|
|
|
|
Requires a variety of assessments to be performed on a regular basis
|
Systems, applications, and infrastructure that process financial information
|
Enterprise Compliance Assessments
|
Requires the capture, monitoring, response, and retention of file logs for at least one year.
|
|
Log Management Tool Selection Assistance
|
Requires regular assessment of network and application level vulnerabilities.
|
|
Vulnerability Management Tool Selection Assistance
|
Requires intrusion detection for network security with events stored for at least one year.
|
Intrusion prevention of financial reporting systems, both host and network-based
|
Intrusion Detection Management (IDS) Selection Assistance
|
Requires firewalls with logs that are captured, monitored, and responded to, retained for at least one year.
|
Firewalls, proxies, gateways and network access control devices that protect financial reporting systems
|
Firewall Management Evaluation & Tool Selection Assistance
|