management program and offers recommendations to improve your emergency response protocol.

Outsourcing & Third-Party Check

Ensure that partners, outsourced providers, and other third-party companies enforce information security policies that are consistent with your own rules. Prevent data loss, network attacks, and threat outbreaks with this McAfee Strategic Security Services analysis.

Policy & Process Check

Establish and maintain well-defined, comprehensive, and enforceable information security policies that support business goals and objectives.

Regulatory & Compliance Check

Meet information security compliance requirements. McAfee Strategic Security Services assesses gaps in your organization’s regulatory and compliance status and makes next-step recommendations.

Risk Assessment

Discover the threats that are likely to have the greatest impact on your organization, and learn strategies to mitigate risk while meeting compliance goals. McAfee Strategic Security Services’ Risk Assessment identifies and analyzes the convergence of assets, threats, and vulnerabilities to present a comprehensive evaluation of your current risk profile.

Software & Application Security Check

Assess the security of your applications against hackers. McAfee Strategic Security Services evaluates your application security posture, prioritizes risks, and fortifies your defenses.

Vulnerability Management Check

Assess your vulnerability management program. McAfee Strategic Security Services analyzes the gaps in your program to ensure you have the right balance of people, process, and technology.

Incident Response & Forensics

Emergency Incident Response Services

Get immediate crisis response. McAfee Strategic Security Services' Emergency Incident Response (IR) Team investigates, assesses, and contains security breaches.

Forensic & Incident Response Education (FIRE)

Understand the techniques to identify, respond to, and recover from both insider and outsider attacks in this in-depth computer forensics course.

Forensic Investigative Services

Get immediate crisis response. McAfee Strategic Security Services' Forensic Investigation Team hunts down digital data and provides the investigative expertise and tools to answer your data breach questions.

Incident Response Partner Program

Handle your toughest security issues before they occur. Lock in incident response and forensic services at a discounted rate to ensure quick, cost-effective remediation.

Incident Response Program Development

Get expert guidance in building your incident response (IR) program. McAfee Strategic Security Services' cross-functional approach creates a custom plan for your organization that is easy to update.

SCADA Emergency Incident Response

Get immediate response to security breaches on your SCADA network. McAfee Strategic Security Services first responders identify and contain the incident, offering instant remediation.

Program Development

Application & Software Development Lifecycle

Integrate security early into the application development lifecycle to produce more secure and robust applications — at a lower cost.

Data Loss Prevention Program Development

Detect and prevent the unauthorized transmission or disclosure of sensitive corporate information with a comprehensive Data Loss Prevention program.

Policies & Process Development

Define enterprise-wide security policies and build processes to bridge the gap between security policies and technologies. McAfee Strategic Security Services creates and implements effective security processes so your company maintains a solid security posture.

Software Policies, Procedures & Standards

Define and set the security bar for applications. McAfee Strategic Security Services delivers appropriate policies, procedures, and rules, allowing an organization to adhere to security standards, investigate violations, and ensure ongoing compliance.

Strategic Security Road Map Planning

Prioritize risks and create a strategy to address the vulnerabilities that really matter.

Vulnerability Management Program Development

Manage network vulnerabilities. McAfee Strategic Security Services develops a network vulnerability management lifecycle to ensure new security weaknesses are quickly discovered and mitigated.

“We especially appreciate McAfee Foundstone's professionalism and concern for quality, as well as the vendor neutrality it consistently displays.”

Todd Berman, Director of Security and Information Protection, PMI Mortgage Insurance Co.
Next Steps
  • Frequently Asked Questions
  • RFP Template
    Foundstone has developed this Request for Proposal ("RFP") template to help organizations identify and select a quality security vendor to perform professional services work.