Compliance Solutions
  IS Control Auditing
  Policy Management
  Vulnerability Management
  Asset Monitoring
  Remediation
Case Studies
  Finance
  Government
  Public Companies
  Retail
C5 Audit Compliance Trial

Download_WP_Graphic


Download_DS_Graphic
 

Case Study - Government 

Organization:  U.S. Federal Agency.  Office of the Chief Information Officer (OCIO) is responsible for delivering efficient and effective information technology (IT) to support the Agency's mission.  Dependent on a large and complex IT infrastructure to accomplish its citizen-centered safety, mobility, economic and security missions; must ensure that this infrastructure is secure from attacks and other disruptions.

Situation:  Identified IT Security as a candidate for centralized delivery.  Currently detect thousands of potential cyber attacks against their infrastructure on a daily basis.  New system vulnerabilities identified daily.  Hundreds of thousands of network addressable devices Department-wide, with the majority of these devices average 50 moderate or critical security patches per year.  FISMA reporting and internal audit requirements made development of an agency wide initiative and imperative.  Without automation, it was determined that they would need hundreds of additional staff members for IT and Information Security activities needed in order to comply with the requirements.  Needed FDCC compliance, and a NIST SCAP validated solution for continuous monitoring.

Solutions Implemented: IS Control Auditing, Policy Management, Vulnerability Management, Asset Monitoring, Remediation.

Results:    The C5 Compliance Platform addressed their needs since they were able to take advantage of a phased rollout of the solutions, yet deploy one product at price significant less than alternative solutions.  In addition, they have received praise from their internal auditor since implementing the solution for information security control auditing that reports audit scores mapped to IA Control Numbers provided from NIST as part of the NIST Information Security Automation Program (ISAP). 

Deputy CSO Quote: "Our Agency continues to demonstrate thought leadership and excellence of execution for an overall vulnerability reduction management program for critical government infrastructures.  We are impressed and proud of our work with Secure Elements.  Given the recent OMB guidance for secure desktop configuration, our plan for compliance is easy:  Secure Elements and the C5 Compliance Platform.  It's all about SCAP!"

© 2008 Secure Elements All Rights Reserved.