SenSage - Enterprise Security Analytics
Download InfoDemoContact Us
Products: Compliance - Sarbanes-Oxley
Download Information
Datasheets
Whitepapers
Solution Notes
Product Demos
Webcasts
Case Studies
Reviews
Compliance Analytics
Telecomm
SOX
HIPAA
FFIEC/GLBA
PCI
NISPOM
FISMA
ISO 27002

Simplify and Automate Audit Control Compliance for SOX

SOX Compliance Defined :

The audit control sections of the regulations require that you:
  • Capture and routinely audit security events that may impact the integrity of financial reporting. Specifically, all financial applications and their databases, servers, and networks
  • Follow detailed procedures based on COSO & COBiT audit frameworks. In most cases, this requires that systems administrators and business owners explicitly review and sign off

Simplify Audit Control Compliance for SOX

SenSage's SOX Analytics Package has everything needed to support the IT process controls in section 404 of Sarbanes-Oxley. With a host of log adapters for collecting pertinent event data and pre-defined reports that help quickly identify any security breaches involving your organization's financial data and systems, we automate and simplify the audit control process. This automation will save you time and money while ensuring that you avoid costly penalties and lengthy discovery processes.

What the regulation doesn't spell out is how to meet these challenges. That's where SenSage can help. We've reviewed the regulations in depth as well as researched interpretation by the top auditing firms. Based on this research we developed a comprehensive package that will ensure your ability to comply.

SenSage automates the collection and review terabytes of audit trail log data from all sources. By centralizing the logs into a single repository, SenSage facilitates the correlation needed to identify security breaches across systems - a critical asset for ensuring compliance as well as investigating any security breaches.In addition, SenSage's infrastructure provides the scalability to store and process searches of billions of records rapidly. The pre-defined reports enable internal auditors to easily perform spot checks and reviews. With it clustered architecture SenSage also ensures full data redundancy and high availability.

  • Leverages over 30 built-in base log adapters and additional standard log adapters which fully integrate SenSage with network, application, host and security log sources.
  • Over 100 targeted reports based on pre-defined queries, as well as real-time correlation rules monitoring financial infrastructure access and integrity.

The table below displays the categories of reports (referencing a sample of available log adapters) included in the SOX Analytics Package.

Report Categories Log Adapter Categories
Investigate Users
Activity on Financial Systems
Firewalls Protecting Financial Systems/All Firewalls
Firewalls Protecting Financial Systems/Firewall Activity by Source
Firewalls Protecting Financial Systems/Firewall Activity by Destination
Firewalls Protecting Financial Systems/Individual Firewalls
Users to Investigate for Financial Fraud
IDS Activity for Financial Systems
Email Activity Summary
Business Critical System Activity
Logins to Financial Systems
Use of Privilege on Financial Systems
Network
System
Security
Infrastructure Applications