SecZetta - Governance + Risk Management = Compliance ZecZetta Home
SecZetta - Home GR = C About SecZetta Strategic Solutions Governance, Risk Management, Compliance Solutions Our Partners Industry News Contact SecZetta Careers
STRATEGIC SOLUTIONS FOR
  • Governance
  • Risk Management
  • Business Process Development
  • Security Gap Fulfillment
  • Audit Response

 

RISK MANAGEMENT TOOLS
Allows companies to build efficient, collaborative enterprise governance, risk and compliance (GR=C) programs across IT, operations, legal and finance. Solutions include:
  • Policy Management
    • Centrally manage policies
    • Map them to objectives and guidelines
    • Promote awareness to support a culture of corporate governance
  • Risk Management
    • Identify risks to your business
    • Evaluate risks through online assessments and metrics
    • Respond with remediation or acceptance
  • Compliance Management
    • Document control framework
    • Assess design and operational effectiveness
    • Respond to policy and regulatory compliance issues
  • Enterprise Management
    • Manage relationships and dependencies within the enterprise hierarchy and infrastructure to support GRC initiatives
RSA Archer

Access Assurance Suite is comprised of four components

  • AccountCourior
    • Creates user accounts and entitlements, consistent with policy
    • Delivers faster on-boarding service
    • Reduces IT overhead
    • Automatically removes ex-employee access
  • PasswordCourior
    • Enforces strong password policies
    • Delivers faster, more convenient user self-service
    • Synchronizes username & password on multiple systems
    • Reduces password-related help desk calls 80% or more
  • ComplianceCourior
    • Identifies and manage user access rights
    • Access certification
    • Remediates inappropriate or high-risk access
    • Responds to compliance audit demands
    • Monitors user activity and sensitive data access
  • RoleCourior
    • Aligns business roles with IT accounts
    • Enforces access rights policies
    • Rapidly adapts to business changes
    • Simplifies and accelerates provisioning, access certification processes
Courion

Enterprise Password Vault

  • Ensures accountability of every access request to sensitive data
  • Automatic discovery capabilities for new or removed machines
  • Enforced enterprise policy to protect critical systems
  • Simple access control for managing privileged identities

Application Identity Manager

  • Eliminates hard-coded and visible credentials from applications and scripts

On-Demand Privileges Manager

  • Security, management, and control of superuser privileges
  • Governance tool that allows organizations to pass audits related to SOX, PCI, and Basel II
Cyber-Ark

DLP Network analyzes all outbound content in a port-agnostic way so that no confidential or embar­rassing information is emailed out of the company or posted to rumor websites.

DLP Endpoint offers full protection for mobile employees through fingerprint and described-content policies both on and off the corporate network.

DLP Datacenter identifies and enforces policies for sensitive data residing in file shares, databases, storage systems (SAN/NAS), Microsoft SharePoint® sites and other data repositories.

  • Over 150 “out-of-the-box” polices that cover a comprehen­sive range of international regulations and are applied consistently across the different DLP platforms (DLP Datacenter, DLP Network, and DLP Endpoint)
    • RSA’s Information Policy and Classifica­tion Research team stay abreast of the latest changes in regulations and apply that knowledge to fine-tune polices, saving time and allowing organizations to quickly realize the value of their investment.
  • Fast, scalable, and accurate Datacenter and Endpoint discovery scans allow organizations to quickly map out risk profile and prioritize activities necessary to meet compliance objectives.
  • Protect intel­lectual property, maintain brand value, retain talented employees, and increase customer loyalty through several key features:
  • Numerous policy templates thereby helping organizations save time and money by eliminating the need to develop polices from scratch.
RSA DLP

RSA enVision

RSA enVision is a security information and event management (SIEM) platform, enabling security professionals to collect and analyze log and event data to identify high-priority security incidents as they occur. enVision provides an intuitive forensic tool for investigating potential threats and compliance challenges, providing business-critical visibility into specific behaviors by end users for effective remediation by security and operations teams.

Organizations use enVision for addressing network-security and compliance-management challenges. Analytical software turns unstructured raw data into valuable business information, giving administrators actionable insights to help simplify compliance, optimize incident management, and secure virtual and physical networks.

With real-time security-event alerts, monitoring, and drill-down forensic functionality, enVision gives administrators visibility and understanding of how their network is used and the threats and risks to the infrastructure and applications.

RSA Envision

Panorama

  • Analyze, correlate and visualize pervasive traffic, monitoring data simultaneously with log and event data from over 200 network and host formats.

Spectrum

  • An expert, automated malware analysis engine that provides prioritization and workflow for zero-day and emerging threats within your enterprise.

Visualize

  • A multi-touch, graphical rendering of network intercepted data that accelerates the incident management and investigatory processes, enabling faster and easier analysis of what occurred over time.

Live

  • Aggregates the best advanced threat intelligence and multi-source content of the global security community, and fuses it in real-time with your NetWitness network monitoring platform.

Informer

  • Provides rules-based, automated reporting, alerting and enterprise security integration for the enterprise.

Investigator

  • Ddeep, freeform analytics for network investigations, and real-time, actionable intelligence.

SIEMLink

  • Enables instant integration of the NetWitness enterprise network monitoring platform with existing security tools and infrastructures.

API/SDK

  • A full-featured application programming interface that enables the ultimate in flexibility for NetWitness.
RSA Netwitness

ProxySG - a physical appliance that sits between users and the internet, and authenticates trust by sending request to an Authentication server.

  • Supports HTTP, HTTPS, FTP, and streaming media
  • Can intercept SSL communications and decrypt them for use with DLP

WebPulse – provides collaborative protection against malware and other web threats

  • Replaces one-against-the-web solution with a community-watch security solution
  • Analyzes over 2.1 billion user requests per week to keep WebFilter updated and relevant

Web Filter - checks url category, and sends to WebPulse Cloud to confirm approval/denial

ProxyAV - provides protection for areas where WebPulse cloud service lacks visibility

  • Provides an extra layer of defense against backdoor threats (webmail attachments, software downloads)
  • Detects and blocks hidden threats before they harm

ProxySG Policy Controls - allows granular control of network and internet usage

  • Closes security breaches (unrated web sites cannot enter)

ProxyClient - protects and accelerates remote users

  • Allows IT to set policies for remote users that are consistent with internal requirements
  • Provides full logging of remote users’ activities to support compliance
  • Provides WAN optimization and acceleration

Reporter - provides management functionality

DLP – integrates with multiple DLP solutions to control data leakage

  • Enables HTTP, HTTPS, FTP readability
  • Internet Client Adaptation Protocol (I-CAP) allows ProxySG to send content to DLP vendor (Symantec, RSA, …) to provide protection against data leakage
Blue Coat Proxy SG