Quick Links
Advertise with Sarbanes Oxley Compliance Journal
News


< Back

Sarbanes Oxley : Technology : Log Management

IT Departments Face a “Perfect Storm” in Log File Reporting Requirements



Dorian Software’s Event Analyst 8 Responds to Urgent Log File Reporting Needs

Robert Milford
Chief Software Architect
Dorian Software Creations

Compliance and auditing initiatives continue unabated amid global economic turmoil. In fact, for many, network security and auditing has become an even higher priority.

There are several reasons for heightened vigilance in network security right now. In a climate of high unemployment and pay reduction, one reason is intensified internal security threats from disgruntled current and former employees. Another reason is closely related – when finances are strained on the personal front, there is greater temptation for personnel to engage in data theft.

Finally, regulatory compliance requirements aren’t going away, regardless of economic pains. In fact, certain industries – such as finance – are sure to face greater scrutiny in the coming months and years.

As a result, needs in the field of log data management - and specifically, log data reporting - are expanding. In response to these needs, Dorian Software Creations, Inc. is this week announcing a new release in its log file reporting tool, Event Analyst. Among the improvements in Event Analyst 8 are expanded custom report creation capabilities and new pre-configured reports directly addressing emerging needs in log file auditing.

“We’re seeing only increasing need in log reporting capabilities,” says Robert A. Milford, Chief Software Architect at Dorian Software. “As budgets for other items get cut, IT departments’ security and auditing requirements are really only expanding. There is simply more data to comb through than ever before, and for many, today’s economic climate makes finding key network events even more crucial.”

Another element in this perfect storm, Milford points out, is the shift in the Microsoft Windows log data format. Just as reporting needs are expanding, the very structure of the log data being generated is shifting from the EVT to EVTX format. Though the shift began some time ago with the release of Windows Vista, the introduction of new machines running Windows Vista or Windows Server 2008 can essentially break an organization’s existing log file management strategy.

The new release of Event Analyst, part of Dorian’s patented Total Event Log Management Solution ™, addresses some of the specific elements of the perfect storm in log file reporting. New capabilities include:
  1. 6 Pre-Configured Reports Supporting Windows Server 2008 Active Directory  Events
  2. Using Dorian's exclusive LogRefiner ™ technology, 6 pre-built reports focused on Active Directory activity have been retrofitted to work with the equivalent Windows Server 2008 versions of these events. Moreover, these reports can correlate similar activities across all operating systems - from Windows NT 4.0 to Windows Server 2008 - when used in conjunction with Dorian’s Event Archiver ® and its database collection features.
  3. 4 New Reports Help Track System Health
Event Analyst 8 includes 4 new reports, including 3 that track important events in logs other than the Security Log:

Application Crashes - Targeting the application log, the Application Crashes report shows a comprehensive listing of all program crashes on one or more computers, grouped by computer and the executable program that crashed.
Application Popup Messages - Targeting the system log, this report tracks application and operating system message dialogs that are displayed to users when errors or other important issues occur.

Potential Spyware or Unwanted Software Detected By Windows Defender - Targeting the system log, this report displays any events logged by the Windows Defender Service when it detects potential spyware or other unwanted software on one or more computers.
User Idle Time - Targeting the Windows Vista or Server 2008 Security Log, this report calculates total user idle time on one or more computers by examining the time between screen saver invocations and dismissals.

Custom Reports Now Support Event Aggregation and Condensing
More log data means more noise in reporting. Now, Event Analyst provides the ability to slim down reports that were initially created in its Custom Report Designer.

Dorian Software Creations, Inc. provides white papers at no charge to aid with compliance-driven implementations of its log management software, as well as the challenge of the new EVTX logging format.








About Us Editorial

© 2019 Simplex Knowledge Company. All Rights Reserved.   |   TERMS OF USE  |   PRIVACY POLICY