In: Computer Science
Use the Internet to research IDS and Vulnerability Management and Assessment Tools. Find at least six (6) tools for each security tool category, with a minimum of three (3) Open Source and three (3) Commercial for each category of tools (6 IDS and 6 Vulnerability Management).
write a paragraph explaining which tool you prefer or will recommend for your company (one statement for each category, open source vs commercial). What is your logic behind your choice?
IDS (Intrusion Detection System) tools :
S. No | Open Source | Commercial |
1 | OSSEC (Open Source Security) | Snort |
2 | SGuil | SolarWinds Security Event Manager |
3 | AIDE (Advanced Intrusion Detection Environment) | Splunk |
Factors influencing choice of IDS tools:
For open source solutions:
For commercial solutions:
The choice for the best IDS tool for any organisation will depend on mix of above factors. It is recommended to judge each tool on the above parameters and choose a mix of tools which provides maximum features and maximum coverage on host as well as network.
Vulnerability Management and Assessment Tools :
S. No | Open Source | Commercial |
1 | Nmap | VeraCode |
2 | Wireshark | Qualys FreeScan |
3 | Metasploit | PenTest WebServe Vulnerability Scanner |
Factors influencing choice of Vulnerability Management and Assessment tools:
For open source solutions:
For commercial solutions:
The choice for the best Vulnerability Management tool for any organisation will depend on mix of above factors. It is recommended to judge each tool on each of the above criteria and evaluate which tool will cover maximum types of vulnerabilities.