Les agences de réglementation et auditeurs publics ont besoin de retracer les historiques d'audit. Pour de nombreuses raisons, dont l'exposition de la société à des poursuites judiciaires, les demandes d'eDiscovery provenant d'irrégularités utilisateurs, des conflits contractuels et de conformité avec le gouvernement et les agences de réglementation, votre PME risque de devoir produire un historique d'événements spécifiques.
Une étude récente effectuée par SANS Institute a révélé que 44% des administrateurs systèmes ne conservent pas les journaux d’événements plus d’un mois. Avec les exigences des agences de réglementation et gouvernementales qui recommandent des périodes de trois à sept ans, simplement attendre que ça arrive pourrait être un gros problème.
Les organismes de réglementation et les lois comme Basel II, PCI Data Security Standard, Sarbanes-Oxley Act, Gramm-Leach-Billey Act, HIPAA, FISMA, USA Patriot Act, Turnbull Guidance 1999, UK Data Protection Act, EU DPD, exigent toutes la conservation des événements. Beaucoup exigent aussi la vérification des événements, par exemple NIST recommande une vérification bi-hebdomadaire au moins par semaine. Les journaux d'événements sont la première source pour déterminer le niveau de conformité et pour identifier les failles.
Matériel de référence pour la conformité réglementaire en profondeur
Référez-vous à notre matériel spécialisé pour en savoir plus sur les différentes exigences dictées par les différents organismes de réglementation :
"GFI Software is one of the smaller vendors in the SIEM market. However, size doesn't matter if you build quality into a product like GFI has done with its GFI EventsManager 2012. All things considered, GFI EventsManager proves to be very apt at what it is designed for, managing events driven by the SIEM methodology. Strong reporting tools and an interactive GUI round out the product, making it one to consider for most any SIEM project" – SC Magazine, April 2012
"GFI EventsManager Report Pack comes with dozens of predefined reports (mostly Windows-related), each of which can be edited or used to make new reports." - InfoWorld
GFI EventManager is a very efficient and effective...
GFI EventManager is a very efficient and effective log and event management tool which covers most of the daily security monitoring activities - Dragos Lungu
GFI EventsManager and GFI Network ServerMonitor we...
GFI EventsManager and GFI Network ServerMonitor were named winners of the "Community Choice Awards", and GFI EndPointSecurity was awarded Best Security Product - Community Choice by Penton Media's Windows IT Pro magazine - Windows IT Pro
In a comparative review in of log management products in WindowsIT Pro, the magazine gives GFI EventsManager 4.5 marks out of 5 for both its ease of implementation and ease of use. The reviewer recommends GFI EventsManager for anyone “whose log management needs are limited to Windows Events logs, syslog output and W3C log file information”. - Windows IT Pro
In a review on firewall.cx, Alan Drury describes GFI EventsManager 7 as an excellent tool that will “make your life easier and help keep both you and your systems out of trouble” and rates it 9 of out 10. He said the product enables you to collect and archive event logs across an organisation, but “there’s so much more to it than that”. He highlights GFI EventsManager’s ability to run external scripts and adds that “customisation is one of the real keys to this product”. Although GFI EventsManager 7 may be a little on the slow side at startup, “this is a testimony to the fact that the product is doing a lot of work on your behalf and, to get the best from it, you really should give it a decent system to run on. The benefits you’ll gain will more than make up for the investment. Overall, this is an excellent tool that will.” - Firewall.cx
GFI EventsManager “is a very nice package with clear business benefits” according to a review in ITpro.co.uk by Ian Murphy. Giving the product four stars out of a maximum six, the author highlights the product’s relative easy to install, well-written documentation and other features that help the administrator during the installation and configuration process. - ITpro.co.uk
Devenir partenaire de GFI