Quick Links
Advertise with Sarbanes Oxley Compliance Journal
News


< Back

Sarbanes Oxley : Technology : ERP

Security Auditing for SAP Platform




Doug Howard
Chief Operating Officer
Counterpane

Counterpane Internet Security, Inc., The Managed Security Company and the authority on enterprise security, recently unveiled Integrated Application Monitoring & Security Auditing for SAP Platform, a new data security solution that leverages its industry leading Managed Security Services.

?A large number of our customers have rated unauthorized access to critical information as their top concern,? said Bruce Schneier, Counterpane Chief Technology Officer. ?The lack of stronger software security being built into applications put enterprises in a reactive mode. Enterprises need to understand that network and application security are business risk ? we?re seeing corporations suffering financial loss due to application security breaches.?

In a recently published 2006 CSI/FBI Computer Crime and Security Survey, unauthorized access to information ?continues to be the second-greatest source of financial loss.? It also indicates nearly 40 percent of the respondents attributing more than 20 percent of their organization?s losses to insider threats.

Counterpane?s integrated application monitoring and auditing solution is designed to reinforce enterprises? defense against insider theft and application-level attacks. Leveraging its technological innovations (for example, the universal normalization of differing platform attributes), Counterpane captures, normalizes, and securely transfers all log-in/log-out and failed log-in transaction codes to its Security Operations Centers (SOCs), where logs are analyzed and stored, and threats are alerted. More important is Counterpane?s ability to customize its logic to monitor transactions within the SAP applications.

While simpler products/services collect and store application-level event logs, Counterpane?s integrated solution is far more extensive. Customers can elect to perform cross-platform and cross-vendor correlation, in real time, for every normalized message and from every supported platform available in Socrates, Counterpane's global correlation and analysis engine. Advanced Socrates correlation is used to detect specific compliance related event sequence, which is determined by out-of-the-box pre-configured rules that are customizable to meet individual customers? specified compliance monitoring and reporting requirements.

The solution is augmented with Counterpane?s 24x7 real-time monitoring, analysis, alerting, and reporting by skilled security analysts, all of which are backed by service level agreements with simple, unambiguous penalty language.

"The 12 million SAP users -- 34 thousand SAP customers worldwide -- can now leverage Counterpane?s leading data security solution for strengthened defense against targeted application-level attacks and improved compliance,? said Doug Howard, Counterpane?s Chief Operating Officer. ?What sets us apart, on top of skilled security professionals and compliance best-practice framework, is incremental innovations built on the foundation of our proven correlation engine. Having the ability to monitor access to sensitive corporate and customer data and perform cross-platform, cross-vendor correlation, we assure our customers business success by way of increased accountability and improved security policies, preventing financial loss due to application security breaches. We continue to demonstrate our leadership in supporting our customers? business concerns -- by providing real world solutions that solve real world business problems.?

• Custom solution that fulfills specified customer requirements for compliance with government and industry regulations, including Sarbanes-Oxley, California SB1386, Gramm Leach Bliley (GLB), HIPAA, and the PCI Standard for merchants and banks Database application monitoring

• Non-intrusive, real time monitoring and alerting on any SAP transaction type that are required for current and future regulatory compliance

• Automated, policy-based security audit alerts of databases

• No change to applications Cross-platform, cross-vendor event correlation from a wide range of sources (centrally stored for reporting):

• Business applications

• Operating systems

• Network and security devices

• Access control systems

• Mainframes

• Web services (admin events)

• Databases Security Auditing & Reporting

• Audit trail monitoring with weekly, monthly, and annual reporting of security / non-security events

Counterpane is The Managed Security Company. As the authority on enterprise security, Counterpane's Managed Security Services ensure customers' business continuity, improved compliance, and protection from financial loss. Monitoring over 550 networks worldwide to gather, correlate and evaluate an unparalleled volume of information, we give our customers the industry's broadest real-time view of, and response to, global IT security threats. Leveraging our experienced professionals and state-of-the-art security solutions, Counterpane delivers comprehensive protection and real economies of scale and efficiencies of cost.

For more information, visit www.counterpane.com.






About Us Editorial

© 2019 Simplex Knowledge Company. All Rights Reserved.   |   TERMS OF USE  |   PRIVACY POLICY