Solutions for Vulnerability Management
NIST SCAP Validated
Vulnerability Management has become a mandatory process within a risk adverse environment. The ever increasing number, and sophistication, of threats requires a systematic approach to the problem that scales to the enterprise environment and supports current practices.
The C5 Compliance Platform supports enterprise wide vulnerability management programs by collecting suspected vulnerabilities from 3rd party network vulnerability assessment scanners that you may have in use today, as well as performing host based vulnerability assessments - with no false positives, and we provide a unified view of all assets with vulnerabilities from all sources. To help prioritize what can often seem to be an overwhelming volume of vulnerabilities, we enable activities to be prioritized by items such as severity of vulnerability, asset criticality, or even the business function of the asset if required.
Unique to the C5 Compliance Platform is matching of vulnerabilities reported with one or more known remediations in a single view to the operator. This enables decisions regarding patches versus configuration changes versus external mitigation to be determined quickly, with all the required information available at the same time. The state of the vulnerability is tracked over time, and once remediated by C5 or via external systems or even manually, it will be annotated and recorded as Resolved for compliance and audit purposes.
Given the astounding growth rate of new vulnerabilities, the Secure Elements Security Labs continually updates the customer XML feeds with new vulnerability checks, matching signatures, and remediations making updates available to our customers immediately.
Audit. Evaluate. Comply. It really is that simple.
|