Project Name: Feasibility study and piloting of National Iran Health Card
Project Owner: Ministry of Health
Contract Counterpart: ASHNA Secure
Contract Date: May, 2009 to November, 2010
Description:
MOH define National Plan for Iran EHR that called "SEPAS", the Smart card is suitable media for EHR handling and security issues. The project defined for following steps:
- Review the Best Practices and Case studies.
- Feasibility study
- Conceptual Design and General Architecture
- Pilot Detail Design
- Pilot Implementation and Deployment
- Rollout
Development the plan for country wide deployment
Project Name: Internet Banking
Project Owner: Refah Bank
Contract Counterpart: ASHNA Secure
Contract Date: Sept ,2009 to oct 2009
Description:
- Provide ‘Install and configure security devices and softwares to secure Internet Banking server and services.
Project Name: VPN Service
Project Owner: Refah Bank
Contract Counterpart: ASHNA Secure
Contract Date: April 2009 to Jun 2009
Description:
The project defined for following steps:
- Install and configure Cisco PIX Firewall for Traffic control via internet.
- Configure VPN server for Provide Secure Infrastructure via Internet.
- Install and configure Cisco ACS Radius Server for provide Authentication system and Identify permission level.
- Configure DNAT services for control user Access to web server.
Project Name: Information Security management system implementation
Project Owner: Iran Mico
Contract Counterpart: ASHNA Secure
Contract Date: May, 2009 to Sept, 2009
Description:
The project defined for following steps:
- Identifying AS-IS,providing infrastructure for execute project.
- Providing Risk analysis and Risk assessment.
- Providing To-Be Report
- Providing security policy based on Iso 27001
Project Name: Providing consulting for Information Security management system implementation
Project Owner: Tabriz petrochemical
Contract Counterpart: ASHNA Secure
Contract Date: Aug ,2009 to Aug 2010
Description:
The project defined for following steps:
- Identifying AS-IS,providing infrastructure for execute project.
- Providing Risk analysis and Risk assessment.
- Gap analysis and providing finalize plan for
- Providing To-Be report
- Providing security policy based on Iso 27001
- Implementation technical and management control (the controls that no need to devices )
- Finalizing LOM(list of material) and providing RFP of implementing Detail Designs.
Project Name: Information Security management system implementation
Project Owner: Shahid Rajaee Port
Contract Counterpart: ASHNA Secure
Contract Date: May ,2009 to Jan ,2010
Description:
The project defined for following steps:
- Process recognition .
- Providing Risk analysis and Risk assessment.
- System documentation
- Security Training
- Information security management system
- Control and check of ISMS.
- Accuring ISMS international certificate (ISO 27001)
Project Name: Information Security management system implementation
Project Owner: SazehGostar Saipa
Contract Counterpart: ASHNA Secure
Contract Date: May,2009 to Jan2010
Description:
The project defined for following steps:
- As-IS Recognition and Listing information Assets.
- Providing Risk analysis and Risk assessment.
- Gap analysis and providing finalize plan for
- Providing security policy based on Iso 27001
- Implementation technical and management control (the controls that no need to devices )
- Finalizing LOM(list of material) and providing RFP of implementing Detail Designs
- Security Training
- ISO 27001 pre Audit
Project Name: Making secure adjutancy manufacture network of Iran Transfo Co.
Project Owner: Iran Transfo
Contract Counterpart: ASHNA Secure
Contract Date: April ,2009 to May 2009
Description:
The project defined for following steps:
- Existing network recognition
- Providing Security Analysis and Assessments (vulnerable test)
- Providing primitive security
- Provide security offers
Project Name: Information Security management system implementation
Project Owner: Mashhad university of medical sciences
Contract Counterpart: ASHNA Secure
Contract Date:
Description:
The project defined for following steps:
- Identifying AS-IS.
- Providing Risk analysis and Risk assessment.
- Gap analysis and providing finalize plan for
- Providing To-Be report
- Providing security policy based on Iso 27001
Project Name: Information Security management system implementation
Project Owner: Communication center of Fars Peravince
Contract Counterpart: ASHNA Secure
Contract Date: May,2009 to Feb,2010
Project Name: Penetration Testing
Project Owner: Sadad Informatics corp.
Contract Counterpart: ASHNA Secure
Contract Date: Jul,2008 to Aug ,2009
Description:
The project defined for following steps:
- Risk Assesment level A and Black Box Pentest.
- Risk Assesment level B and Black Box Pentest.
- Risk Assesment level C and Black Box Pentest.
Project Name: Information Security management system implementation
Project Owner: Iran Insurance
Contract Counterpart: ASHNA Secure
Contract Date: April,2008 to Oct ,2008
Description:
The project defined for following steps:
- Providing project plan
- Installation of information security management’s software
- Identifying AS-IS,providing infrastructure for execute project.
- Providing Risk analysis and Risk assessment.
- Gap analysis and providing finalize plan for
- Providing To-Be report
- Providing security policy based on Iso 27001
- Implementation technical and management control (the controls that no need to devices )
- Providing Requests for suggestion
- Security Training
Project Name: Support ,Upgrade ,software signature update
Project Owner: Post Bank
Contract Counterpart: ASHNA Secure
Contract Date: Aug,2008 to Aug,2009
Description:
The project defined for following steps:
- Support ,Upgrade ,Software signature Update :
- IDP
- NetScreen
- CiscoIDS
Project Name: Information Security management system implementation
Project Owner: Plant Protection Organization
Contract Counterpart: ASHNA Secure
Contract Date: Dec,2008 to Jul ,2009
Description:
The project defined for following steps:
- ISMS infrastructure nomination
- Collection massive security policies
- Survey and collection of security network requirement (providing risk analysis plan)
- Training staff and notification
- Provide security plan and choose the product
- Programming and implementation security plan
- Remove vulnerable and upgrade patch for Operating System
- Making secure network Services
- Remove DBMS vulnerable
- Remove application vulnerable
- Provide backup and support plan
Project Name: Card
Project Owner:Iran Khodro
Contract Counterpart: ASHNA Secure
Contract Date: April ,2009 to March,2010
Description:
The project defined for following steps:
- Providing conceptual Design.
- Consultant and supervision for phase 1 project.
- Feasibility study and providing the best solution for using the existing smart card in new architecture.