Vulnerability Assessment Software features OVAL support.

Press Release Summary:



By accessing Open Vulnerability Assessment Language (OVAL) libraries of publicly reported vulnerabilities, BigFix Enterprise Suite(TM) helps IT departments execute policy decisions, remediation, and change analysis for endpoint servers, PCs, and mobile devices in real-time. Program also facilitates compliance assessment, and OVAL support lends to data security visibility, control, and delivery capabilities.



Original Press Release:



BigFix Adds 'OVAL' Standard Support to Real-Time Vulnerability Assessment Capabilities



Access to OVAL Vulnerability Libraries Strengthens Vulnerability Identification Abilities, Speeds Remediation

EMERYVILLE, Calif., Nov. 7 -- BigFix, a leading provider of enterprise IT security configuration management solutions, has expanded its real-time compliance assessment capabilities through a new capability based on the Open Vulnerability Assessment Language (OVAL) standard. By accessing OVAL libraries of publicly reported vulnerabilities, the BigFix Enterprise Suite(TM) helps IT departments execute policy decisions, remediation and change analysis for endpoint servers, PCs and mobile devices in real-time, reducing cost and complexity while improving service delivery quality.

"OVAL is fast becoming an important industry and government standard that can help IT departments more rapidly identify and correct vulnerabilities that negatively impact infrastructure security and regulatory compliance," said Gregory Toto, vice president of product management at BigFix. "Many organizations lack timely and cost-effective means to assess and remediate security issues in distributed networks. Adding OVAL support to the real-time visibility and control capabilities of the BigFix Enterprise Suite product, gives customers a scalable, easy-to-deploy solution to address a broad range of documented vulnerability and configuration issues while reducing infrastructure-wide TCO and improving quality of service."

BigFix for OVAL Support

Adding OVAL support aligns with BigFix's strategy of continually expanding the data security real-time visibility and control capabilities of the BigFix Enterprise Suite product line. In May 2005, BigFix introduced a solution targeting Microsoft Windows-specific security vulnerability issues based on the SysAdmin, Audit, Network, Security (SANS) Institute's Top 10 Most Commonly Exploited Windows Services. In October 2005, the company reported that it has applied for US Common Criteria certification for the BigFix Enterprise Suite product.

OVAL is an international cyber security initiative endorsed by the US Computer Emergency Response Team (US-CERT) and the Department of Homeland Security that prescribes a baseline for vulnerability testing on endpoint systems. The OVAL standards are built around a dictionary of standardized names and descriptions for publicly known information security vulnerabilities and exposures called the Common Vulnerabilities and Exposures (CVE). The OVAL effort involves representatives from a broad spectrum of industry, academic, and government organizations, including operating system and security tool vendors.

Pricing and Availability

OVAL vulnerability assessment will be included as a feature in the price of the BigFix Enterprise Suite Vulnerability Management solution with customer availability scheduled for December 2005.

About BigFix, Inc.

BigFix enables organizations to better manage their global IT infrastructures with solutions to discover, analyze, change and maintain security and software configurations faster and more accurately, resulting in improved processes, greater visibility, better security and more reliable services while reducing costs. For more information, visit www.bigfix.com.

NOTE: BigFix, BigFix Enterprise Suite and the BigFix logo are trademarks of BigFix, Inc. Other trademarks, registered trademarks and service marks are property of their respective owners.

CONTACT: Jason Throckmorton or Brett Weiner, both of LaunchSquad, +1-415-625-8555, or bigfix@launchsquad.com

All Topics