open panel

Business Security

which assumes knowledge of the virus detection and the overall security and is specifically geared for bona fide IT security experts, looking at issues such as: ? ¡History of malware and phishing. Obviously this is a step beyond the comparatively and conceptually simple virus workshops of the 1990.

Setting up a secure test environment for testing and analyzing malware ? ¡Secure distribution and exchange of malware samples ? ¡Practical analysis of malware ? ¡Emulation of a complex network environment in a laboratory (See Chapter 9 on? GDIY malware analysis? H for our own thoughts on these topics.) Symantec In contrast, Binary Research International? Fs? GSymantec Antivirus Corporate Edition training? H as described in www.savtraining.com, is a two-day workshop that uses hands-on sessions to Work for the Symantec Certified Specialist / Small Business Security checks. It includes: ? ¡Planning, deployment and management of Symantec Antivirus (irritating, both Sophos and Symantec sometimes refer to as their products SAV) ? ¡Configuration ? ¡Incident Response ? ¡Enterprise Management Programs Symantec? Fs own virtual academy offers? Gstate-of-the-art online learning environment? H Help webcasts, hands-on lab sessions, on-demand training modules and mentoring (Www.symantec.com / de / de / enterprise / training / virtual_academy / index.jsp). A recent Course? gSymantec AntiVirus 10.x? h takes three days and includes the implementation and Management of Symantec Anti-Virus Network update management, enforcement of Virus / spyware / adware scan on the company and the management of remote users.This is described as? gfirst step towards addressing the configuration and management of a Anti-virus network.? h wasn Unfortunately, a more detailed description of the course? ft available on the Web site at this time. www.syngress.com Power and AV Wannabes customers. Chapter 1 37 Should a manufacturer-independent Malware Specialist certification? Pretty soon after AVIEN was founded when Ken Bechtel noted in his 2003 paper for the Virus Bulletin Conference on? Ganti-virus support, the need for the maturation of a career field? H Many members were eager to develop or contribute actively to the certification project Anti-virus experts. Adherence to a code of conduct as the Code of Conduct was AVIEN in Figure 1.7 seen as one of the conditions for such certification. In fact, this is also the case for more Generalist security certifications such as CISSP, for instance, and while it? fs not unusual to oblige artisans to be associated with some form of code of practice, strict compliance line a code of ethics is often seen as a conditio sine qua non for inclusion in one of the professions. www.syngress.com 38 Chapter 1 Customer flow and AV Wannabes Figure 1.7 AVIEN Code of Conduct Unfortunately, while many members signed AVIEN to the code, it met with less Enthusiasm in other anti-virus community, where many researchers in industry, it was be too restrictive. Levels of certification and Associated Knowledge Bases The AVIEN Anti-Virus Specialist Certification Project should establish acceptable Criteria for independent certified anti-virus professionals, with the approval of AV vendors and corporate governance, through the creation of training and testing programs. To this end, the following levels of certification and knowledge have been proposed, and a collection collected from test material (reproduced and adapted here with permission of Ken Bechtel Team Anti-Virus.) Certified Anti-Virus Administrator (CAVA) This has been indicted as the entry-level certification for each planned Management of an organization? fs AV defenses. Hands-on manipulation of viruses ? ¡Detect virus symptoms ? ¡Isolate virus ? ¡Replicating virus ? ¡To submit evaluation ? ¡Clean boot, file, macro and script virus infections Managing an AV system ? ¡Install anti-virus product for servers and workstations ? ¡Optimizing AV comply with Best Practices ? ¡Distribution of updates ? ¡Trouble Shooting AV Server and Workstation Installation ? ¡React to Hoaxes ? ¡Comment on legitimate virus warning The development of an audiovisual policy and strategy This category is based on an understanding of policy implementation and best practices. Certified Anti-virus specialist (CAVS) A CAVS would have the same basic skills as an administrator, but would be expected