Newsletters   Subscriptions  Forums  Store   Career  Media Kit  About Us  Contact  Search   Home 
fhs
Volume 4, Number 45 -- November 9, 2004

Symantec Adds Regulatory Compliance to Security Management Tool


by Alex Woodie


Companies looking to get a handle on their Sarbanes-Oxley Act or Gramm-Leach-Bliley Act requirements may want to check out new capabilities available in Symantec's Enterprise Security Manager Version 6.1, which started shipping in late October. The latest release of ESM, which supports OS/400 and other major platforms, features 75 pre-configured policy assessment templates for helping users understand what they need to do to comply with new regulations.

Symantec Enterprise Security Manager is a security policy compliance program that provides centralized and automated analysis of organizations' servers, databases, applications, networks, and security controls. The software performs more than 3,000 security checks and looks for unpatched vulnerabilities across Windows, Linux, AIX, Solaris, HP-UX, NetWare, and VMS operating systems, as well as Oracle databases on Unix systems and IBM UDB DB2 and Microsoft SQL Server databases on Windows systems.

With ESM 6.1, Symantec has partnered with Cognos for "pre-configured policy assessment templates" for performing security audits for several new regulatory standards. The capability lets users create impromptu reports quickly or use the report authoring tool for more advanced reports. There are also 75 predefined reports in ESM that show compliance state and trends, specific violations, and configuration changes on host systems. Reports can be automatically scheduled and delivered via e-mail or accessed through a new Web portal Symantec provides with this release. Symantec says the reports are suitable for consumption by executives as well as IT professionals.

Regulations covered by the new Cognos-powered reporting framework include Sarbanes-Oxley Section 404, HIPAA, GLBA, the Federal Information Security Management Act (FISMA NIST 800-53), and North American Electric Reliability Council reliability standards. Reports are also provided for ISO 17799, SANS Institute Top 20 Internet Security Vulnerabilities for Windows, Unix, and Linux systems, and Center for Internet Security CIS Benchmarks for Solaris vulnerabilities.

The ESM product suite bolsters data center security through its Windows-based ESM Console, its Windows- or Unix-based ESM Managers, and various ESM Agents that deploy to all supported platforms. The company obtained its OS/400 agent technology through an OEM partnership with English OS/400 security experts SafeStone Technologies.


ESM's OS/400 agent technology provides expansive and in-depth analysis and reporting of OS/400 security settings. The agent includes 15 separate modules spread across three areas, including user account and authorization settings (with separate modules for account integrity, log-in parameters, and password strength); network settings (with separate modules for backup integrity, device integrity, network integrity, OS/400 patches, startup files, and various system settings); files and programs (with file access, file attributes, and query modules).

ESM is a component of Symantec's overarching Security Management System, which allows users to correlate their security and regulatory compliance data from ESM with security event data gathered from firewalls, intrusion detection systems, and vulnerability assessment products.

Symantec sells ESM 6.1 by the component. Pricing for an ESM Manager starts at $2,000. The OS/400 Agent costs $1,695. For more information on Symantec's enterprise security products, go to http://enterprisesecurity.symantec.com.

Sponsored By
ASYMEX

SpooliT - Intelligence in document management
EXCELerate your iSeries Reports

Are you still printing AS400 or iSeries reports? Here are the Pros and Cons ...
CONS: Paper costs / Printing costs / Manual process / Slow / Inflexible / Not in the right format

Let SpooliT change the way you distribute reports ...
PROS: Save paper costs / Save printing costs / Automatic / Real-time distribution / Totally flexible / any electronic format

Automatically remove page headings and select just the columns of data you want straight into Excel with SpooliT templates!!!

SpooliT = ARCHIVE + DISTRIBUTE + CUT TO CD + EXPORT + EMAIL + AUTOMATION

  • AUTOMATICALLY monitor your Outqs and eMail reports to your users
  • AUTOMATICALLY archive your reports to your PC network
  • AUTOMATICALLY categorizes and indexes your Spool Files for easier retrieval
  • AUTOMATICALLY converts your reports to Word, Excel, PDF, HTML, CSV and RTF
  • AUTOMATICALLY removes page breaks and column headings with Excel templates

Download SpooliT for a FREE 30-day Trial and see for yourself
>>>Click here to download SpooliT<<<

Let us personally demonstrate SpooliT for you live via the Internet
>>>Click here for a free WebEx demo of SpooliT<<<

eServer Magazine's review of SpooliT ...
"Frankly, you can't beat it when they Web conference into your system and install it with you. Not every vendor does that with their setups and frankly there's nothing like having the pros install their own software, even if they did it to my box in Virginia all the way from Australia!"
- Don Rima, Technical Editor, eServer Magazine, iSeries Edition May 2004.
>>>Click here to read the full independent review of SpooliT by Don Rima<<<

For more information visit www.asymex.com


Editor: Alex Woodie
Managing Editor: Shannon Pastore
Contributing Editors: Dan Burger, Joe Hertvik,
Shannon O'Donnell, Timothy Prickett Morgan
Publisher and Advertising Director: Jenny Thomas
Advertising Sales Representative: Kim Reed
Contact the Editors: To contact anyone on the IT Jungle Team
Go to our contacts page and send us a message.


THIS ISSUE
SPONSORED BY:

California Software
TrailBlazer Systems
iTera
Asymex
RJS Software Systems


BACK ISSUES

TABLE OF
CONTENTS
Unleash the Borg: OS/400 Gets Autonomic Tooling

TeamQuest Brings Capacity Planning Tool to OS/400 Server

No More Coding for EAI? DAM Right, Says Magic

Symantec Adds Regulatory Compliance to Security Management Tool

News Briefs and Product Shorts


The Four Hundred
i5 Model 595: Big Bang for Big Bucks

IBM's New Customer Design Center Focuses on High Availability

Gartner Releases IT and Business Trends Through 2010

Four Hundred Guru
A Different Perspective on WDSc

Qshell Logout Script

Admin Alert: Safely Deleting a User Profile

Four Hundred Monitor


Copyright © 1996-2008 Guild Companies, Inc. All Rights Reserved.
Guild Companies, Inc. (formerly Midrange Server), 50 Park Terrace East, Suite 8F, New York, NY 10034
Privacy Statement