|
|
Auditing PCI Data Security Standard
Auditing for FISMA Compliance using OPNET Sentinel
"OPNET was selected to add value
by allowing Fujitsu to optimize network performance, including
right-sizing links, minimizing mistakes in router configurations
and even pointing out inefficient configurations. We have already
experienced the benefit of using OPNET software through the reduced
number of customer trouble tickets."
Senior Consultant, Network
Management
Fujitsu

Maintaining network integrity and security is imperative for ensuring quality
service, meeting regulatory requirements, and managing operational risks. There
are numerous obstacles to achieving this, including technology change, staffing
and skills shortages, and the need to accelerate business responsiveness. Operational
errors are frequently the consequence, as confirmed by industry studies that
point to configuration issues as a major source of network downtime, degraded
performance, and gaps in network security.
IT Sentinel®
is a software appliance for ensuring network integrity, security, and policy-compliance.
It performs systematic configuration audits, analyzing an up-to-date
model of the production network to diagnose device misconfigurations,
policy violations, inefficiencies, and security gaps. IT Sentinel®
enables organizations to reduce network outages, ensure network security,
verify regulatory and policy compliance, and enhance staff productivity.
Audit your network as frequently as you make changes to ensure policy compliance.
Key Features
- Rules analyze individual
devices, groups of devices, topology, and routing information.
Hundreds of standard checks incorporate industry best practices
published by Cisco Systems, US government agencies, and others.
- Semantic checks of the network
configuration diagnose issues not detectable through regular expression-based
analysis, addressing routers, switches, and non-configuration file-based
devices such as firewalls.
- Audits verify that network security policies have been implemented effectively, and ensure compliance with regulatory and industry requirements such as PCI, DISA-STIG, ISO-17799, NIST 800-53, NSA guidelines, Sarbanes-Oxley, HIPAA, FISMA, and others.
- An integrated authoring
environment enables rules customization to meet organization-specific
audit standards and requirements.
- Automated notification via SNMP, email,
or pager informs staff about critical issues, and comprehensive
results are published to an integrated web-based report server.

Pinpoint changes in your network.
Validate proposed configuration changes.
|
|