BladeLogic - The Data Center Automation Company

BLADELOGIC RECEIVES CENTER FOR INTERNET SECURITY
(CIS) CERTIFICATION

First Data Center Automation Suite to Receive Enterprise-Level CIS Certification

Lexington, MA, September 19, 2006—BladeLogic, Inc., the world’s leading provider of data center automation software, today announced that BladeLogic Release 7 has been certified by the Center for Internet Security (CIS) for AIX, HP-UX, RedHat, Solaris and Windows Server operating systems. BladeLogic Release 7 is the first data center automation suite to receive enterprise-level CIS certification.

CIS is a non-profit enterprise whose mission is to help organizations reduce the risk of business and e-commerce disruptions resulting from inadequate technical security controls. Based on recommendations from the SANS (System Administration, Networking and Security) Institute, the National Security Agency (NSA), the National Institute of Standards and Technology (NIST), the U.S. Defense Information Systems Agency (DISA), Information Systems Audit and Control Association’s COBIT, as well as guidance from CIS members, CIS Benchmarks support available high-level standards that deal with the "Why, Who, When and Where" aspects of IT security by detailing how to secure an ever widening array of workstations, servers, network devices and software applications in terms of technology-specific controls. CIS recently received Information Security Magazine’s “Best Benchmarking” award.

“In order to effectively manage the organizational risks related to information security today, IT organizations need methods and tools to improve, measure, monitor and compare the security status of their own Internet-connected systems and appliances plus those of their business partners,” said Clint Kreitner, CIS President and CEO. “In receiving CIS certification, BladeLogic customers are ensured that BladeLogic Release 7 accurately and thoroughly compares the security settings of their systems to the recommendations in the relevant CIS Benchmark(s).”

BladeLogic’s suite of data center automation solutions helps IT organizations manage, control and enforce configuration changes to servers and applications. After extensive testing, BladeLogic Release 7 earned the following CIS certifications: CIS Level Benchmark for AIX Operating Systems v1.0.1; CIS Benchmark for HP-UX Operating Systems v1.0.1; CIS Level Benchmark for Red Hat Enterprise Linux Operating Systems v1.0.4; CIS Level 1 Benchmark for Solaris 2.5.1-9.0 Operating Systems v1.3; CIS Enterprise Settings Benchmark for Windows 2003 Member Server Operating Systems v1.2.; and CIS Level 2 Benchmark for Windows 2000 Server Operating Systems v2.2.1. The CIS certification process included testing for BladeLogic Release 7’s ability to accurately check for compliance and non-compliance with the several hundred individual recommended security settings in the applicable CIS Benchmarks.

“BladeLogic has developed the industry’s first holistic IT compliance solution for the data center by integrating security and configuration compliance under a single platform. This certification validates BladeLogic’s commitment to providing our customers with advanced data center automation solutions that ensure their IT infrastructure is fully secure and complies with internal and external security and regulatory policies,” said Vijay Manwani, Chief Technology Officer, BladeLogic. “We are proud to be the first data center automation suite provider to receive enterprise-level certification from the Center of Internet Security.”



About BladeLogic

BladeLogic is the world’s leading provider of next-generation data center automation software with the largest installed base of Global 2000 and other leading customers, including such organizations as Capgemini, E*Trade, HSBC, Lockheed Martin, priceline.com, Time Warner, VeriSign, Virgin Mobile, and Walmart.com. BladeLogic’s award-winning suite of enterprise-class data center automation solutions enables organizations of any size to achieve continuous configuration compliance across large-scale, distributed server and application environments, resulting in dramatically reduced data center operating costs, improved service quality, increased efficiencies, and enhanced compliance and security. BladeLogic is a privately held company headquartered in Lexington, Massachusetts, USA. For more information, please visit www.bladelogic.com.



About the Center For Internet Security (CIS)
CIS is a non-profit enterprise whose mission is to help organizations reduce the risk of business and e-commerce disruptions resulting from inadequate technical security controls. CIS members develop and encourage the widespread use of security configuration benchmarks through a global consensus process involving participants from the public and private sectors. CIS Benchmarks support available high level standards that deal with the "Why, Who, When, and Where" aspects of IT security by detailing "How" to secure an ever widening array of workstations, servers, network devices, and software applications in terms of technology specific controls. For more information, please visit www.cisecurity.com.


Press Contact:
Tedd Rodman
BladeLogic
781-257-3560
trodman@bladelogic.com