Industry Solutions: For Public Companies
Challenge: Guaranteeing the integrity of financial reports and security large network infrastructures
In the wake of numerous corporate scandals, the US Congress enacted the Sarbanes-Oxley Act (SOX) to improve the integrity and accuracy of financial reporting by
publicly traded companies. A more recent set of guidelines titled “IT Control Objectives for Sarbanes-Oxley”, were developed to help companies assess and enhance their internal network security controls.
Specific challenges faced by publicly traded companies under the scrutiny of SOX include implementation of network and security controls which:
- Improve the effectiveness and efficiency of network and security operations
- Improve the ability to detect and mitigate network based risks
- Delivers an integrated and centralized approach to network security, availability and system integrity
- Enables faster identification and resolution of security incidents
- Delivers a greatly improved IT security process
QRadar solution for publicly traded companies
QRadar delivers an unrivalled network and security operational capability. QRadars centralized command and control provides the required surveillance and intelligence to detect and mitigate threats to the IT infrastructure that significantly impact the business. Leveraging QRadar’s enterprise wide log management, public companies can effectively meet specific logging and auditing requirements mandated by SOX and other government regulations.
Real world success stories include:
- QRadar is used by a fortune 500 software company to centralize network security management to meet multiple regulatory mandates including SOX and PCI
- QRadar is used enterprise-wide by a fortune 10 energy company to protect critical infrastructure and meet the security management requirements of multiple regulations including PCI, SOX and NERC CIP
- QRadar is used by a fortune 500 automobile manufacturer to provide enterprise-wide network security management
Useful links...
How QRadar Addresses Regulatory Compliance Requirements:
Rationalizing Compliance Requirements Amid the Hype