![]() |
||
Total Website Security |
||
![]() |
||
![]() |
![]() |
|
|
How the WhiteHat Sentinel Service Works ::
WhiteHat Sentinel is a subscription-based service assuring complete website vulnerability management that is customer-controlled and expert-managed. Unlike traditional website scanning software or consultants, WhiteHat Sentinel is the only solution to combine proprietary scanning technology with custom testing by a team of leading security professionals. Below is an overview of how the Sentinel Service typically works. 1. The Customer provides a list of URLs representing websites to be tested by the WhiteHat Sentinel Service. This is defined in the service contract, and future URL changes require contract addendum. 2. The WhiteHat Security Operations Team begins configuring Sentinel to test the web sites that represent the specified host names. 3. If user credentials are required to access the websites, and we cannot self-signup, a pair of user credentials for those specific websites will need to be supplied. If a website has multiple roles, a pair of users for each role in the website will be required (e.g., user, supervisor, administrator, etc.). The customer inputs the user credentials.
4. The customer controls everything Sentinel does – start times, stop times, scheduling, retesting – all managed through the WhiteHat Sentinel Interface. Initially, the Security Operations Team will assist the customer in setting up time schedules and the authorization of the live testing. Once the times and dates are confirmed and credentials are provided, Security Operations does the rest. Vulnerabilities that are detected are rated on both severity and threat levels. This allows developers to best prioritize the remediation process.
5. The Sentinel Service begins once the scanning process is activated. But remember, the scanning process is just the first step in an in-depth cycle. WhiteHat Sentinel combines proprietary scanning technology with custom testing that is conducted by the Security Operations Team. Also, the Operations Team verifies the results of all scans – customers see only real, actionable vulnerabilities. Here are the series of tasks that go on during this initial service:
7. Once the review is complete, ongoing assessments of the website can be conducted at anytime, or anytime the websites change. Websites can be monitored via the Sentinel Interface and tests can run “on demand” with the click of a button:
8. WhiteHat Sentinel can directly configure policies on a WAF to protect against vulnerability exploits. |
WhiteHat Security Operations Support :: Q & A: Questions related to the ongoing assessment process as well as specific vulnerabilities can be reviewed at any time via phone or email with the WhiteHat Operations Team during regular business hours, which are Monday through Friday. Maintenance Windows: WhiteHat may periodically schedule a maintenance window of no more than five (5) hours per week for maintenance and upgrades to the Sentinel Service. The date and time of the maintenance window will be communicated to customers in advance.
Download this information in a PDF Format ::
|
![]() |
||
|
||
![]() |
||
![]() |
||