Social Engineering Testing

The E3 Social Engineering Testing evaluates whether adequate physical security exists and employees are properly trained to prevent unauthorized access to sensitive information. These simulations help heighten staff awareness to potential real world threats that may target them.  Sensitive information is not limited to but may include items like, backup tapes, removable media, statements, reports or paper with sensitive customer information, or physical access to the institutions Local Area Network.   Social engineering simulations are clearly designed to evaluate the institution as whole and not to single out inadequate employee performance

Process
E3's Social Engineering Testing service follows the basic process outlined below:

  1. Determine scenarios, scope, and approach with relevant staff
  2. Conduct tests (onsite, telephone, and email)
  3. Review results with staff
  4. Write report of all vulnerabilities including remediation steps
  5. Review report with internal staff 

 
Items Reviewed
E3 utilizes real-world scenarios to test proper staff responses including the following:

  • Pretexting - E3 will imitate employees to trick others in the organization into giving up sensitive data such as passwords, also included are checks to determine if the organization has proper controls to handle vendors and visitors
  • Phishing - E3 will send specially crafted emails to a random sample of employees to try to trick them into navigating to unsafe web pages and to give up sensitive data
  • Baiting - E3 will leave specially crafted CDs, USB drives, flyers, etc to determine if staff will run software on the devices or visit web pages
  • Dumpster Diving - E3 will review controls over externally accessible trash and recycling to determine if sensitive data can be obtained
  • Online - E3 will review the online profiles of staff members to determine if sensitive data is being leaked from the organization

Are you interested in E3 Services? Do you want more information or a proposal? For more information or to receive a Request For Proposal questionnaire please contact us toll-free at (866) 585-8324 or via email at webmaster@e3tech.net.

© 2001-2010 E3 Technology, Inc. All rights reserved.