SpyLogix Enterprise
SpyLogix Enterprise is security middleware designed for simplifying and enhancing enterprise information security management and control. New multi-sourced digital assets are natively monitored continuously, security data are automatically processed centrally for efficient historical data management, and proactively analyzed in real-time
(referred to as “data actualization”) via provided services to leverage data effectively for the enterprise. Benefits include improved “time-to-value” for people working to keep business information safe, more efficient IT service processes, and less technology complexities to boost staff effectiveness. Now a single enterprise security intelligence system can support IT GRC, real-time data for forensics, and trending analysis and can be used as a powerful administrative tool needed for quick and accurate issue resolution.
SpyLogix modules provide continuous real-time access to security data that is not available in log files. The capture process is continuous and direct from each monitored resource, so as to provide for security data actualization, or alerts and triggered actions based on real-time security data sampling. This approach means existing IT service processes can be enhanced with new data and automation not previously available using log management tools alone.
SpyLogix platform is designed to organize and leverage use of centralized security data fed from multiple sources. Security data feeds can include user login and logoff events, user application access permissions (e.g. RBAC) from identity systems, application activity events, API output, security assessment tool or home-grown script output. If the data is accessible, it can be managed with SpyLogix Enterprise efficiently and effectively.
Continuous Data Access technologies are one or more SpyLogix Modules designed to natively acquire data, map it, and safely deliver as standardized messages security data to one or more SpyLogix Platform servers for advanced processing. SpyLogix Modules acquire security data from any programmatically accessible enterprise source using the most direct and effective means possible. Security data is mapped into a standardized message format, and then communicated efficiently and safely for automatic processing by one or more SpyLogix Module technologies for Continuous Data Access include:
Communication Services are available for safely communicating well-formed messages from SpyLogix Modules to Automatic Data Management and Real-Time Data Actualization layers of SpyLogix Platform for advanced processing and use.
Data Management processes all incoming message data. Well-formed messages are 100% parsed. Selectively, Translator may be invoked to automatically change non-human readable data types into human readable form. All data types are supported. Parsed and translated data with complete meta-data is passed to the Storage Engine, a high performing component that ensures all data types are persistently recorded non-redundantly with proper date/time context.
Data is assessible via the included Interactive Console, any Odata compatible query tool, such as PowerPivot for Excel 2010, or through simple Web Services calls.
Data Actualization provides multiple post-storage processing services to effectively use incoming messages and persistently stored security data in real-time:
| Basic (by meta-data tags) |
State (by object state) |
RBAC (by identity) |
Utility |
| Service Name | Added | RBAC Added | Counter |
| Service Category | Moved | RBAC Deleted | Timer |
| Event Class | Modified | RBAC Added to | |
| Object Class | Deleted | RBAC Deleted From | |
| Object Name | None | ||
| Identity | |||
| Time | |||
| Location | |||
| Attribute (new) | |||
| Attribute (old) |
SpyLogix meets the performance and scalability requirements of some of the world's largest IT environments. SpyLogix Platform and Modules are designed to scale horizontally, vertically and functionally, making it possible for SpyLogix components to be distributed across computing realms to manage hundreds of thousands of users, thousands of applications and millions of entitlements.
SpyLogix Enterprise offers On-Demand Discovery and Continuous Monitoring of Key Information Security Resources with four major components, each designed with features to maximize efficiency and effectiveness when managing identity and access management or activity/event data.
Each feature is broken into more detailed descriptions with available benefits included as follows:

