Latest News
Accumuli selected as Zscaler Summit Partner
Accumuli (AIM:ACM), the provider of advanced IT security services, is pleased to announce that it hasentered into a channel partnership agreement with... more
Trends and Truths in DDoS Attacks
The first point to note is that while hacktivism hits the headlines, it is not according to Neustar the primary motive behind DDoS attacks: ... more

Managed File Integrity Monitoring Service

The Accumuli Security Managed File Integrity Monitoring Service is used to bolster an organisation's security posture by providing file integrity monitoring.

Based upon technology from Tripwire, the Accumuli Security Managed File Integrity Monitoring Service notes changes to critical and non-critical files, but also captures detail necessary to identify risks or threats accompanying these changes. It determines who made the change and when, what actions occurred before or after, and if the change was authorised. It even determines when configurations drift from a known and trusted state.

When the Payment Card Industry Data Security Standard (PCI DSS) was introduced in 2004, it made file integrity monitoring a pivotal security best practice. The PCI standard based its definition of file integrity monitoring on capabilities Tripwire developed in 1995 and has since expanded.

The Managed File Integrity Monitoring Service determines if file or configuration integrity is truly intact from top to bottom, with visibility to raw file contents and attributes (like hostname, user name, ticket number, and date and time stamp), permissions, registry settings and security parameters.

The Managed File Integrity Monitoring Service enables an organisation to monitor:

  • Servers
  • Applications
  • Databases
  • Virtual environments
  • Network devices

Tripwire Enterprise establishes a baseline and then provides assurance and protection of that known and trusted state. It prevents configuration drift and the visibility of changes that introduce vulnerabilities, like open ports and enabled FTP servers.

The software provides two key functions:

  • File Integrity Manager
  • Policy Compliance Manager

These elements help you determine, attain and maintain your system integrity by authoritatively answering the critical questions:

  • Are my key data assets secure?
  • Are my key data assets compliant?
  • Are my key data assets staying secure and staying compliant?

24/7 Monitoring

Accumuli Security's dedicated Security Operations Centre will monitor the nominated hosts and devices against the defined file integrity policy. It will also monitor the nominated hosts and devices against the defined compliance policy.

Together with the customer, Accumuli Security will agree an incident response matrix to allow the categorisation of any Tripwire generated incidents. The Acumuli Security SOC will provide a defined incident handling and tracking procedure that will be invoked if and when any monitored hosts and devices deviate outside the defined file integrity and compliance policies. This incident handling process will be performed in line with the Accumuli Security Service Level Agreement and the incident matrix.

Reporting

Accumuli Security will use, as a default, the standard reporting structures of:

  • Business Critical File Integrity Check Reporting
  • Forensic File Integrity Check Reporting
  • Policy Compliance Reporting
  • Accumuli Security will deliver, within the defined reporting calendar, client specific reports. These reports will be delivered via the Accumuli Security secure portal