Using the Compliance Management capability of Automation Console


For an IT operations team, Compliance Management is a critical and a diligent process that demands a deep analysis and requires a team of specialists to track and manage compliance issues. Non-compliant systems issues can cause widespread disruption in security risks and could result in imposing a potential impact on the business. Hence, organizations need to establish a robust Compliance management process which complies with defined regulatory standards to keep its IT infrastructure safe from compliance violations, data breaches, and security risks.

Scenario for Compliance Management

An organization, ABC Limited, has a number of assets and network devices in its environment. ABC Limited must ensure that these assets and network devices are compliant as per the standards set by organizations, such as DISA or SOX, or an internal standard defined by ABC Limited. Alan, an operator in ABC Limited, works in the Compliance Management team and manages the compliance status of all the assets and network devices in his environment. He creates and runs a compliance policy scan from Automation Console on a regular basis to check if any systems in the environment are non-compliant. Based on the compliance scan job results, he analyses the non-compliant servers to make them compliant. Alan uses compliance templates that are defined in TrueSight Server Automation to create a compliance policy scan. These compliance templates consist of a set of defined compliance rules that the server must adhere to. The compliance dashboard in Automation Console displays all the compliance evaluations on the assets in your environment.

image-2023-9-26_13-10-1.png

Benefits of Compliance Management

 Compliance Management helps to ensure all the assets and network devices in your environment comply with regulatory standards and are safe from security risks and data breaches.

Workflow of Compliance Management

image-2023-10-10_18-18-5-1.png

The following table describes the tasks to be performed for Compliance Management and their reference documentation:

Task

Component

Role

Action

Reference

1

Compliance Management in Helix Automation Console

Operator

  • Creates compliance policy scan
  • Executes a compliance scan policy
  • Views compliance policy scan results
  • Disables or enables a compliance scan policy
  • Removes a compliance scan policy

Results

By using the compliance management capability in Automation Console, you realized the following benefits:

  • Adhere to regulatory standards as defined by DISA, or SOX
  • Track and manage all non-compliant systems and perform remediation actions
  • Safeguard your assets and network devices from any data breaches and security risks

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*