<html xmlns:v="urn:schemas-microsoft-com:vml" xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta name="Generator" content="Microsoft Word 15 (filtered medium)">
<!--[if !mso]><style>v\:* {behavior:url(#default#VML);}
o\:* {behavior:url(#default#VML);}
w\:* {behavior:url(#default#VML);}
.shape {behavior:url(#default#VML);}
</style><![endif]--><style><!--
/* Font Definitions */
@font-face
{font-family:"Cambria Math";
panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0cm;
margin-bottom:.0001pt;
font-size:12.0pt;
font-family:"Calibri",sans-serif;
mso-fareast-language:EN-US;}
a:link, span.MsoHyperlink
{mso-style-priority:99;
color:#0563C1;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{mso-style-priority:99;
color:#954F72;
text-decoration:underline;}
p.msonormal0, li.msonormal0, div.msonormal0
{mso-style-name:msonormal;
mso-margin-top-alt:auto;
margin-right:0cm;
mso-margin-bottom-alt:auto;
margin-left:0cm;
font-size:11.0pt;
font-family:"Calibri",sans-serif;}
span.EmailStyle18
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.EmailStyle19
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.EmailStyle20
{mso-style-type:personal-reply;
font-family:"Calibri",sans-serif;
color:windowtext;}
.MsoChpDefault
{mso-style-type:export-only;
font-size:10.0pt;}
@page WordSection1
{size:612.0pt 792.0pt;
margin:72.0pt 72.0pt 72.0pt 72.0pt;}
div.WordSection1
{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
</head>
<body lang="EN-AU" link="#0563C1" vlink="#954F72">
<div class="WordSection1">
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt;mso-fareast-language:EN-GB">Hi All,<o:p></o:p></span></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt;mso-fareast-language:EN-GB"><o:p> </o:p></span></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt;mso-fareast-language:EN-GB">Thanks for all the recommendations, much appreciated. I’ve got a number of options to look at now, and lots of discussions to be had.<o:p></o:p></span></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt;mso-fareast-language:EN-GB"><o:p> </o:p></span></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt;mso-fareast-language:EN-GB">Thanks.<o:p></o:p></span></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt;mso-fareast-language:EN-GB"><o:p> </o:p></span></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt;mso-fareast-language:EN-GB">Rhys Hanrahan<br>
Chief Information Officer<br>
Nexus One Pty Ltd<o:p></o:p></span></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt;mso-fareast-language:EN-GB"><br>
E: <a href="mailto:support@nexusone.com.au" target="_blank">support@nexusone.com.au</a><br>
P: +61 2 9191 0606<br>
W: http://www.nexusone.com.au/<br>
M: </span><span style="font-size:11.0pt;color:black;mso-fareast-language:EN-GB">PO Box A356 Sydney South, NSW 1235</span><span lang="EN-GB" style="font-size:11.0pt;mso-fareast-language:EN-GB"><br>
A: Level 12 227 Elizabeth St, Sydney NSW 2000<br>
<br>
<img border="0" width="280" height="73" style="width:2.9166in;height:.7604in" id="_x0000_i1026" src="cid:image001.jpg@01D5B035.0DA637D0" alt="ttp://quintus.nexusone.com.au/~rhys/nexus1-email-sig.jpg"></span><span style="font-size:11.0pt;color:black;mso-fareast-language:EN-GB"><o:p></o:p></span></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt"><o:p> </o:p></span></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt"><o:p> </o:p></span></p>
<div style="border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0cm 0cm 0cm">
<p class="MsoNormal"><b><span style="color:black">From: </span></b><span style="color:black">AusNOG <ausnog-bounces@lists.ausnog.net> on behalf of Rhys Hanrahan <rhys@nexusone.com.au><br>
<b>Date: </b>Wednesday, 11 December 2019 at 1:27 pm<br>
<b>To: </b>"ausnog@lists.ausnog.net" <ausnog@lists.ausnog.net><br>
<b>Subject: </b>[AusNOG] Suggestions for security audit</span><span style="color:black;mso-fareast-language:EN-GB"><o:p></o:p></span></p>
</div>
<div>
<p class="MsoNormal"><span style="font-size:11.0pt"><o:p> </o:p></span></p>
</div>
<p class="MsoNormal" style="background:white"><span style="font-size:11.0pt;color:black;mso-fareast-language:EN-GB">Hi All,</span><o:p></o:p></p>
<p class="MsoNormal" style="background:white"><span style="font-size:11.0pt;color:black;mso-fareast-language:EN-GB"> </span><o:p></o:p></p>
<p class="MsoNormal" style="background:white"><span style="font-size:11.0pt;color:black;mso-fareast-language:EN-GB">Sorry for the noise, but I am looking for some suggestions in terms of a security company who can perform an audit/testing, with some sort of
certification for some new infrastructure we are due to setup. I am hoping there’s some people who can give me some off-list replies to point me in the right direction in terms of some companies to speak to.</span><o:p></o:p></p>
<p class="MsoNormal" style="background:white"><span style="font-size:11.0pt;color:black;mso-fareast-language:EN-GB"> </span><o:p></o:p></p>
<p class="MsoNormal" style="background:white"><span style="font-size:11.0pt;color:black;mso-fareast-language:EN-GB">For some context: We are in the process of providing a dedicated hosting setup for a customer who will be hosting a private website. The project
is due to start in mid-late Janauary and the site itself is only small, but the customer’s board is going to require that we provide some level of certification or assurance that the infrastructure will be secure. So the best way I can see of providing this
is an independent review/test of the infrastructure. They are coming from an environment that has both ISO 27001 and SOC 2 compliance, and although I feel this is overkill for the size of the project, we do need to give them something.
</span><o:p></o:p></p>
<p class="MsoNormal" style="background:white"><span style="font-size:11.0pt;color:black;mso-fareast-language:EN-GB"> </span><o:p></o:p></p>
<p class="MsoNormal" style="background:white"><span style="font-size:11.0pt;color:black;mso-fareast-language:EN-GB">Thanks for any recommendations.</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt;color:black;mso-fareast-language:EN-GB"><br>
Rhys Hanrahan<br>
Chief Information Officer<br>
Nexus One Pty Ltd</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-GB" style="font-size:11.0pt;color:black"><br>
E: <a href="mailto:support@nexusone.com.au" target="_blank">support@nexusone.com.au</a><br>
P: +61 2 9191 0606<br>
W: http://www.nexusone.com.au/<br>
M: PO Box A356 Sydney South, NSW 1235<br>
A: </span><span lang="EN-GB" style="font-size:11.0pt">Level 12 227 Elizabeth St<span style="color:black">, Sydney NSW 2000<br>
<br>
<img border="0" width="280" height="73" style="width:2.9166in;height:.7604in" id="Picture_x0020_1" src="cid:image002.jpg@01D5B035.0DA637D0" alt="ttp://quintus.nexusone.com.au/~rhys/nexus1-email-sig.jpg"></span></span><o:p></o:p></p>
</div>
</body>
</html>