Performing a Successful Unix Audit
Richard Williams · Computer Fraud & Security · 2003
With today’s heightened awareness on internal Unix/Linux security, many enterprises have either created internal security audits, or hired external firms to audit existing practices and installations. Creating a comprehensive security policy requires a thorough understanding of the existing asset organization, applications, system and network infrastructure, and risk assessment. In today’s enterprises, the emergence of business security teams increasingly crosses traditional “org-chart” business dynamics to specifically address security issues.