100 people who played games and put red tape in the way of everyone else trying to do their jobs properly!
They only do that so they have more time to play games
100 people who played games and put red tape in the way of everyone else trying to do their jobs properly!
Not going to write a full blown essay again as I'm now on my iPhone, I guess the 1000 a day is what you should expect, but I guess there are some which will do a days work for a bit cheaper, however you need to also ensure they are reliable! As you could very well be wasting your money anyway if they are not.
I think what people are saying is don't expect a consultant for a couple hundred. I'd say between 600-1000+.
It also depends on area. London prices will be rather high for instance.
I applied for a position with them, I guess they dont like blackhats... ;0
My experience of large business in the past as an employee in a company with 2500 people was the IT department was a pain in the backside, 100 people who played games and put red tape in the way of everyone else trying to do their jobs properly!
My experience of large business in the past as an employee in a company with 2500 people was the IT department was a pain in the backside, 100 people who played games and put red tape in the way of everyone else trying to do their jobs properly!
Yes. I'm not an IT admin or anything.
I dont see how there is a risk if you firewall, block ports and lock it down tight enough to pass PCI-DSS scanning for the banks approval and the other measures I mentoned above. With that lot I fail to see where the risk is, without physically breaking into the premises.
Not really de-railing the thread, the Op's question was answered long before I popped in!
I know all about PCI-DSS, we are scanned reguarly for both our office network and our websites
DJMK4 - thanks for explaining a bit more, thats all I was after really. I'm not questioning my abilities in this field, I dont have any more than most idiots who have played with computers for 30 years. I did however set up our router, firewall, IPSEC VPN, NAT and routing table - all work ok and have not caused a problem yet and pass the PCI-DSS scans we get so I guess are secure too
...
(if you are running linux then not knowing about back-porting of RHEL patches is normally a big fail in most audit reports I've seen, i.e. you're running x.y but the audit says you should be running x.z ... but you're x.y actually has the security fix from x.z back-ported to its patch level but is still being reported as x.y for compatibility reasons)
I'm sorry but if you think that PCI-DSS is all about just the network elements then you certainly don't know "all about" it.
some real jokers out there be careful, we regually have customers send guys in to test our kit. Run some scripts on there laptops come up with stupid issues (modbus not secure, no **** sherlock) then put in a bill just short of 5 figures to them.
^
this.
Someone mentioned GSS, pfft. Utter garbage. Had them in 3 times in 3 separate companies on 3 completely different projects. Sent complete retards that could never give me a straightforward answer and literally spoke as if reading from a technical summary sheet.
Unfortunately some of us are not the final decision makers and do not hold the chequebooks! We have to leave that to so called management