Overview
The EOSC EU Node Lot1 Security Team monitors the services provided by the Lot1 service providers to audit their security and identify vulnerabilities and misconfigurations, reducing the risk of a security breach.
The security audits are conducted using automated security tools to scan and test systems for vulnerabilities, providing threat detection to identify and mitigate risks as they are identified.
This also covers compliance monitoring, helping the service providers meet security standards and regulatory requirements.
The security audits are only conducted on endpoints that are covered by an agreement.
How is it done?
Security tests have no impact on systems' performance; to ensure the scan is as minimally invasive as possible, the number of requests sent per second is limited
- The service are initially scanned for open ports.
- The services running on the endpoints are then identified, and their configuration is verified.
- Finally, the identified services are scanned for known software vulnerabilities.
- The security team reviews the findings and follows with the stakeholders as deemed necessary.
Contact Us
If you have any questions, please reach out to the lot 1 security team.
Reporting a security incident
If you need to report a security incident affecting, or likely to affect, the EOSC EU Node, please contact the EOSC EU Node CSIRT .