Secure Build and Configuration Reviews

A build and configuration review examines whether a system's security settings match its purpose and agreed hardening baseline. ProCheckUp reviews configuration evidence and the exceptions that could weaken the intended controls.

Platforms and baselines

  • Operating system, application and platform configuration
  • The selected hardening baseline and justified exceptions
  • Access, logging, patching and data-protection settings

Secure Build and Configuration Review Services

In today's intricate digital ecosystems, the proper configuration of workstations and servers is paramount. Ensuring these devices adhere to recognized best practices and security benchmarks not only bolsters cyber security but can also be a significant line of defence against threats.

Secure Build and Configuration Review Services

The ProCheckUp Advantage:
Harnessing the benchmarks laid out by esteemed entities such as the Center for Internet Security (CIS), ProCheckUp offers meticulous build review services. Particularly for organisations employing standard builds across various departments, ensuring these builds are secure is non-negotiable.

Our extensive experience spans diverse environments, from Unix and Windows servers to various database setups. Typically integrated into on-site infrastructure assessments, our reviews guarantee a comprehensive scrutiny of your configurations.

Our Comprehensive Review Methodology:
To promise uniformity and rigor in our reviews, we've distilled a proprietary methodology. At its core, this methodology guarantees that areas like firewall rule sets and configurations are rigorously evaluated.

Secure Build and Configuration Review Services

Diving Deeper into Firewall Ruleset and Configuration:
Unlike our suite of penetration tests, our firewall reviews adopt a narrative-centric approach. With configurations and, when feasible, network diagrams supplied by clients, we conduct an exhaustive "step-through" evaluation. This scrutiny extends to the device's Access Control List(s) and associated configurations. Our reports flag any deviations from established best practices, including over-extended permissions, reliance on frail protocols, outdated firmware, or inadequate logging protocols.

A thorough combing of the firewall's Access Control Lists (ACL's) ensures only essential accesses, aligned with the organisation's functional needs, are granted.

Beyond Firewalls – Network Device Reviews:
In complement to our firewall evaluations, ProCheckUp delves into the configurations of other network devices. From switches and routers to load balancer's, we leave no stone unturned.

Secure Build and Configuration Review Services

Preparing for the engagement

Provide the build specification, platform versions and applicable configuration standard. Agree how settings will be inspected and whether a representative sample is sufficient.

Outcomes and next steps

The report should distinguish baseline deviations from observed security impact. Prioritised actions help owners correct settings and document exceptions that need a business decision.

ProCheckUp case study

ProCheckUp tested a physical Windows 11 laptop and an Azure Virtual Desktop build from agreed user and simulated elevated-access perspectives.

Read the windows 11 and azure virtual desktop build review case study.

Related services

Discuss your requirements

Contact ProCheckUp with the environment, objectives and timing you have in mind. We can discuss the appropriate scope and next steps.

Need Help?

If you have any questions about cyber security or would like a free consultation, don't hesitate to give us a call!

Our Services

Keep up to date!


For More Information Please Contact Us

Smiling Person

ACCREDITATIONS