The Leading Edge of Information Security
With over 15 years of Information Assurance (IA) experience, Carson Associates offers full IT security management program services to government agencies, commercial enterprises, and colleges and universities. Our team consists of IA experts with advanced degrees and technical certifications, including CISSP. We are experts in safeguarding information systems and can help you effectively manage risk and protect your business-critical data.
Our staff has in-depth knowledge of IT security statutory and regulatory guidance. As such, our team represents the best talent available in information security planning, policy development, risk assessment, vulnerability testing, intrusion detection, disaster recovery plans, configuration management plans, training, and incident response. Additionally, our team is uncommonly well qualified to perform a thorough reasoned audit of an agency's IT security posture and to produce quality reports.
Carson Associates offers total IT security consulting services, covering every stage of the information security life cycle. Our team enforces a lifecycle approach in structuring information security programs. This approach ensures your most important asset, your information, is protected, safeguarding its confidentiality, integrity, and availability. We use repeatable work processes and methodologies in conducting our security consulting work and have perfected our assessment process.
As IA experts we've developed a total lifecycle security model encompassing our IA competency – assess, plan, implement, manage and monitor. Carson As
sociates first assesses the maturity of your program, or "where you are," to determine information security risks and vulnerabilities. We work with you to plan and develop new security policies and procedures including security plans, corrective action plans, and disaster and recovery plans. Carson Associates has the capability to implement, manage and monitor these plans and your overall program. We are experts in all aspects of the implementation of this cycle including: certification, accreditation, and policy compliance.
