Complete Survey and Enter a Chance to Win $300. Learn how other mid- sized businesses use Security Information and Event Management.
Take survey now
Survey
Security information and event management (SIEM) tools are not just for large enterprises.
Having the latest security tools shouldn’t be limited to just the Fortune 500. RSA now offers SIEM for All Sizes, bringing the power of log analysis and log management to SMBs.
A Day in the Life: SIEM is Short for Simple
Bob is the security guy in the IT department of an insurance company. His company has about 1,200 employees, and an IT department of 60 people. He is the only person dedicated to security, but he occasionally gets help from other IT staff members. Bob bought RSA enVision a year ago – and has used it extensively to:
Simplify compliance. An auditor has requested a report on all the configuration changes done in the last month. With RSA enVision, Bob can automatically collect and classify all events so it can recognize configuration changes without requiring intimate administrator familiarity with the system log format. In just a few clicks, Bob pulls up the reports for the auditor that shows all configuration changes.Enhance security operations. A vulnerable server comes under attack. While Bob deployed an intrusion detection system a few years ago, it produced so many alerts that he stopped paying attention to them. Bob also has a vulnerability assessment tool, but he can’t even hope to keep up with all the vulnerabilities it finds. With the RSA enVision platform, Bob can effectively make use of both tools since it can correlate IDS logs with vulnerabilities that his scanner has found – so he only gets alerted to a real attack on a vulnerable server.
Optimize IT and network operations. When a failure halts the customer portal, Bob is tasked with finding out what has happened. With the RSA enVision platform, Bob is collecting events from the portal application, the Oracle® database, Linux OS and the Celerra® storage that holds the data. The application is producing multiple error messages, but Bob is quickly able to pull all the different logs to determine that a schema change in the database is causing an hourly-running script to hang. He is able to address the problem and the customer portal is fully restored.
RSA enVision Sales


