System Health Service
"System Health" is a service of the IT Services that continuously and comprehensively monitors IT systems in the ETH Zurich network and evaluates them with regard to their IT security configuration, risk exposure and compliance with ETH-specific IT requirements (guidelines).
Vulnerabilities in systems are detected with the help of vulnerability scanners that scan computers from the network perspective (network scan) or on the system itself (agent scan). Feedback on vulnerabilities is provided to specific audiences and entities in the form of reports and, in certain cases, access to an application dashboard for active assessment.
The System Health Service provides:
- Better visibility into the risks and vulnerabilities that exist on devices in a network zone.
- Recommendations for corrective action to keep IT systems compliant and reduce costs and reputational damage from IT policy violations.
- Identification of known security risks before attackers exploit them.
- A transparent inventory of network devices (assets), enabling a better understanding of complexity and vulnerabilities.
- Zone managers the ability to assess their own infrastructure, facilitating the transfer of knowledge and responsibility within the organization.
- ISL/ISO for their network zones
- Selected network zone managers (e.g. VPZ Owner)
- IT Management (Section Head of IT Services, CISEC)
- Chief Information Security Officer of ETH Zurich (CISO)
The service is centrally financed by the IT Services and can be used by all organizational units of ETH Zurich free of charge.
Usually, the responsible zone managers are contacted by the service owner to integrate their infrastructure into the System Health Service. Contact the IT security manager responsible for your area (e.g. ISL, ISG, section manager, etc.) if you have any uncertainties regarding the onboarding of your zone/systems. Otherwise, you can contact the service owner at systemhealth[at]id.ethz.ch.
More information about this service can be found by ETH members under:
https://unlimited.ethz.ch/display/itwdb/ITS+System+Health+Service