|
|
Advertisement
|
|
Software measures effectiveness of GRC initiatives.
March 24, 2008 -
Using Security Performance Manager v2.0, IT and security executives can consistently measure, monitor, and communicate state, business impact, and effectiveness of overall IT governance, risk, and compliance initiatives. Program provides complete, automated view of organizations' security performance through use of metrics and scorecards. Packages include Threat and Virus Management, Identity and Access Management, Vulnerability and Patch Management, and Compliance.
(Archive News Story - Products mentioned in this Archive News Story may or may not be available from the manufacturer.) |
|
|
| |
| |
|
Advertisement
|
|
|
Newsletters |
Your Gateway to a Fast
Changing World
Product News Alerts |
 |
Receive similar stories and other customized
news to keep you in the know on the products shaping
industry. |
Subscribe Free Today
Subscribe View
Sample |
Industry
Market Trends
Has Got It |
- Latest developments
- Trends
- Best practices
- Opinions & Commentary
|
 |
Get Ahead.
Get IMT.
Subscribe Free Today
Subscribe View
Sample |
|
|
|
|
ClearPoint Metrics Announces Enhanced Security Performance Manager Solution
Metrics and Scorecards Respond to Industry Needs to Measure, Monitor and Communicate the Effectiveness of GRC Initiatives
CHELMSFORD, Mass., March 17 /- ClearPoint Metrics, a leader in performance management and metrics solutions, today announced Security Performance Manager(TM) V2.0, an integrated software and content solution, designed to enable IT and security executives to consistently and reliably measure, monitor and communicate the state, business impact and effectiveness of their overall IT governance, risk and compliance (GRC) initiatives.
Unlike approaches which rely on manual processes or cumbersome data warehouses that come with their own information security concerns as well as high costs, ClearPoint's Security Performance Manager provides a complete, automated and cost-effective view of an organization's security performance through the use of metrics and scorecards. ClearPoint's pre-built data adapters, metrics and scorecards allow CISOs and their teams to quickly and effectively launch and sustain an information security metrics initiative. Now, security executives are able to monitor and communicate the progress of their information security initiatives with a reliable, consistent and auditable solution.
"ClearPoint is doing for the CISO what integrated financial reporting and management systems do for the CFO," said James Acquaviva, CEO of ClearPoint Metrics. "Based on the best practices of our customers and industry experts, our solution allows customers to move beyond self assessments and surveys and deliver the hard facts and data that validate the state of their information security initiatives and enables better decision making. For the first time, organizations can confidently evaluate their security investments within the context of the enterprise and proactively align their initiatives that safeguard information assets with their business priorities."
Recent best practice frameworks, including ISO 27000 and CobiT, are now prescribing or mandating metrics as a required component of certification, increasing the demand for solutions that help IT organizations create a centralized approach to managing risk and compliance, while simultaneously meeting governance objectives. Security Performance Manager delivers on compliance requirements by automating IT and information security performance assessment, measurement and metrics that express the business impact of security investments, provide hard facts and data to verify the existence and efficacy of controls and demonstrate the alignment of IT and information security with an organization's business objectives.
According to the Forrester report, "Defining IT GRC" issued December 2007 and written by Khalid Kark, Marc Othersen and Chris McClean, "IT GRC initiatives have traditionally been scattered across the organization without any coordination or synchronization. It is not uncommon for different business areas to develop their own solutions for the same requirement or for IT to deploy multiple technologies to address a common issue. Not only do these separate initiatives create inefficiency, but these silos also make it very hard to assess and manage risks holistically. As a result, there is a growing demand for solutions to help IT organizations effectively breakdown these silos and create a centralized approach to managing risk and compliance while simultaneously ensuring good governance."
ClearPoint's Security Performance Manager includes best-practice content for specific security initiatives. ClearPoint's pre-built packages offer companies a fast, flexible and cost-effective way to deliver automated, consistent and authoritative information security metrics and scorecards. Packages are easily customized and provide the data needed to support risk analysis and resource allocation decisions. ClearPoint's packages include:
-- Threat and Virus Management: Provides managers with scorecards and metrics that give visibility of the management and performance of systems providing protection against internal and external threats and viruses. The package metrics leverage data from enterprise AV, IDS and incident management systems and communicate results on scorecards around: the type and source of threats and virus; quantity and quality of remediation efforts; coverage and activity on intrusion detection systems; and quantity and outcomes of security incident responses.
-- Identity and Access Management: Identity and access metrics provide visibility into the user base of an organization directly from directory systems and account management tools. Then, scorecards show: trends in the number and types of accounts; when and how users access systems; aggregate provisioning/de-provisioning status; and key risks areas such as user rights to high value and sensitive assets.
-- Vulnerability and Patch Management: Enables uses to detect, trend and manage existing concentrations of risk with metrics that access the results of vulnerability scanning, patch management and support ticket systems across the enterprise. Scorecards assess the coverage and outcomes of the vulnerability scanning process; visualize the state and trends of the remediation of known vulnerabilities; and state the condition of patch application processes and the residual risks across the organization.
-- Compliance: Provides scorecards that show: the current state, trends and effectiveness of key performance indicators for ISO 27002 controls and control areas; the profile of PCI DSS systems in an organization; the state and effectiveness of controls around the 12 PCI DSS requirements; and the state of SOX internal controls and material events around critical systems. This package is a supplement to the three core packages.
First available in 2006 and now updated, ClearPoint's Security Performance Manager is built upon ClearPoint's Metrics Management Platform, including the Metrics Design Studio, Metrics Production Server and Metrics Communication Server. Together, they provide the tools to create and manage metrics and scorecards, automate the data collection across disparate data sources, and deliver a web-based portal for communicating scorecards to users. Significant enhancements to the Metrics Management Platform include:
-- Improved Ability to Present Scorecards to Users: Enhanced presentation views and design capabilities allow advanced control and flexibility for the end-user.
-- Significantly expanded set of data adapters: New data adapters offer broad coverage and easy access to element tools, asset management systems and user directories. With nine new adapters, ClearPoint supports over 35 vendor specific products and general purpose connectors for CSV files, ASCII logs, Excel, JDBC/ODBC, LDAP, JCA and web services.
-- Improved Metrics Production System: In addition, the Metrics Management Platform offers improved processing scale with the ability to run multiple production servers.
ClearPoint's Security Performance Manager equips CIOs and CISOs at global 2000 companies across many vertical markets, including financial services and manufacturing, with the data needed to make intelligent decisions on information security management. The upgraded packages and enhancements in 2.0 will help current and future customers quickly and effectively launch an information security metrics initiative, complying with the standards and mandates set by industry groups and regulators.
Pricing & Availability
ClearPoint Metrics' Security Performance Manager packages are available immediately and pricing begins at $50,000 per package per year. Enterprise licensing is also available. Each package includes the Metrics Management Platform.
For more information on the Security Performance Manager, visit www.clearpointmetrics.com.
About ClearPoint Metrics
ClearPoint Metrics solutions enable IT and Security executives and their teams to consistently and reliably measure, monitor and communicate the state, business impact and effectiveness of their IT governance, risk and compliance initiatives. As both regulatory and best practice frameworks mandate the use of metrics, ClearPoint delivers the hard facts and data that evidence the existence and efficacy of internal controls and the executive views and scorecards that enable evaluation of performance and alignment with business objectives. CIOs and CISOs of leading Global 2000 companies rely on ClearPoint Metrics software and best practice know-how to quickly and cost effectively implement a successful metrics initiative supporting their strategic imperatives and establishing a foundation for constant improvement in safeguarding their organization's information assets. www.clearpointmetrics.com.
CONTACT: Yvonne Cekel of ClearPoint Metrics, +1-978-967-1061, ycekel@clearpointmetrics.com
Web site: http://www.clearpointmetrics.com/
Contacts:
Public Relations:
SHIFT Communications
Suzanne Aronowitz
USA
Phone: 617-779-1814
E-mail this person
General Information:
Yvonne Cekel
USA
Phone: 978-967-1061
E-mail this person
Company Information:
Name: ClearPoint Metrics
Address: One Kendall Square,Building 300,Second Floor
City: Cambridge
State: MA
ZIP: 02139
Country: USA
Phone: 617-844-1200
FAX: 617-621-0104
http://www.clearpointmetrics.com
|
|
|
|
|
 |
ThomasNet News Advertisers
|
 |
|