• The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
Menu
  • The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
  • RSA Cracks Down on Security Threats with enVision 4.0

    March 10, 2009 Alex Woodie

    RSA yesterday unveiled a new version of its security information and event management (SIEM) software, enVision 4.0. With the new release, the EMC subsidiary has introduced several new features aimed at making it easier to correlate and make sense of the security-related log and vulnerability data that is inundating organizations. And in a bid to show enVision is not just for big enterprises, RSA unveiled two new appliances for medium size companies.

    RSA bills enVision, which it obtained with its 2006 acquisition of Network Intelligence, as a three-in-one SIEM platform aimed at solving the three interrelated problems of network visibility, regulatory compliance, and security. With more than 1,600 customers, enVision is certainly one of the most highly visible SIEM platforms on the market. And with its capability to gather and correlate pertinent log data from hundreds of pieces of equipment commonly found in datacenters–including IBM System i servers–the product should be on the research list of any enterprise IT administrator in the market for a SIEM solution.

    As is the case with most IT security products, enVision’s goal is a moving target. Security administrators must continually adapt to changing conditions as new security vulnerabilities are revealed and the hacking techniques of for-profit cyber criminals evolve to take advantage of those vulnerabilities. As the main control panel for achieving an enterprise-wide view of an organization’s security posture, SIEM products are under an enormous amount of pressure to adapt to new security threats while trying to keep administrators from becoming overburdened with data and decision making.

    In other words, continuous automation is the name of the game in the SIEM world, and RSA strives to deliver that with enVision 4.0.

    For starters, enVision now hooks into configuration management database (CMDB) products, such as EMC’s own Voyence Control, and vulnerability scanners to get the most accurate and up-to-date list of assets, so that it can map the products to current threats. Hooking into CMDBs and vulnerability scanners “vastly improved our ability to add context to the log data we’re gathering,” RSA’s Paul Stamp says in a blog posting.

    enVision 4.0 also delivers better alerting capabilities to notify analysts when high risk vulnerabilities are discovered, and also brings improved correlation rules that should be easier for customers to customize for their specific environment. Many of these rules were developed by RSA partner Assurent, Stamp writes. “Not only are the rules top-notch, but they come with a whole set of background information about what the rules mean, how to tailor them to your environment, and what to do when they fire.”

    And when a security incident does occur, enVision 4.0 customers should be more prepared to deal with it, thanks to several new features in the product, including new screens designed specifically for investigating security issues. “We’ve made some big improvements to our Event Explorer interface, which lets you get down and dirty with the detailed event data, and make those ad-hoc forensic queries quicker and easier to perform,” Stamp writes. And with this release, events monitored through enVision can also be hooked into a ticketing system, such as EMC’s Infra system, to close the loop on security incidents.

    enVision is sold as an appliance-based solution. With this week’s announcement, two new mid-market appliances have been added to the lineup, including the ES-1260, which supports up to 600 devices and event volumes of up to 1,200 events per second, and the ES-3060, which supports up to 1,200 devices and event volumes of up to 3,000 events per second. These join existing appliances, which can scale up to more than 6,000 devices and handle 30,000 events per second. For more information, visit www.rsa.com.



                         Post this story to del.icio.us
                   Post this story to Digg
        Post this story to Slashdot

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Tags:

    Sponsored by
    WorksRight Software

    Do you need area code information?
    Do you need ZIP Code information?
    Do you need ZIP+4 information?
    Do you need city name information?
    Do you need county information?
    Do you need a nearest dealer locator system?

    We can HELP! We have affordable AS/400 software and data to do all of the above. Whether you need a simple city name retrieval system or a sophisticated CASS postal coding system, we have it for you!

    The ZIP/CITY system is based on 5-digit ZIP Codes. You can retrieve city names, state names, county names, area codes, time zones, latitude, longitude, and more just by knowing the ZIP Code. We supply information on all the latest area code changes. A nearest dealer locator function is also included. ZIP/CITY includes software, data, monthly updates, and unlimited support. The cost is $495 per year.

    PER/ZIP4 is a sophisticated CASS certified postal coding system for assigning ZIP Codes, ZIP+4, carrier route, and delivery point codes. PER/ZIP4 also provides county names and FIPS codes. PER/ZIP4 can be used interactively, in batch, and with callable programs. PER/ZIP4 includes software, data, monthly updates, and unlimited support. The cost is $3,900 for the first year, and $1,950 for renewal.

    Just call us and we’ll arrange for 30 days FREE use of either ZIP/CITY or PER/ZIP4.

    WorksRight Software, Inc.
    Phone: 601-856-8337
    Fax: 601-856-9432
    Email: software@worksright.com
    Website: www.worksright.com

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Sponsored Links

    BCD:  Reaching your IBM i Web modernization goals is a lot closer with BCD
    WMCPA:  24rd Annual Spring Technical Conference, April 1 & 2, 2009, Delavan, WI
    COMMON:  Join us at the 2009 annual meeting and expo, April 26-30, Reno, Nevada

    IT Jungle Store Top Book Picks

    Easy Steps to Internet Programming for AS/400, iSeries, and System i: List Price, $49.95
    Getting Started with PHP for i5/OS: List Price, $59.95
    The System i RPG & RPG IV Tutorial and Lab Exercises: List Price, $59.95
    The System i Pocket RPG & RPG IV Guide: List Price, $69.95
    The iSeries Pocket Database Guide: List Price, $59.00
    The iSeries Pocket Developers' Guide: List Price, $59.00
    The iSeries Pocket SQL Guide: List Price, $59.00
    The iSeries Pocket Query Guide: List Price, $49.00
    The iSeries Pocket WebFacing Primer: List Price, $39.00
    Migrating to WebSphere Express for iSeries: List Price, $49.00
    iSeries Express Web Implementer's Guide: List Price, $59.00
    Getting Started with WebSphere Development Studio for iSeries: List Price, $79.95
    Getting Started With WebSphere Development Studio Client for iSeries: List Price, $89.00
    Getting Started with WebSphere Express for iSeries: List Price, $49.00
    WebFacing Application Design and Development Guide: List Price, $55.00
    Can the AS/400 Survive IBM?: List Price, $49.00
    The All-Everything Machine: List Price, $29.95
    Chip Wars: List Price, $29.95

    Overworked, Underpaid, and No Free Donuts and Coffee Looking for Commitment, Part 1

    Leave a Reply Cancel reply

Volume 9, Number 10 -- March 10, 2009
THIS ISSUE SPONSORED BY:

Maximum Availability
ARCAD Software
Guild Companies
Safedata
VAULT400

Table of Contents

  • DB2/400 Storage Engine for MySQL Now Available as Public Beta
  • PHP Saves Company Millions by Refurbishing Old ERP System
  • ManageEngine Goes On Demand with Data Center Tools
  • RSA Cracks Down on Security Threats with enVision 4.0
  • Kisco Adds Fax Support to WebReport/400
  • Blog Food for the RPG Programmer: Tastes a Bit Like .NET
  • HiT Touts Real World Work of IBM i Data Provider
  • New Tip Sheet for RDE and WDSc Programmers Arrives
  • PlanetJ Gives WOW an AJAX Refresh
  • Tolly Report Shows Reflection 2008 Outperforms Competitors, Attachmate Says

Content archive

  • The Four Hundred
  • Four Hundred Stuff
  • Four Hundred Guru

Recent Posts

  • Public Preview For Watson Code Assistant for i Available Soon
  • COMMON Youth Movement Continues at POWERUp 2025
  • IBM Preserves Memory Investments Across Power10 And Power11
  • Eradani Uses AI For New EDI And API Service
  • Picking Apart IBM’s $150 Billion In US Manufacturing And R&D
  • FAX/400 And CICS For i Are Dead. What Will IBM Kill Next?
  • Fresche Overhauls X-Analysis With Web UI, AI Smarts
  • Is It Time To Add The Rust Programming Language To IBM i?
  • Is IBM Going To Raise Prices On Power10 Expert Care?
  • IBM i PTF Guide, Volume 27, Number 20

Subscribe

To get news from IT Jungle sent to your inbox every week, subscribe to our newsletter.

Pages

  • About Us
  • Contact
  • Contributors
  • Four Hundred Monitor
  • IBM i PTF Guide
  • Media Kit
  • Subscribe

Search

Copyright © 2025 IT Jungle