How does CimTrak's System Integrity Assurance (SIA) differ from traditional File Integrity Monitoring (FIM)?
System Integrity Assurance (SIA) is an evolution of FIM. While FIM primarily detects changes, SIA establishes a known, trusted, and authoritative baseline of what is allowed and then actively prevents, limits, or rolls back everything else. It manages changes by exception, allowing authorized changes to be added to the baseline while highlighting malicious or unacceptable changes for investigation and remediation, providing true detection and response capabilities.
What specific forensic details does CimTrak provide when a change is detected?
When CimTrak detects a change, it provides comprehensive forensic details including who made the change, what exactly was changed, when the change occurred, the process used to make the change, and how the change was implemented. This level of detail is crucial for root-cause analysis and compliance auditing.
How does the Trusted File Registry™ eliminate false positives in change detection?
The Trusted File Registry™ is a cloud-based service that automatically identifies vendor-verified patches and updated files. When these known and trusted changes occur, the Registry reconciles them, suppressing the 'noise' they would typically generate. This allows security teams to focus their attention on unknown, unwanted, or potentially malicious changes that truly matter, rather than spending time investigating legitimate updates.
Which ticketing systems can CimTrak integrate with for managing and documenting changes?
CimTrak offers official integrations with several popular ticketing systems, including Atlassian Jira, BMC Remedy, ServiceNow, and CA ServiceDesk. This allows for automatic documentation of patches and updates identified by the Trusted File Registry™, associating them with authorized and approved tickets for a clear audit trail.
Can CimTrak be used to monitor file integrity on both on-premises and cloud-based systems?
Yes, CimTrak's File Integrity Monitoring capabilities are designed to be implemented on both on-premises and cloud-based systems, providing consistent security and compliance across diverse IT infrastructures.
What operating systems are supported by the Trusted File Registry™ for automatic reconciliation of updates?
The Trusted File Registry™ supports a wide range of Microsoft Windows versions, including Windows 2022, 2019, 2016, 2012, 2008, 2003, XP, 11, 10, 8.1, 8, and 7. It also supports RedHat Enterprise Linux 7, Oracle Linux 7, and CentOS.