Feeds

Compuware aims to catch insiders

Staff still the big security weakpoint

  • alert
  • submit to reddit

High performance access to file storage

It is a sad, if well-known fact that the majority of security breaches in any business are the work of insiders. This is as true for IT security breaches as any other area, and finding out what has happened and who did it can be a tricky problem.

One answer is to be able to audit the activity of trusted users within a business, so it becomes possible to track not only who has had access to what application, but also what activities took place. This is the goal of the Application Auditing solution from Compuware, which is capable of providing detailed forensic information and audit reports. The toolset is based on the company’s Hiperstation mainframe security system, which is directly integrated with the mainframe operating system. Heavy transaction loads can be accommodated in this way, with some Hiperstation claimed to have recorded more than eight million transactions per day.

The system can have a wide range of uses, such as tracking users’ common work practices with applications so that workflow and operation can be improved. It is the security context, however, that is the primary target, and here it can provide indisputable proof of user actions that can be used to detect events that range from finding operational problems through to serious policy violations. In this context, it then gives the evidence needed to prevent incidents from becoming larger by catching up with the miscreants more quickly.

The company has indicated that, prior to the formalization of Application Auditing as an offering some of the tools have already been used to provide audit-based evidence in legal proceedings. ®

High performance access to file storage

More from The Register

next story
Android engineer: We DIDN'T copy Apple OR follow Samsung's orders
Veep testifies for Samsung during Apple patent trial
Windows 8.1, which you probably haven't upgraded to yet, ALREADY OBSOLETE
Pre-Update versions of new Windows version will no longer support patches
Microsoft lobs pre-release Windows Phone 8.1 at devs who dare
App makers can load it before anyone else, but if they do they're stuck with it
This time it's 'Personal': new Office 365 sub covers just two devices
Redmond also brings Office into Google's back yard
Half of Twitter's 'active users' are SILENT STALKERS
Nearly 50% have NEVER tweeted a word
Batten down the hatches, Ubuntu 14.04 LTS due in TWO DAYS
Admins dab straining server brows in advance of Trusty Tahr's long-term support landing
Windows XP still has 27 per cent market share on its deathbed
Windows 7 making some gains on XP Death Day
Internet-of-stuff startup dumps NoSQL for ... SQL?
NoSQL taste great at first but lacks proper nutrients, says startup cloud whiz
US taxman blows Win XP deadline, must now spend millions on custom support
Gov't IT likened to 'a Model T with a lot of things on top of it'
prev story

Whitepapers

Securing web applications made simple and scalable
In this whitepaper learn how automated security testing can provide a simple and scalable way to protect your web applications.
Five 3D headsets to be won!
We were so impressed by the Durovis Dive headset we’ve asked the company to give some away to Reg readers.
HP ArcSight ESM solution helps Finansbank
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Mobile application security study
Download this report to see the alarming realities regarding the sheer number of applications vulnerable to attack, as well as the most common and easily addressable vulnerability errors.