• The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
Menu
  • The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
  • PowerTech Goes Multi-Platform with Security Policy Software

    March 9, 2016 Dan Burger

    Regulatory compliance standards have forced companies to pay attention to IT security and be accountable for who has authority and how much authority they have. In general, the track record on this type of thing is a horror story. Organizations often hover on the verge of near compliance. And compliance requirements, by their nature, continually evolve. This is why software such as PowerTech‘s Policy Minder has been developed.

    It’s the responsibility of the system administrators and IT departments to make sure they are in compliance with regulatory measures like the Payment Card Industry Data Security Standard (PCI DDS), Sarbanes-Oxley (SOX), and the Health Insurance Portability and Accountability Act (HIPAA) that require a data protection policy–a written statement of how the organization protects IT assets, including customer data. Automated compliance reporting eliminates most of the manual work involved in checking compliance for user accounts, files, and configuration settings. Policy exceptions can even be remedied automatically.

    Policy Minder came on the market in 2005. The IBM i security administration tool was created by Carol Woodbury, who earlier in her career was the top security expert at IBM Rochester. Woodbury designed it to automate the management of security policies, by checking security settings and configurations against security policies and by changing settings and configurations to match internal policies and compliance regulations.

    When introduced, Policy Minder was offered by Woodbury’s company Skyview Partners. As the product evolved, it gained multi-platform capabilities by supporting Linux and AIX. In June 2015, HelpSystems acquired SkyView and folded it into its PowerTech security line of products, where multi-platform capabilities have become a priority.

    HelpSystems, one of the largest software vendors in the IBM i community, has made multi-platform administration software a priority, so Policy Minder is a good example of the development direction that company is promoting.

    Chris Heim, CEO of HelpSystems, says the need for multi-platform security administration software is clear. He says Policy Minder will support Windows and variants of Unix later this year.

    One difference that we see in Policy Minder since being incorporated into the PowerTech brand is mobile capability. HelpSystems has a mobile initiative that uses responsive design in its software so that regardless of the device the presentation of information will scale and render for optimum viewing on the device whether it is desktop, laptop, tablet or phone. Mobile capability for minding system admin duties is clearly a value for users.

    The primary benefits of Policy Minder, however, come from the capability to quickly determine who has access to the system, whether they need to be there, is their level of authority appropriate, and whether patch levels are current.

    “These are essentially your company’s security policies,” HelpSystems’ Director of Security Development Rob Sutrick says. Defining these policies and then enforcing them is what he refers to as “hardening” security.

    “You can go through the process of hardening your security, but how do you stay compliant with the policies defined?” Sutrick says. “How do you manage all of this when you have multiple systems? By automating these procedures, you can cut the time and resources it takes to make sure your systems stay in compliance. And that leads to nice cost savings.”

    Automated system security checks that can be accomplished with Policy Minder include:

    • Discover files with either the SUID or SGID bit set then monitor them for changes to their ownership, permissions or attributes
    • Discover when the sudoers file has been changed by using the checksum function
    • Ensure key system files are not world-writable
    • Check on services to find when one has been activated that shouldn’t have been
    • Ensure all user accounts have been created–and remain–with the appropriate attributes
    • Discover new admin accounts
    • Discover and manage inactive user accounts
    • Aid with auditor and compliance requirements by ensuring password rules are set appropriately

    System automation has always been the foundation of HelpSystems product lineup. The multi-platform aspect is where the company sees the best opportunity moving ahead.

    Integration efforts are under way at HelpSystems to align Web and mobile interfaces so that multi-platform products can be managed within a centralized console, sometimes referred to as “a single pane of glass.”

    The HelpSystems’ Robot Network and Robot Schedule admin automation products have moved into this integration phase and, according to Sutrick, PowerTech’s Network Security product will get the centralized console integration in the next several months.

    RELATED STORIES

    HelpSystems’ Application Integration Begins With GUI

    Ops Dashboard Gives Centralized View Into IBM i Performance

    PowerTech Adds Centralized Management for Exit Points Security

    Robot Job Scheduler Gets a Fresh New Look

    HelpSystems Adds SkyView Partners To Its Security Assets

    State of IBM i Security? Still Horrible, After All These Years

    PowerTech Puts a Pretty Face on Network Security

    HelpSystems Launches Mobile Initiatives, Acquires NAI for Workflow Automation

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Tags:

    Sponsored by
    Midrange Dynamics North America

    With MDRapid, you can drastically reduce application downtime from hours to minutes. Deploying database changes quickly, even for multi-million and multi-billion record files, MDRapid is easy to integrate into day-to-day operations, allowing change and innovation to be continuous while reducing major business risks.

    Learn more.

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Sponsored Links

    COMMON:  2016 Annual Meeting & Expo, May 15 - 18, in New Orleans! Great Power Systems event!
    System i Developer:  RPG & DB2 Summit - March 22-24 in Dallas. Check out the session grid!
    NGS:  Webinar: Getting from ? to ! with NGS-IQ - April 5. RSVP Now!

    IBM Kills Off Flex p260+ Node, Offers PureSystems Trade-In More Thoughts On A Hybrid System Of Systems

    Leave a Reply Cancel reply

Volume 26, Number 11 -- March 9, 2016
THIS ISSUE SPONSORED BY:

New Generation Software
Fresche Legacy
Manta Technologies
Chrono-Logic
Baseline Data Services

Table of Contents

  • No More Java 6 Support in Next Version of IBM i
  • IBM Bolsters Security in 5250 Emulators
  • Five Pitfalls of VTL Data Storage in IBM i Environments
  • PowerTech Goes Multi-Platform with Security Policy Software
  • IBM Shuffles IBM i CDC Function and Data Replication Tool

Content archive

  • The Four Hundred
  • Four Hundred Stuff
  • Four Hundred Guru

Recent Posts

  • Meet The Next Gen Of IBMers Helping To Build IBM i
  • Looks Like IBM Is Building A Linux-Like PASE For IBM i After All
  • Will Independent IBM i Clouds Survive PowerVS?
  • Now, IBM Is Jacking Up Hardware Maintenance Prices
  • IBM i PTF Guide, Volume 27, Number 24
  • Big Blue Raises IBM i License Transfer Fees, Other Prices
  • Keep The IBM i Youth Movement Going With More Training, Better Tools
  • Remain Begins Migrating DevOps Tools To VS Code
  • IBM Readies LTO-10 Tape Drives And Libraries
  • IBM i PTF Guide, Volume 27, Number 23

Subscribe

To get news from IT Jungle sent to your inbox every week, subscribe to our newsletter.

Pages

  • About Us
  • Contact
  • Contributors
  • Four Hundred Monitor
  • IBM i PTF Guide
  • Media Kit
  • Subscribe

Search

Copyright © 2025 IT Jungle