Sign-up for the Orb newsletter

and get product news, info and tips...

Security Management

New and increased governance both internal and external to organisations are forcing companies to invest a lot time and money both implementing new security policies and proving compliance to existing policies.  Some companies are still finding it difficult to implement some of the most fundamental IT security policies, such as:

  • Maintain secure systems.
  • Security patch management and security updates for major operating systems.

Even when the right security policies are in place companies often find it difficult and time consuming to provide evidence of compliance.

Key Features

  • Core Tivoli Infrastructure Management
  • Agent Management
  • Compliance Reports
  • Vulnerability management reporting, assess systems against known vulnerability definitions (OVAL), report on non compliance.
  • Discover and report on security configuration compliance. Bespoke company security standards can be provided.

The IBM Tivoli® Endpoint Manager (TEM)—built on BigFix® technology - Security configuration & Vulnerability Management software provides the ability to assess and enforce security policies on all systems running the BigFix agent.  It provides an out of the box security patch management solution and default security configuration policies that can be applied to Windows, Unix, and Linux platforms that will assist companies in maintaining secure systems. Compliance of systems to enforced security polices can also be monitored in real time through the reporting tools.

The TaaS service includes Vulnerability Management software that provides the ability to assess and enforce security policies on all systems running the BigFix agent.  This works by providing industry standard checklists that security teams can use to define security parameters and configurations to suit corporate policy.  The following example shows how to:

  • Define a custom company security configuration policy
  • Report compliance against newly defined company security configuration policy.
  • Remediate non-compliant security policies - Using the built in fixlets we can take actions to correct the non-compliant security configurations.
  • Report after remediation against company security policy