qualysguard infoday 2014 - policy compliance

20
www.rac.cz Risk Analysis Consultants V060420 RAC QualysGuard InfoDay 2014 Představení nástroje pro testování politiky (PC)

Upload: risk-analysis-consultants-sro

Post on 18-Nov-2014

150 views

Category:

Internet


5 download

DESCRIPTION

 

TRANSCRIPT

Page 1: QualysGuard InfoDay 2014 - Policy compliance

ww

w.r

ac

.cz

Ris

k A

na

lysi

s C

on

sulta

nts

V0

60

42

0

RAC QualysGuard InfoDay 2014

Představení nástroje pro testování politiky (PC)

Page 2: QualysGuard InfoDay 2014 - Policy compliance

ww

w.r

ac

.cz

Ris

k A

na

lysi

s C

on

sulta

nts

V0

60

42

0

RAC QualysGuard InfoDay 2014

Představení nástroje pro testování politiky (PC)

1. Všeobecný úvod

Page 3: QualysGuard InfoDay 2014 - Policy compliance

Page 4: QualysGuard InfoDay 2014 - Policy compliance

Page 5: QualysGuard InfoDay 2014 - Policy compliance
Page 6: QualysGuard InfoDay 2014 - Policy compliance

ww

w.r

ac

.cz

Ris

k A

na

lysi

s C

on

sulta

nts

V0

60

42

0

RAC QualysGuard InfoDay 2014

Představení nástroje pro testování politiky (PC)

2. Úvod do vytváření politik

Page 7: QualysGuard InfoDay 2014 - Policy compliance

Policy Compliance proces

Create UsersAdd Hosts to subscription

Create compliance

Asset GroupsScan Hosts

Create QualysGuard

Policy

Generate Policy Reports

Request Exceptions

• Nejsložitější stěžejní bod – vytváření politik

• Je možné upravovat politiku dodatečně!

Page 8: QualysGuard InfoDay 2014 - Policy compliance

Compliance Hierarchya “Top - Down” Approach

Simple Compliance Framework

Procedures and GuidelinesDetail

Policies,Standards,BusinessRequirements

Controls(Manual/Auto)

ProceduresandGuidelines Enforcement

RegulationsFrameworks

SOXHIPAAGLBA

CobiTCOSOISO17799

PCINISTNERC

“Example: Vulnerable Processes must be eliminated..”

CID 1130 The telnet daemon shall be disabled

AIX 5.x Technology Telnet streams are transmitted in clear text, including usernames and passwords. The entire session is susceptible to interception by Threat Agents.

FrameworkLevel

Detailed Technical

Page 9: QualysGuard InfoDay 2014 - Policy compliance

RAC QualysGuard InfoDay 2011

Page 10: QualysGuard InfoDay 2014 - Policy compliance

•−

•−

•−

•−

•−

•−

Page 11: QualysGuard InfoDay 2014 - Policy compliance

QualysGuard Policy Creation

Page 12: QualysGuard InfoDay 2014 - Policy compliance

ww

w.r

ac

.cz

Ris

k A

na

lysi

s C

on

sulta

nts

V0

60

42

0

RAC QualysGuard InfoDay 2014

Představení nástroje pro testování politiky (PC)

Live Demo : Policy editor, ukázka vytváření politik

Page 13: QualysGuard InfoDay 2014 - Policy compliance

ww

w.r

ac

.cz

Ris

k A

na

lysi

s C

on

sulta

nts

V0

60

42

0

RAC QualysGuard InfoDay 2014

Představení nástroje pro testování politiky (PC)

3. Scan, Reporting

Page 14: QualysGuard InfoDay 2014 - Policy compliance

Page 15: QualysGuard InfoDay 2014 - Policy compliance

QualysGuard Policy Compliance Reports

View all results, exceptions, audit trails

Full Policy Report

View where you are successfully authenticating

Authentication Report

Exceptions process for all Failing Controls

Interactive Reports

Page 16: QualysGuard InfoDay 2014 - Policy compliance

QualysGuard Policy Compliance Policy Reports

The Report Summary• Pass/Fail Summary - shows passed and failed control

instances

• Pass/Fail and Exceptions Summary - passed and failed

control instances with pending exceptions and passed with

exception status.

Page 17: QualysGuard InfoDay 2014 - Policy compliance

QualysGuard Policy Compliance Policy Reports

Page 18: QualysGuard InfoDay 2014 - Policy compliance

QualysGuard Policy Compliance Policy Reports

• Policy Report

includes compliance

status with a

specific policy

• The report lists the

hosts assigned to

the policy with the

controls tested

• Results are shown

as a passed/failed status

Page 19: QualysGuard InfoDay 2014 - Policy compliance

ww

w.r

ac

.cz

Ris

k A

na

lysi

s C

on

sulta

nts

V0

60

42

0

RAC QualysGuard InfoDay 2014

Představení nástroje pro řízení zranitelností (VM)

4. Souhrn

Page 20: QualysGuard InfoDay 2014 - Policy compliance

•−