This paper is from the SANS Institute Reading Room site. Reposting is not permitted without express written permission. B.A.S.E.- A Security Assessment Methodology At a fundamental level, much like a chain, the Internet is a collection of organizations ' business networks inter-linked that form the digital infrastructure of the world. This infrastructure forms a global information grid that harnesses the potential (good and bad) for any node to access any other node worldwide. Some are personal home networks, some are small office networks, while still others are enterprise in size and scope. Regardless their size or purpose, the collective security posture of the Internet rests,... Copyright SANS Institut