• The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
Menu
  • The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
  • Symantec Adds Regulatory Compliance to Security Management Tool

    November 9, 2004 Alex Woodie

    Companies looking to get a handle on their Sarbanes-Oxley Act or Gramm-Leach-Bliley Act requirements may want to check out new capabilities available in Symantec‘s Enterprise Security Manager Version 6.1, which started shipping in late October. The latest release of ESM, which supports OS/400 and other major platforms, features 75 pre-configured policy assessment templates for helping users understand what they need to do to comply with new regulations.

    Symantec Enterprise Security Manager is a security policy compliance program that provides centralized and automated analysis of organizations’ servers, databases, applications, networks, and security controls. The software performs more than 3,000 security checks and looks for unpatched vulnerabilities across Windows, Linux, AIX, Solaris, HP-UX, NetWare, and VMS operating systems, as well as Oracle databases on Unix systems and IBM UDB DB2 and Microsoft SQL Server databases on Windows systems.

    With ESM 6.1, Symantec has partnered with Cognos for “pre-configured policy assessment templates” for performing security audits for several new regulatory standards. The capability lets users create impromptu reports quickly or use the report authoring tool for more advanced reports. There are also 75 predefined reports in ESM that show compliance state and trends, specific violations, and configuration changes on host systems. Reports can be automatically scheduled and delivered via e-mail or accessed through a new Web portal Symantec provides with this release. Symantec says the reports are suitable for consumption by executives as well as IT professionals.

    Regulations covered by the new Cognos-powered reporting framework include Sarbanes-Oxley Section 404, HIPAA, GLBA, the Federal Information Security Management Act (FISMA NIST 800-53), and North American Electric Reliability Council reliability standards. Reports are also provided for ISO 17799, SANS Institute Top 20 Internet Security Vulnerabilities for Windows, Unix, and Linux systems, and Center for Internet Security CIS Benchmarks for Solaris vulnerabilities.

    The ESM product suite bolsters data center security through its Windows-based ESM Console, its Windows- or Unix-based ESM Managers, and various ESM Agents that deploy to all supported platforms. The company obtained its OS/400 agent technology through an OEM partnership with English OS/400 security experts SafeStone Technologies.


    ESM’s OS/400 agent technology provides expansive and in-depth analysis and reporting of OS/400 security settings. The agent includes 15 separate modules spread across three areas, including user account and authorization settings (with separate modules for account integrity, log-in parameters, and password strength); network settings (with separate modules for backup integrity, device integrity, network integrity, OS/400 patches, startup files, and various system settings); files and programs (with file access, file attributes, and query modules).

    ESM is a component of Symantec’s overarching Security Management System, which allows users to correlate their security and regulatory compliance data from ESM with security event data gathered from firewalls, intrusion detection systems, and vulnerability assessment products.

    Symantec sells ESM 6.1 by the component. Pricing for an ESM Manager starts at $2,000. The OS/400 Agent costs $1,695. For more information on Symantec’s enterprise security products, go to http://enterprisesecurity.symantec.com.

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Tags:

    Sponsored by
    WorksRight Software

    Do you need area code information?
    Do you need ZIP Code information?
    Do you need ZIP+4 information?
    Do you need city name information?
    Do you need county information?
    Do you need a nearest dealer locator system?

    We can HELP! We have affordable AS/400 software and data to do all of the above. Whether you need a simple city name retrieval system or a sophisticated CASS postal coding system, we have it for you!

    The ZIP/CITY system is based on 5-digit ZIP Codes. You can retrieve city names, state names, county names, area codes, time zones, latitude, longitude, and more just by knowing the ZIP Code. We supply information on all the latest area code changes. A nearest dealer locator function is also included. ZIP/CITY includes software, data, monthly updates, and unlimited support. The cost is $495 per year.

    PER/ZIP4 is a sophisticated CASS certified postal coding system for assigning ZIP Codes, ZIP+4, carrier route, and delivery point codes. PER/ZIP4 also provides county names and FIPS codes. PER/ZIP4 can be used interactively, in batch, and with callable programs. PER/ZIP4 includes software, data, monthly updates, and unlimited support. The cost is $3,900 for the first year, and $1,950 for renewal.

    Just call us and we’ll arrange for 30 days FREE use of either ZIP/CITY or PER/ZIP4.

    WorksRight Software, Inc.
    Phone: 601-856-8337
    Fax: 601-856-9432
    Email: software@worksright.com
    Website: www.worksright.com

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    As I See It: Keep Laughing Executing Dynamic Calculations with Embedded SQL

    Leave a Reply Cancel reply

Volume 4, Number 45 -- November 9, 2004
THIS ISSUE
SPONSORED BY:

California Software
TrailBlazer Systems
iTera
Asymex
RJS Software Systems

Table of Contents

  • Unleash the Borg: OS/400 Gets Autonomic Tooling
  • TeamQuest Brings Capacity Planning Tool to OS/400 Server
  • No More Coding for EAI? DAM Right, Says Magic
  • Symantec Adds Regulatory Compliance to Security Management Tool

Content archive

  • The Four Hundred
  • Four Hundred Stuff
  • Four Hundred Guru

Recent Posts

  • The Power11 Transistor Count Discrepancies Explained – Sort Of
  • Is Your IBM i HA/DR Actually Tested – Or Just Installed?
  • Big Blue Delivers IBM i Customer Requests In ACS Update
  • New DbToo SDK Hooks RPG And Db2 For i To External Services
  • IBM i PTF Guide, Volume 27, Number 33
  • Tool Aims To Streamline Git Integration For Old School IBM i Devs
  • IBM To Add Full System Replication And FlashCopy To PowerHA
  • Guru: Decoding Base64 ASCII
  • The Price Tweaking Continues For Power Systems
  • IBM i PTF Guide, Volume 27, Numbers 31 And 32

Subscribe

To get news from IT Jungle sent to your inbox every week, subscribe to our newsletter.

Pages

  • About Us
  • Contact
  • Contributors
  • Four Hundred Monitor
  • IBM i PTF Guide
  • Media Kit
  • Subscribe

Search

Copyright © 2025 IT Jungle