Features and BenefitsBetter Operational Efficiency: Not only does Compliance Central enable organizations to determine its IT compliance status, but it also helps to determine an organization’s security posture against a standard framework, such as ITIL. With this knowledge, an organization can meet its compliance initiatives and improve operational efficiency by increasing uptime, using resources more efficiently and improving system knowledge.
Improve Visibility: Compliance Central allows administrators to schedule reports and have them distributed to the appropriate decision-makers. Reports include user information, group memberships, security settings and access permissions (ranging from workstations to Windows servers and Active Directory). This capability allows administrators to baseline their environment, as well as track changes to security rights and groups, giving them unprecedented visibility into their directory and user activity.
Automate Report Distribution: With Compliance Central, you can automate the distribution of important directory and activity information on a daily, weekly or monthly basis. These reports can be saved in a number of formats for sorting and graphical representation. Report PacksPCI Report Pack
 | | PCI Report Pack assists with preparing for and supporting IT audits related to the Payment Card Industry (PCI) Data Security Standard (DSS). |
This report pack is designed to assist with preparing for and supporting IT audits related to the Payment Card Industry (PCI) Data Security Standard (DSS) for customers who have already deployed one or more Quest compliance-enabling solutions for Windows and infrastructure management supported by this report pack (these include the InTrust family products, Reporter and its Configuration Baselining add-on module, and ActiveRoles Server). This report pack provides users of these solutions evidence of cardholder data protection within an organization’s IT infrastructure to address compliance with key requirements of the DSS. Reports available in this report pack address (and are mapped to) the following sections of the PCI DSS: - Requirement 2: Do not use vendor-supplied default security parameters
- Requirement 4: Encrypt transmission of cardholder data and sensitive information across public networks
- Requirement 5: Use and regularly update anti-virus software
- Requirement 7: Restrict access to data by business need-to-know
- Requirement 8: Assign a unique ID to each person with computer access
- Requirement 10: Track and monitor all access to network resources and cardholder data
- Requirement 11: Regularly test security systems and processes
SOX Report Pack  | | SOX Report Pack assists with preparing for and supporting IT audits related to the U. S. Sarbanes-Oxley Act (SOX). |
This report pack is designed to assist with preparing for and supporting IT audits related to the U.S. Sarbanes-Oxley Act of 2002 for customers who have already deployed one or more Quest compliance-enabling solutions for Windows and Infrastructure Management: (these include InTrust family products, Reporter, ActiveRoles Server, and Message Stats). This report pack provides users of these solutions evidence of key general controls within an organization’s IT infrastructure to address compliance with the internal control provisions of the U. S. Sarbanes-Oxley Act (SOX). Reports available in this report pack are mapped to the following sections of SOX: - Sec. 302 Corporate Responsibility for Financial Reports
- Sec. 404 Management Assessment of Internal Controls
- Sec. 802 Criminal Penalties for Altering Documents
HIPAA Report Pack  | | HIPAA Report Pack assists supporting IT audits related to sections 308 and 312 of part 164 of the Security Rule of the U.S. Health Insurance Portability and Accountability Act (HIPAA). |
This report pack is designed to assist with preparing for and supporting IT audits related to sections 308 and 312 of part 164 of the Security Rule of the U.S. Health Insurance Portability and Accountability Act (HIPAA) of 1996 for customers who have already deployed one or more Quest compliance-enabling solutions for Windows and infrastructure management supported by this report pack (these include the InTrust family products, Reporter, ActiveRoles Server, and MessageStats). This report pack provides users of these solutions evidence of administrative and technical safeguards around electronic protected health information (EPHI) within an organization’s IT infrastructure to assist in addressing compliance with key administrative and technical safeguard requirements of the HIPAA Security Rule. Reports available in this report pack address (and are mapped to) the following sections of the Security Rule: - § 164.308 (a)(1) Security Management Process
- § 164.308 (a)(3) Workforce Security
- § 164.308 (a)(4) Information Access Management
- § 164.308 (a)(5) Security Awareness and Training
- § 164.308 (a)(6) Security Incident Procedures
- § 164.312 (a) Access Control
COSO Report Pack  | | COSO Report Pack assists supporting IT audits related to the 1992 and 2004 control frameworks of the Committee of Sponsoring Organizations of the Treadway Commission (COSO). |
This report pack is designed to assist with preparing for and supporting IT audits related to the 1992 and 2004 control frameworks of the Committee of Sponsoring Organizations of the Treadway Commission (COSO) for customers who have already deployed one or more Quest compliance-enabling solutions for Windows and Infrastructure Management: (these include InTrust family products, Reporter, ActiveRoles Server, and Message Stats). This report pack provides users of these solutions evidence of key controls within an organization’s IT infrastructure to address compliance with either COSO framework. Reports available in this report pack are organized in three areas that can be mapped to the following sections of the COSO frameworks: Securing the Environment - COSO 1992 Control Activities
Tracking User Activity - COSO 1992 Control Activities
- COSO 1992 Information and Communication
- COSO 1992 Monitoring
- COSO 2004 Event Identification
Alerting to Potential Violations - COSO 1992 Control Activities
- COSO 1992 Information and Communication
- COSO 2004 Event Identification
Get the Report Packsl
|