AlertMonitor
Privileged User Access Management for the Enterprise
Overview
What do you do when the very people entrusted with running your most critical systems and applications are turning to the dark side? AlertMonitor delivers the ability to give administrators or technicians, highly privileged access for a pre-set duration to conduct emergency response to incidents presently occurring. During this special access period all tasks are monitored, analyzed and logged ensuring complete visibility and transparency. When the tasks are complete, the normal restrictions to access are automatically restored while avoiding potential high-impact vulnerabilities. AlertMonitor is an innovative solution that extends the risk analysis of IT access to include Physical Access Control Systems (PACS) as well as video surveillance. This delivers a more complete picture of systems, applications, facilities and critical assets that a privileged user has touched while they have enhanced access.
Challenges
Organizations usually do not have the ability to monitor privileged access to critical enterprise applications and systems that extend across multi-vendor lines. One of the biggest concerns to auditors and regulators alike is the severity of the business impact from an insider incident. The attacks are longer, harder to detect and can create effects that can last for months or even years.
It is no longer sufficient to monitor just IT access alone. Real-world incidents don’t occur in IT and non-IT silos. Events that occur in any one domain by themselves may appear completely innocent. When correlated with physical security events or changes in critical processes may paint a more sinister picture.
Solution
AlertMonitor is a multi-domain, multi-platform privileged user management application. It enables organizations to automate the monitoring of individuals entrusted with the most critical access in the organization. Auditors and regulators have stepped up the focus on closing this gap. AlertMonitor enforces the least privilege principle in an organization and ensures business run with minimal risk even if privileged critical access is used to in an operational environment. The application delivers compliance with various regulations and monitoring of supervisory access across IT and physical access controls systems.
Benefits
• Uncover risks lurking between application and operating system silos
• Single interface to manage insider threat and for IT, Physical Access Control and Critical Assets
• Unify disjointed processes of granting and removing access privilege in a single application
• Eliminate mistakes and oversight such as forgetting to remove emergency access
• Ability to intercept and respond to incidents in real-time
• Stay in continuous compliance at all times
• Sophisticated logging and reporting for enhanced audit support
• Actively enforce policies with mitigating controls like video surveillance and proximity sensors.
|