Audit Collection Service

Secure Vantage Technologies has launched a series of solutions that leverage the enhanced monitoring capabilities of Operations Manager 2007 and Audit Collection Services. With Audit Collection and the new MOM service-oriented monitoring structure, Secure Vantage has vastly improved current product offerings in the Windows Server Security market. We continue to work closely with Microsoft to deliver Compliance Security Solutions designed for Operations Manager 2007 and ACS.

Solutions available for the Audit Collection Service Include:

Key solutions

Audit Collection Admin

The Audit Collection Admin provides a graphical console interface to centrally manage the Audit Collection Service. This solution centralizes administrative tasks, information and reporting into an easy to use console within System Center Operations Manager 2007.

Key Technology Features

  • AdtAdmin User Interface
  • Collector Performance & Health
  • Event Load Statistics & Reporting
  • Event Forwarder Analysis
  • Noise Filter Management

Audit Collection Archiver

ACS Collectors groom security data regularly to maintain collection performance leaving a customer need for long-term storage and historical reporting. The Audit Collection Archiver introduces historical archiving and reporting across ACS Collectors.

As online data partitions get groomed they are written to compressed text files for near-line storage and can eventually be moved to preferred offline storage. Near-line storage can be accessed on demand or alternatively Base Reporting can be run directly against the near-line storage repository.

Key Technology Features

  • Daily Data Archival
  • Reduced Storage with compressed text files
  • On Demand Historical Access
  • Optimized Offline Compression
  • Reporting across Multiple Collector Repositories
  • Recreates SDK views

Audit Collection Base Reporting

The Audit Collection service Base Reporting solutions provide in-depth forensic analysis services for Windows security events introducing advance analytics and guidance. Leverage your ACS infrastructure today and implement the auditing capabilities you always wanted. Base reporting is split into two modules: Forensic Analyzer and the IT Auditors Pack.

Report Samples
Cover Page
Cover Page

Standard Reporting Features:

  • Dynamic Grouping and Sorting
  • Document Maps
  • PDF Optimization
  • Comprehensive Attribute Filtering
  • Multi-Select Parameter Options
  • Summary to Detail Drilldown
  • Noise Filter Templates
  • Event Detail Drilldown ~ Sample
Summary Page
Summary Page

Forensic Analyzer:

  • Based on Security Category
  • Enriched event correlation
  • Event Load Analysis
Details Page
Details Page

IT Auditors Pack:

Audit Collection Compliance Reporting

Compliance Reporting for ACS introduces extended security scenario reporting designed by Microsoft Security MVP, Randy Franklin Smith. These reports provide direct visibility into audit control scenarios with detailed user guidance and regulation control mapping designed to optimize your best practices and report usage.

Extended Features:

Samples
itap1
Cover Page

ACS Base Summary
Usage Guidance

itap3
Summary Page

itap2
Details Page
  • Usage Guidance
    • Audience
    • Frequency
    • Rationale
    • Control Mapping
  • Regulation & Standard Support
    • CoBits
    • DS484
    • FISMA
    • GLBA
    • HIPAA
    • ISO 17799
    • PCI

Sample Auditing Scenarios:

  • Administrator Logons
  • Domain Policy Changes
  • General Object Changes
  • Group Member Additions
  • Group Member Deletions
  • Group Policy Changes
  • Permission Changes
  • Privilege Use Activity
  • Users - Deleted or Disabled
  • Users - Lockouts and Password Resets
  • Users - New or Enabled
  • User, Groups and Computers Consolidated

Audit Collection SYSLOG Gateway

The Secure Vantage Audit Collection Syslog Gateway provides centralized security event collection, analysis and reporting across platforms and applications. The Audit Collection Syslog Gateway enables customers to forward syslog event streams to a central gateway server for integration with the ACS collection stream.

Included with the gateway is a Managment Pack to simplify deployment, generic reports for syslog events and guidance on optimizing reports for new data sources.

Features Overview:

  • Syslog event processing
  • ACS integration
  • Syslog Management Pack
  • Generic Reports
  • Generic Report Templates
  • Base Reporting Integration
  • Optimization Guidance

Heterogeneous Security:

  • Alerting and Operations
  • Archiving and Historical Reporting
  • Compliance Knowledge Modules
  • Conslidated Collector Reporting
  • Log Replay & Blacksite Support
  • Security Reporting Portal
  • Application Event Integration

News & Events

Press Release 05/21/2008: Secure Vantage Technologies partners to create a Security Management Partner Solutions bundle for System Center customers


Press Release 04/29/08: Secure Vantage Technologies Enables Datacenter Lockdown with Compliance Security Suite for Microsoft System Center


Read more