#1 for Change Auditing
                                Simple, Efficient, Affordable




 Top 10 Critical Changes to Audit in
 Your IT Infrastructure


Bob Bobel, Director of Product Management
E-mail: bob.bobel@netwrix.com
Twitter: @rbobel
LinkedIn: www.linkedin.com/in/robertbobel
              #1 for Change Auditing
             Simple, Efficient, Affordable
Agenda
•    Understand WHY you need to audit
•    Define key audit requirements
•    Identify the 10 most critical changes to audit
•   Introduction to NetWrix Change Reporter Suite
•   Demonstration
•   Why NetWrix?
•   Questions

           #1 for Change Auditing
           Simple, Efficient, Affordable
Why you need to Audit
• Security - Changes in security settings may have
  unexpected consequences
• Unauthorized Access - Prevention of Data theft, files
  and email
• Troubleshooting - it worked before, what happened?
• Root Cause Analysis - The system is broken, what lead
  to this?
• Admin Activity & Delegation Permissions- Hold all
  Admins accountable
• Change Control Management
• Compliance - PCI, SOX, HIPAA, etc.

          #1 for Change Auditing
          Simple, Efficient, Affordable
Solution Requirements
1. Automated collection
2. Use of diverse audit data sources (single-source
   = less detail)
3. Filtering and consolidation (no log noise)
4. Centralized securable storage for short and long-
   term
5. Flexible Reporting
6. Shows 4Ws: (WHO, WHAT, WHEN, WHERE)
7. Shows BEFORE and AFTER detail clearly
         #1 for Change Auditing
         Simple, Efficient, Affordable
Solution Requirements (continued)
• Centralized secure auditing
• Simply and efficiently display key WHO,
  WHAT, WHEN and WHERE changes details
  with both BEFORE and AFTER values
• Efficient sort term and long term storage of
  audit & configuration data
• Enterprise Scalability


         #1 for Change Auditing
         Simple, Efficient, Affordable
Solution Requirements (continued)
•   Predefined reports (Not offered natively)
•   Compliance-ready reports
•   Report customization
•   Report subscriptions
•   Simple to read output




           #1 for Change Auditing
           Simple, Efficient, Affordable
Top-10 Critical Changes and Activities
1. Active Directory: Group Memberships
2. Group Policy: Password Policy
3. Exchange: Message store
4. Mailbox access by non-owners
5. Windows Server: Local Users and Groups
6. File Servers: Access Attempts and Changes
7. SQL: Security and roles
8. Router and Firewall changes
9. Virtual environment changes
10. User Logon/Logoff Activity

          #1 for Change Auditing
          Simple, Efficient, Affordable
Introducing…
NetWrix Change Reporter Suite
Unified Auditing for Key IT Systems

• Simple – Easy to use, installs in minutes &
  built on NetWrix Change Reporter AAA
  platform
• Efficient - lightweight architecture without
  dangerous agents or OS level drivers
• Affordable - modular and part of the NetWrix
  Enterprise Suite
            #1 for Change Auditing
            Simple, Efficient, Affordable
Features and Benefits
Audit data we collect AuditAssurance™
• Configuration
• Native Events
• Other

Scalable Storage
• The Backbone of reporting
• Normalized the 4W details of Who, What, When and
  Where across systems and applications
  AuditIntellegence™
• Searchable and supports custom reports
          #1 for Change Auditing
          Simple, Efficient, Affordable
Features and Benefits
Analysis & Reporting
• Pre-built reports many designed from customer
  feedback
• View on-screen, over the Web, Export in various
  formats & subscriptions for automation
• Clearly displays 4W detail Who, What, When
  and Where
• Uses Microsoft SQL Reporting Services
        #1 for Change Auditing
        Simple, Efficient, Affordable
Features and Benefits
AuditArchive™
• Configurable Retention Policy
  – Store years of data, competitors may only store
    months of data
• Can be accessed when needed for historical
  purposes (import)



         #1 for Change Auditing
         Simple, Efficient, Affordable
NetWrix AAA Platform Technology
• AuditAssurance™ technology consolidates audit
  data from multiple independent sources, filling-in
  key details not present in any single source.

• AuditIntelligence™ technology provides a
  complete audit picture by transforming raw audit
  data into meaningful and actionable intelligence.

• AuditArchive™ technology provides long-term
  archiving, making your data available for
  historical reporting and forensics analysis.
         #1 for Change Auditing
         Simple, Efficient, Affordable
#1 for Change Auditing
                       Simple, Efficient, Affordable




Demonstration




    #1 for Change Auditing
    Simple, Efficient, Affordable
Others who chose NetWrix
    Financial                                             Federal, State & Local Government
    •    ING Direct                                   •     Columbia University
    •    Forex Capital Markets                        •     Bureau of National Affairs
    •    Berkshire Hathaway                           •     State of Maine
    •    Zurich Financial Services                    •     NYC Dept. of Transportation
    •    Thomson Reuters                              •     US District Court, SDNY
    •    Fiserv                                       •     Massachusetts Port Authority
                                                      •     Alaska State Legislature
    Healthcare & Pharmaceutical                       •     Columbia University
•       Vertex Pharmaceuticals                        •     Verizon Business Systems
•       Blue Cross of Idaho                           •     Black & Decker
•       Berkeley National Laboratory                  •     Universal NBC
•       National Institute of Health (NIH)            •     US Military Academy
•       Massachusetts General Hospital
•       WebMD


                      #1 for Change Auditing
                      Simple, Efficient, Affordable
NetWrix Suites
                       All-in-One Suite
      Change Reporter Suite                           IDM Suite
 Active Directory          SharePoint          Password Manager
 Object Restore            SQL Server          Password Expiration
 Group Policy              Windows Server      Notifier
 Exchange                  VMware              Logon Reporter
 Mailbox Access            Event Log Manager   Inactive Users Tracker
 File Servers              Activity Recorder
 NetApp & EMC                                    FREE Trials at
                                                www.netwrix.com

            #1 for Change Auditing
            Simple, Efficient, Affordable
Protect your investment
• Upgrade to any suite = 100% credit applied
  from any prior license purchase

• New product additions to suites are provided
  to you at no charge so long as support and
  maintenance fees are current



        #1 for Change Auditing
        Simple, Efficient, Affordable
Next Steps…
• Download a FREE TRIAL at www.netwrix.com
  – Trial license is included with the download
  – Support is provided during trial period


• Virtual POC
  – Virtual TestDrive™ is available in some areas
  – Online server allows you to quickly understand the
    incredible value of our software

         #1 for Change Auditing
         Simple, Efficient, Affordable
#1 for Change Auditing
                                Simple, Efficient, Affordable




 Thank you

 For more information visit www.netwrix.com



Bob Bobel, Director of Product Management
E-mail: bob.bobel@netwrix.com
Twitter: @rbobel
LinkedIn: www.linkedin.com/in/robertbobel
              #1 for Change Auditing
             Simple, Efficient, Affordable

More Related Content

PPTX
Top 5 identity management challenges and solutions
PPTX
Top 5 critical changes to audit for active directory
PDF
NetWrix Change Reporter Suite - Product Review by Don Jones
PPTX
File system auditing who accessed what files and where
PPTX
So you’ve successfully installed SCOM… Now what.
PPTX
ERP IT Infrastructure Audit
PDF
#MFSummit2016 Secure: Mind the gap strengthening the information security model
PDF
License Estate
Top 5 identity management challenges and solutions
Top 5 critical changes to audit for active directory
NetWrix Change Reporter Suite - Product Review by Don Jones
File system auditing who accessed what files and where
So you’ve successfully installed SCOM… Now what.
ERP IT Infrastructure Audit
#MFSummit2016 Secure: Mind the gap strengthening the information security model
License Estate

What's hot (20)

PDF
IT Service & Asset Management Better Together
PDF
#MFSummit2016 Secure: Is your mainframe less secure than your fileserver
PDF
Micro Focus Filr - #MFSummit2017
PPTX
Oracle security-formula
PPTX
Federal Webinar: Technical Update and Demo of New Features
PPTX
Government Webinar: Improving Security Compliance with IT Monitoring Tools
PPTX
Round table guide
PDF
Manpower group idm-platform
PPTX
Compliance in Virtualized Environments
PDF
How Nationwide Insurance use IBM Decision Manager and BPM
PDF
Open Architecture: The Key to Aviation Security
PPTX
SolarWinds Federal Webinar - Using Tools to Improve IT Service Management
PDF
Introduction to Identity Management
PDF
#MFSummit2016 Operate: Towards a unified endpoint management strategy
PDF
Simplify Troubleshooting With Context in Your Logs
PPTX
Securing Your Infrastructure: Identity Management and Data Protection
PPTX
Troubleshooting the Most Common Citrix Complaints for Remote Workers
PPTX
Federal Webinar: Improve IT Service Management and help meet Federal Standards
PPTX
IBM Endpoint Manager for Lifecycle Management (Overview)
PPTX
Improving System Upgrades and Patching using SolarWinds
IT Service & Asset Management Better Together
#MFSummit2016 Secure: Is your mainframe less secure than your fileserver
Micro Focus Filr - #MFSummit2017
Oracle security-formula
Federal Webinar: Technical Update and Demo of New Features
Government Webinar: Improving Security Compliance with IT Monitoring Tools
Round table guide
Manpower group idm-platform
Compliance in Virtualized Environments
How Nationwide Insurance use IBM Decision Manager and BPM
Open Architecture: The Key to Aviation Security
SolarWinds Federal Webinar - Using Tools to Improve IT Service Management
Introduction to Identity Management
#MFSummit2016 Operate: Towards a unified endpoint management strategy
Simplify Troubleshooting With Context in Your Logs
Securing Your Infrastructure: Identity Management and Data Protection
Troubleshooting the Most Common Citrix Complaints for Remote Workers
Federal Webinar: Improve IT Service Management and help meet Federal Standards
IBM Endpoint Manager for Lifecycle Management (Overview)
Improving System Upgrades and Patching using SolarWinds
Ad

Viewers also liked (20)

PPTX
Office 365 presentation
PPT
Edugalaxy 2012 1
PPTX
Adolescent medicine
PPTX
Rocks...
PPT
Sellick Partnership Legal Division
PDF
จำนวนเชิงซ้อน
PPS
Ch. 1 plainchant & secular monophony
ODP
хун гүнжийн домог
PPS
Allah 01(1)
PPT
CLIMA HIT Płock
PDF
introduction to entrepreneurship
PPTX
Victoria
PPTX
PR for Startups
PDF
The Professional Professional Sales Person
PDF
85 broads for_v3
PDF
portfolio
PPT
V-INSTAL Góra Kalwaria
PPTX
Plan and create assessments in sa
PDF
Plan and create assessments in sa
PPT
STG Poznań
Office 365 presentation
Edugalaxy 2012 1
Adolescent medicine
Rocks...
Sellick Partnership Legal Division
จำนวนเชิงซ้อน
Ch. 1 plainchant & secular monophony
хун гүнжийн домог
Allah 01(1)
CLIMA HIT Płock
introduction to entrepreneurship
Victoria
PR for Startups
The Professional Professional Sales Person
85 broads for_v3
portfolio
V-INSTAL Góra Kalwaria
Plan and create assessments in sa
Plan and create assessments in sa
STG Poznań
Ad

Similar to Top 10 critical changes to audit in your it infrastructure (20)

PPT
Oracle Insurance ERP.ppt
PPTX
Change auditing: Determine who changed what, when and where
PDF
Improving Healthcare Delivery
PDF
10 Crucial Steps to Ensuring Performance of TIBCO BusinessWorks
PDF
Presentation database security audit vault & database firewall
PPTX
Omnibus - Kovair Proprietary ESB Platform
PPTX
CASE STUDY: UK NATIONAL HEALTH SERVICE
PPTX
Non functional requirements. do we really care…?
PPTX
Characerizing and Validating QoS in the Emerging IoT Network
PPT
Aplication data security compliances
PPTX
Zero to ten million daily users in four weeks: sustainable speed is king
PDF
How to Restructure Active Directory with ZeroIMPACT
PDF
How to Restructure and Modernize Active Directory
PDF
Version1 database-managed-services-brochure
PDF
Fishbowl Solutions Webinar: A Path, Package, and Promise for WebCenter Conten...
PDF
API’s and Micro Services 0.5
PPTX
Billable hours (public)
PPTX
Assessing New Databases– Translytical Use Cases
PPTX
How to achieve Continous Delivery
PPTX
Sys track customer facing-terminal server-updated
Oracle Insurance ERP.ppt
Change auditing: Determine who changed what, when and where
Improving Healthcare Delivery
10 Crucial Steps to Ensuring Performance of TIBCO BusinessWorks
Presentation database security audit vault & database firewall
Omnibus - Kovair Proprietary ESB Platform
CASE STUDY: UK NATIONAL HEALTH SERVICE
Non functional requirements. do we really care…?
Characerizing and Validating QoS in the Emerging IoT Network
Aplication data security compliances
Zero to ten million daily users in four weeks: sustainable speed is king
How to Restructure Active Directory with ZeroIMPACT
How to Restructure and Modernize Active Directory
Version1 database-managed-services-brochure
Fishbowl Solutions Webinar: A Path, Package, and Promise for WebCenter Conten...
API’s and Micro Services 0.5
Billable hours (public)
Assessing New Databases– Translytical Use Cases
How to achieve Continous Delivery
Sys track customer facing-terminal server-updated

More from Netwrix Corporation (15)

PDF
How to Effectively Audit your IT Infrastructure
PDF
Auditing Active Directory to Comply with State and Federal Regulations
PDF
Auditing Solution Enables Coaching of Staff and Pleases Auditors
PDF
Automated De-provisioning of Inactive Users Accounts
PDF
USB Port Protection that Hardens Endpoint Security and Streamlines Compliance
PDF
How the World's Largest Date Agriculture Company "Planted" File Server Auditing
PDF
Ensuring Data Protection by controlling the Use of Removable Media
PDF
Leading Emergency Software Solution Provider Automates HIPAA and SOX Complian...
PDF
Active Directory Change Auditing in the Enterprise
PDF
Extending Change Auditing to Exchange Server
PDF
Staying Abreast of Group Policy Changes
PDF
The Business Case for Account Lockout Management
PDF
Exchange Auditing in the Enterprise
PDF
File Auditing in the Enterprise
PDF
File auditing on NetApp Filer
How to Effectively Audit your IT Infrastructure
Auditing Active Directory to Comply with State and Federal Regulations
Auditing Solution Enables Coaching of Staff and Pleases Auditors
Automated De-provisioning of Inactive Users Accounts
USB Port Protection that Hardens Endpoint Security and Streamlines Compliance
How the World's Largest Date Agriculture Company "Planted" File Server Auditing
Ensuring Data Protection by controlling the Use of Removable Media
Leading Emergency Software Solution Provider Automates HIPAA and SOX Complian...
Active Directory Change Auditing in the Enterprise
Extending Change Auditing to Exchange Server
Staying Abreast of Group Policy Changes
The Business Case for Account Lockout Management
Exchange Auditing in the Enterprise
File Auditing in the Enterprise
File auditing on NetApp Filer

Top 10 critical changes to audit in your it infrastructure

  • 1. #1 for Change Auditing Simple, Efficient, Affordable Top 10 Critical Changes to Audit in Your IT Infrastructure Bob Bobel, Director of Product Management E-mail: [email protected] Twitter: @rbobel LinkedIn: www.linkedin.com/in/robertbobel #1 for Change Auditing Simple, Efficient, Affordable
  • 2. Agenda • Understand WHY you need to audit • Define key audit requirements • Identify the 10 most critical changes to audit • Introduction to NetWrix Change Reporter Suite • Demonstration • Why NetWrix? • Questions #1 for Change Auditing Simple, Efficient, Affordable
  • 3. Why you need to Audit • Security - Changes in security settings may have unexpected consequences • Unauthorized Access - Prevention of Data theft, files and email • Troubleshooting - it worked before, what happened? • Root Cause Analysis - The system is broken, what lead to this? • Admin Activity & Delegation Permissions- Hold all Admins accountable • Change Control Management • Compliance - PCI, SOX, HIPAA, etc. #1 for Change Auditing Simple, Efficient, Affordable
  • 4. Solution Requirements 1. Automated collection 2. Use of diverse audit data sources (single-source = less detail) 3. Filtering and consolidation (no log noise) 4. Centralized securable storage for short and long- term 5. Flexible Reporting 6. Shows 4Ws: (WHO, WHAT, WHEN, WHERE) 7. Shows BEFORE and AFTER detail clearly #1 for Change Auditing Simple, Efficient, Affordable
  • 5. Solution Requirements (continued) • Centralized secure auditing • Simply and efficiently display key WHO, WHAT, WHEN and WHERE changes details with both BEFORE and AFTER values • Efficient sort term and long term storage of audit & configuration data • Enterprise Scalability #1 for Change Auditing Simple, Efficient, Affordable
  • 6. Solution Requirements (continued) • Predefined reports (Not offered natively) • Compliance-ready reports • Report customization • Report subscriptions • Simple to read output #1 for Change Auditing Simple, Efficient, Affordable
  • 7. Top-10 Critical Changes and Activities 1. Active Directory: Group Memberships 2. Group Policy: Password Policy 3. Exchange: Message store 4. Mailbox access by non-owners 5. Windows Server: Local Users and Groups 6. File Servers: Access Attempts and Changes 7. SQL: Security and roles 8. Router and Firewall changes 9. Virtual environment changes 10. User Logon/Logoff Activity #1 for Change Auditing Simple, Efficient, Affordable
  • 8. Introducing… NetWrix Change Reporter Suite Unified Auditing for Key IT Systems • Simple – Easy to use, installs in minutes & built on NetWrix Change Reporter AAA platform • Efficient - lightweight architecture without dangerous agents or OS level drivers • Affordable - modular and part of the NetWrix Enterprise Suite #1 for Change Auditing Simple, Efficient, Affordable
  • 9. Features and Benefits Audit data we collect AuditAssurance™ • Configuration • Native Events • Other Scalable Storage • The Backbone of reporting • Normalized the 4W details of Who, What, When and Where across systems and applications AuditIntellegence™ • Searchable and supports custom reports #1 for Change Auditing Simple, Efficient, Affordable
  • 10. Features and Benefits Analysis & Reporting • Pre-built reports many designed from customer feedback • View on-screen, over the Web, Export in various formats & subscriptions for automation • Clearly displays 4W detail Who, What, When and Where • Uses Microsoft SQL Reporting Services #1 for Change Auditing Simple, Efficient, Affordable
  • 11. Features and Benefits AuditArchive™ • Configurable Retention Policy – Store years of data, competitors may only store months of data • Can be accessed when needed for historical purposes (import) #1 for Change Auditing Simple, Efficient, Affordable
  • 12. NetWrix AAA Platform Technology • AuditAssurance™ technology consolidates audit data from multiple independent sources, filling-in key details not present in any single source. • AuditIntelligence™ technology provides a complete audit picture by transforming raw audit data into meaningful and actionable intelligence. • AuditArchive™ technology provides long-term archiving, making your data available for historical reporting and forensics analysis. #1 for Change Auditing Simple, Efficient, Affordable
  • 13. #1 for Change Auditing Simple, Efficient, Affordable Demonstration #1 for Change Auditing Simple, Efficient, Affordable
  • 14. Others who chose NetWrix Financial Federal, State & Local Government • ING Direct • Columbia University • Forex Capital Markets • Bureau of National Affairs • Berkshire Hathaway • State of Maine • Zurich Financial Services • NYC Dept. of Transportation • Thomson Reuters • US District Court, SDNY • Fiserv • Massachusetts Port Authority • Alaska State Legislature Healthcare & Pharmaceutical • Columbia University • Vertex Pharmaceuticals • Verizon Business Systems • Blue Cross of Idaho • Black & Decker • Berkeley National Laboratory • Universal NBC • National Institute of Health (NIH) • US Military Academy • Massachusetts General Hospital • WebMD #1 for Change Auditing Simple, Efficient, Affordable
  • 15. NetWrix Suites All-in-One Suite Change Reporter Suite IDM Suite Active Directory SharePoint Password Manager Object Restore SQL Server Password Expiration Group Policy Windows Server Notifier Exchange VMware Logon Reporter Mailbox Access Event Log Manager Inactive Users Tracker File Servers Activity Recorder NetApp & EMC FREE Trials at www.netwrix.com #1 for Change Auditing Simple, Efficient, Affordable
  • 16. Protect your investment • Upgrade to any suite = 100% credit applied from any prior license purchase • New product additions to suites are provided to you at no charge so long as support and maintenance fees are current #1 for Change Auditing Simple, Efficient, Affordable
  • 17. Next Steps… • Download a FREE TRIAL at www.netwrix.com – Trial license is included with the download – Support is provided during trial period • Virtual POC – Virtual TestDrive™ is available in some areas – Online server allows you to quickly understand the incredible value of our software #1 for Change Auditing Simple, Efficient, Affordable
  • 18. #1 for Change Auditing Simple, Efficient, Affordable Thank you For more information visit www.netwrix.com Bob Bobel, Director of Product Management E-mail: [email protected] Twitter: @rbobel LinkedIn: www.linkedin.com/in/robertbobel #1 for Change Auditing Simple, Efficient, Affordable

Editor's Notes

  • #13: AuditAssurance™ technology consolidates the audit data from multiple independent sources (event logs, configuration snapshots, change history records, etc.), and therefore is able to detect a change even if one or more of the sources does not contain all the required data. AuditIntelligence™ technology transforms raw audit data into meaningful and actionable intelligence to drive security and compliance efforts and delivers human-readable reports designed with administrators and auditors in mind to paint the most complete picture.