Data Center Compliance
Solutions to automate the process of measuring server compliance against patch, security, regulatory, and corporate policies, and remediating non-compliant servers when appropriate.
CRITICAL REQUIREMENTS |
BLADELOGIC SOLUTIONS |
| Patch Management |
- Scan and report on missing patches based on specific vendor (e.g., Microsoft, Sun) recommendations and/or internal policies
- Package and install patches in a scalable manner across different OS platforms
- Easily undo patch installations when necessary
|
| Policy-based Auditing & Reporting |
- Easily establish configuration policies or “gold standards” for all types of servers based on corporate standards and/or from external sources (e.g., CIS, FIPS, NIST, & NSA)
- Define sophisticated compliance rules for more flexible compliance measurement and enforcement
- Conduct granular audits against policies to identify and report on configuration drift or specific policy violations
- Enable exception-handling to filter out acceptable violations
|
| Automatically Repair Misconfigured Servers |
- Surgically repair configurations without overwriting other configuration data
- Automatically generate individual remediation packages for each non-compliant server based on audit results
- Schedule remediation activity as appropriate
|
| Control Access & Activity |
- Map access to servers and specific configuration data based on functional roles and responsibilities
- Generate COBIT-based reports
- Leverage best practices and policies from third-party providers (e.g., PwC) to support regulatory control framework requirements such as SOX 404, GLBA, HIPAA
|