Coordination of computer security incidents
RCTS CERT is a response service for computer security incidents whose origin or target is RCTS.
In a more preventative component, RCTS CERT provides an alert service and produces recommendations regarding potential security risks and malicious activities.
One of the objectives of this strand is to develop a culture of Internet security.
Who is it intended for?
It is intended for the IT support and assistance centers of the institutions:
- Higher education
- Research and Development
- Non-profit institutions whose main objective is Research and Development activities.
About CERT
RCTS CERT contributes to the cybersecurity effort within the RCTS user community, having achieved international recognition in its area of activity.
In early 2011 he became a member of the FIRST (Forum of Incident Response and Security Teams) and obtained the certification Trusted Introducer in 2015, becoming the first nationally certified team.
From its creation until the end of 2014, RCTS CERT used the name CERT.PT, gradually assuming a national mission, in fact, of coordinating the response to security incidents.
After the creation of the National Cybersecurity Center, this entity assumed responsibility for the national incident response coordination component, with the FCCN unit's incident response team having since adopted the current name “RCTS CERT” reflecting its new scope of action.
What we do
In the area of prevention, RCTS CERT issues security alerts and produces recommendations regarding vulnerabilities, potential security risks and malicious activities.
Specifically, RCTS CERT offers several sub-services available to the RCTS community:
- Incident handling: Reactively, it analyzes and distributes the information necessary to mitigate the problems presented to it, safeguarding the privacy of the individuals or entities involved in accordance with full compliance with the GDPR;
- Audits to websites;
- Phishing Campaigns: Prepares, raises awareness, and trains institutional employees to deal with fraud situations via email messages, simulating a phishing campaign and subsequently conducting an awareness session.
- DNS Firewalll: Protects RCTS users from communications with malicious nodes if that communication involves name resolution.
- Vulnerability management: Produces periodic automated reports regarding computer security vulnerabilities on a set of web services/servers.
Terms of Use
The RCTS CERT team's work focuses on coordinating incident responses within the research and higher education communities within RCTS. See more information about the service.