PatchLink Security Management Console

Consolidated Vulnerability Management

Effectively managing the onslaught of threats targeting today’s large, complex networks often requires a large number of IT professionals deploying disparate point solutions across multiple locations. This requirement of process and technology increases security management costs and reduces your ability to enforce global policies or generate compliance audit information.

The PatchLink Security Management Console delivers centralized command and control of your entire vulnerability management process - network discovery, agent deployment, vulnerability assessment, threat remediation, audit and reporting - all from a single, central location. The Security Management Console is a role-based security management interface that can direct multiple PatchLink Scan assessment and/or PatchLink Update remediation engines, enabling uniform policy enforcement and enterprise-wide compliance report generation.

  • Enterprise Security Visibility
  • Centralized Policy Enforcement
  • Aggregate Policy Compliance Reporting
  • Improved Operational Efficiency

Overview

Enterprise Visibility

By aggregating network discovery and vulnerability assessment information from multiple PatchLink Scan and PatchLink Update engines throughout your enterprise, the Security Management Console provides you with complete visibility into the security posture of every asset in your environment, including routers, printers, servers, laptops, switches, wireless access points and more. This comprehensive discovery allows you to identify all unmanaged and rogue devices that are susceptible to attack. Once these devices are identified, you can automatically deploy remediation agents with a few mouse clicks.

The Security Management Console also provides on-demand aggregation of detailed vulnerability assessment data from all network and agent-based scans, providing a holistic view of the vulnerabilities that exist within your organization. The solution allows for both top-down and distributed network administration and supports the traditional security principles of least privilege, separation of duties, data abstraction, and the security tenet of “need to know”.

Centralized Enforcement of Security Policies

The Security Management Console provides flexible and granular definition and enforcement of vulnerability management policies across your entire enterprise. Using a capability called Mandatory Baseline, you can set minimum security thresholds that must be met by each managed machine. If the patch levels identified in the baseline policy do not exist on the machine, the local agent will automatically request and execute the appropriate patches, bringing the machine into compliance with corporate policy.

Aggregate Policy Compliance Reporting

IT professionals have more responsibility than ever to prove security policy and regulatory compliance to internal and external auditors. The PatchLink Security Management Console gives you comprehensive visibility into your entire vulnerability management process, empowering you to resolve issues, demonstrate compliance, and feel assured before an audit takes place. The solution delivers flexible and customizable reporting, allowing you to demonstrate compliance with agent tracking and deployment history, network inventory management, network or agent-based scans, vulnerability remediation and much more.

Improved Operational Efficiency

The central management of your entire vulnerability management process improves IT productivity by eliminating the waste from managing multiple interfaces or tying together data from multiple, disjointed systems. PatchLink Security Management Console supports a hierarchical implementation, where multiple ‘sub-consoles’ may be deployed throughout your network to support the centralized collection and aggregation of threat, remediation, audit and inventory information from multiple PatchLink engines. This aggregation of data from disparate engines dramatically reduces the effort required to prepare consolidated reports in support of IT policy or regulatory compliance. It also reduces conflicting recommendations for mitigation and tightens the communication between multiple IT and security organizations.

Features & Benefits

  • Flexible Architecture - Flat or Hierarchical implementations, with a single management console instance or multiple consoles rolling up into a centralized, master console.
  • Common Criteria EAL2 Certified - Complies with the all specified security requirements of the CCS Certification Body
  • Consolidated Views - Multiple scan and remediation reports can be merged together to form a comprehensive security posture
  • Highly Scalable -Currently deployed by customers across hundreds of thousands of endpoints.
  • Role-Based Administration - Delegate remediation and reporting activities to improve productivity while maintaining security
  • Policy-Based Administration - Push out mandatory baseline policies to all endpoints — a key aspect of regulatory compliance
  • Standard Industry Classifications - Identified vulnerabilities are linked to common industry vulnerability classifications like CVE, BugTraq and IAVA codes for easy identification, analysis and remediation.
  • Comprehensive Reporting - Document changes and demonstrate progress toward audit and compliance requirements with enterprise & local reporting of asset inventory, network or agent-based scans, vulnerability remediation and much more
  • Global Installation Support - Inclusion of international date / time designations for assessment and remediation activities and A4 support for report generation

Requirements

Minimum System Requirements:

Processor Requirements: Pentium® compatible 1 GHz
Memory Requirements: 512 MB RAM
Disk Capacity Requirements: 20 GB available disk space
Display: Monitor resolution 1024 x 768
Operating System:
  • Windows 2000 Server SP4
  • Windows 2000 Advanced Server SP4
  • Windows XP Professional SP2
  • Windows Server 2003 SP1