| Metric App | Description |
|---|---|
|
|
The Identity and Access Management Metrics and Scorecards provide visibility and insight into the effectiveness of the organization’s controls for managing user access privileges, authorization, and authentication to critical information systems. This package focuses on three critical control objectives: ensuring proper access to information systems, monitoring user activity and account status, and user authentication policy compliance. |
|
|
The Metric Application for Active Directory is an easy way to appraise the power of the complete Metric Application Package for Identity and Access Management. The Active Directory scorecards utilize information from your Active Directory Domains to illustrate the effectiveness of controls for ensuring proper access to information systems, monitoring login activity and account status, and enforcing authentication policy compliance. |
|
|
The Threat and Virus Management Metrics and Scorecards provide an analysis of initiatives designed to detect, protect, defend, and sustain the information system environment from external attacks and determine the effectiveness and appropriateness of response and remediation actions. This package focuses on three critical control objectives: effectiveness of incident response activities, the adequacy and impact of intrusion monitoring systems, and identification and remediation of malware. |
|
|
The Metric Application for McAfee ePolicy Orchestrator Antivirus is an easy way to appraise the power of the complete Metric Application Package for Threat and Virus Management. The McAfee ePO4 scorecards utilize information from your McAfee ePO database to illustrate the effectiveness of incident response activities, the adequacy and impact of intrusion monitoring systems, and identification and remediation of malware. |
|
|
The Metric Application for Symantec AntiVirus is an easy way to appraise the power of the complete Metric Application Package for Threat and Virus Management. The Symantec AntiVirus scorecards utilize information from the Symantec AntiVirus reporting database to illustrate the effectiveness of effectiveness of incident response activities, the adequacy and impact of intrusion monitoring systems, and identification and remediation of malware. |
|
|
The Metric Application for Symantec Endpoint Protection is an easy way to appraise the power of the complete Metric Application Package for Threat and Virus Management. The Symantec Endpoint Protection scorecards utilize information from the Symantec Endpoint Protection reporting database to illustrate the effectiveness of effectiveness of incident response activities, the adequacy and impact of intrusion monitoring systems, and identification and remediation of malware. |
|
|
The Vulnerability and Patch Management Metrics and Scorecards enable organizations to proactively analyze the effectiveness of the initiatives designed to prevent the exploitation of critical IT assets, assure operational availability through timely patching, and assess risk mitigation programs. The solution focuses on three key initiatives: effectiveness of vulnerability identification efforts, adequacy and impact of remediation programs, and timeliness and completeness of patching efforts. |
|
|
The Metric Application for McAfee Vulnerability Manager is an easy way to appraise the power of the complete Metrics Application Package for Vulnerability and Patch Management. The McAfee Vulnerability Manager scorecards utilize information from your McAfee Vulnerability Manager environment to illustrate the effectiveness of vulnerability identification efforts, adequacy and impact of remediation programs, and timeliness and completeness of patching efforts. |
|
|
The Metric Application for nCircle SIH is an easy way to appraise the power of the complete Metrics Application Package for Vulnerability and Patch Management. The nCircle SIH scorecards utilize information from your nCircle SIH environment to illustrate the effectiveness of vulnerability identification efforts, adequacy and impact of remediation programs, and timeliness and completeness of patching efforts. |
|
|
The Metric Application for QualysGuard is an easy way to appraise the power of the complete Metrics Application Package for Vulnerability and Patch Management. The QualysGuard scorecards utilize information from your QualysGuard environment to illustrate the effectiveness of vulnerability identification efforts, adequacy and impact of remediation programs, and timeliness and completeness of patching efforts. |
|
|
The Metric Application for Microsoft WSUS is an easy way to appraise the power of the complete Metrics Application Package for Vulnerability and Patch Management. The Microsoft WSUS scorecards utilize information from your Microsoft WSUS environment to illustrate the effectiveness of vulnerability identification efforts, adequacy and impact of remediation programs, and timeliness and completeness of patching efforts. |
|
|
The Data Security Management metrics and scorecards provide insight into the effectiveness of the organization’s controls to ensure the confidentiality, integrity, and availability of sensitive data. This package focuses on two critical control objectives: protect data while at rest, in use, and in motion; and protect devices that contain sensitive data. |
|
|
The Payment Card Industry Data Security Standard (PCI DSS) metrics and scorecards are designed to assist organizations with communicating their risk assessment and information security compliance efforts. The solution maps metrics to important legislative and best practice compliance frameworks and delivers specifically designed scorecards to assist with compliance reporting and risk profiling for PCI DSS. |
|
|
The Federal Information Security Management Act (FISMA) metrics and scorecards are designed to assist organizations with communicating their risk assessment and information security compliance efforts. The solution maps metrics to important reliability standards and best practice compliance frameworks and delivers specifically designed scorecards to facilitate compliance reporting and risk profiling for FISMA assets. |
|
|
The Healthcare Compliance package consists of metrics and scorecards designed to follow, measure, and assess an organization's alignment with the Healthcare industry's Information Security guidelines. The implementation of this package will evidence the existence of security policies in place and can be configured to measure how close an organization is to compliance. |
|
|
The North American Electric Reliability Corporation (NERC) metrics and scorecards are designed to help organizations communicate their risk assessment and information security compliance efforts. The solution maps metrics to important reliability standards and best practice compliance frameworks and delivers specifically designed scorecards to facilitate compliance reporting and risk profiling for NERC assets. |
|
|
The Sarbanes Oxley (SOX) metrics and scorecards are designed to help organizations communicate their risk assessment and information security compliance efforts. The solution maps metrics to important legislative and best practice compliance frameworks and delivers specifically designed scorecards to facilitate compliance reporting and risk profiling for SOX assets. |