|
|
|
Automated IT Compliance Reporting
Compliance is a process.
Congruity Inspector offers a consistent, cost-effective process for
managing and documenting regulatory compliance efforts. Easy to use and
fully-automated, Inspector logs all communication paths and content
crossing the network gateway, the greatest area of compliance risk.
This full accounting documents and highlights internal controls and
policy status and how the network is being used. It provides
full-disclosure into exposures, breach or abuses enabling stakeholders
to assess where they stand and take proactive measures to bring
operations into compliance. This process addresses multiple compliance
directives:
- Access control
- Data leakage prevention
- Network/system Scanning
- Malware
- Offensive content
- System breach
- Misuse/abuse
- Firewall rules (inbound and outbound policy)
Congruity Inspector's offers unique features
that provide greater visibility and more useful compliance information
than other solutions.
- Device-independent logging. Off-box
data logging, collected directly from network, provides objective
verification of control and usage status.
- Full Accounting: passively monitors
every inbound/outbound port and logs every packet.
- Content analysis: Performs content
analysis on each packet to identify words contained in Web pages, Email
and file attachments. All compliance regulations are designed to
protect proprietary and confidential information. Inspector provides
content visibility that centralized log aggregation and security event
management systems do not.
- Automated reporting and operation:
Provides separation of duty function and documents proactive compliance
monitoring process.
Much has been written by
compliance vendors regarding what is needed to meet regulations. Citing
exhaustive lists of features is no assurance that a solution ensures
compliance. Only a full accounting, content visibility and
device-independent logging provides the objective view management needs
to address the following foundational requirements for all regulatory
compliance standards:
- Ensure the security and confidentiality of customer
records and information
- Protect against any anticipated threats or hazards to
the security or integrity of such records
- Protect against unauthorized access to or use of such
records or information
Congruity Inspector addresses these processes in a totally objective,
fully-automated manner. User's can gain
total visibility into perimeter threats for each endpoint,
proactively documenting control status and identifying the source of
issues. The reports and data archive can be presented to an
outside auditor to demonstrate proactive compliance efforts.
Learn about GLBA Compliance >
|