Log data analysis and IT management
Actively monitor your IT infrastructure
Boost your network security
Extract and deliver intelligence from your log data
Actively monitor your IT infrastructure
Boost your network security
Extract and deliver intelligence from your log data
Regulatory agencies and public auditors require tools to follow audit trails back in time. For any number of reasons including but not limited to company exposure to lawsuit; eDiscovery requests stemming from user impropriety; contractual disputes and compliance with government and agency regulaitons, your small to medium business may need to produce a trail of specific events from the past.
A recent survey carried out by SANS Institute found that 44% of system administrators do not keep logs more than one month. With regulatory and government agency requirements citing log retention periods of sometimes three to seven years, this could be a big problem, just waiting to happen.
Regulatory bodies and acts such as Basel II, PCI Data Security Standard, Sarbanes-Oxley Act, Gramm-Leach-Billey Act, HIPAA, FISMA, USA Patriot Act, Turnbull Guidance 1999, UK Data Protection Act, EU DPD; all require event retention. Many also require event review, for instance NIST recommend a log review at least twice a week. Event logs are the primary source to determine level of compliance and identify deficiencies.
In-depth regulatory compliance reference material
Refer to our specialized material to learn more about the different requirements posed by different regulatory bodies:
GFI EventsManager receives a 5 out of 5 rating from leading German IT publication Funkschau. The reviewer says it is easy to set up, no Windows agent is required and reporting is good. - Funkschau.de, October 2012
"GFI Software is one of the smaller vendors in the SIEM market. However, size doesn't matter if you build quality into a product like GFI has done with its GFI EventsManager 2012. All things considered, GFI EventsManager proves to be very apt at what it is designed for, managing events driven by the SIEM methodology. Strong reporting tools and an interactive GUI round out the product, making it one to consider for most any SIEM project" – SC Magazine, April 2012