Sunday, May 26, 2013
  • Resource Center
  • Support
  • Contact Us
  • Products
    • SpyLogix Enterprise
      1. SpyLogix Platform
      2. SpyLogix Modules
        • Active Directory
        • Windows Server
        • User Security
        • FIM 2010
        • CA IdentityMinder
        • CA SiteMinder
        • LDAP Directories
        • VMware vSphere
        • IBM System z and i
        • Module SDK
      3. SpyLogix Architecture
    • SpyLogix for Microsoft
      1. Active Directory
      2. Windows Server
      3. User Security
      4. FIM 2010
    • IDx Identity Assurance
      1. IDx Voice Self Service Password Reset
  • Solutions
    • SpyLogix Key Benefits
    • Cloud Solutions
    • IT GRC Solutions
    • Microsoft Solutions
    • Government Solutions
    • Identity Assurance Solutions
    • Information Security Solutions
    • 360° visibility for CA Technologies
  • Partners
    • Overview
    • System Integrators
    • Cloud Service Partners
    • Technology Partners
    • Become an IdentityLogix Partner
  • Services
    • Overview
    • Training
    • Support
  • News/Events
    • Events
    • Webinars
    • Press Releases
    • In The News
  • Company
    • About Us
    • Careers
    • Support
    • Contact Us
  • Blog
Products SpyLogix Enterprise SpyLogix Modules

SpyLogix Modules

Share |

The SpyLogix system for information security intelligence and data actualization employs standardization, centralization, and automation to maximize savings in time, money, and resources for organizations maintaining secure access to business information assets. SpyLogix modules are designed to acquire, map, and send security data in a standardized way. SpyLogix modules acquire security data from any programmatically accessible enterprise source using the most direct and effective means possible. Security data is simply mapped into a standardized message format, and then sent efficiently to one or more centralized SpyLogix Enterprise Platform server(s).

Image: SpyLogix Modules

SpyLogix Modules are essential technologies for continuous monitoring of enterprise digital assets that secure business information. Modules work in conjunction with SpyLogix Platform for organizing and using security data for operational efficiency and to effectively support of today’s efforts to thwart cyber threats.

  • Overview
  • Native Data Access
  • Data Access Methods

Why is SpyLogix designed around a standardized well-formed message?

By natively capturing security data directly from the source and immediately mapping it using a standardized message format, traditional data management complexities are averted and benefits commence immediately. Data is made to be self-defining for automatic instantiation into the persistent historical record. Messages are further processed in real-time via actualization services including policy engine, alert generation, event synthesis or selective message forwarding.

What are the primary benefits of using standardized messages centralized data services?

    1. Automatic Data Management: The Data Management Centralized processing and management of security data is the most efficient approach. SpyLogix messages are communicated to one or more SpyLogix Platform servers for automatic advanced data processing resulting in a 100% normalized non-redundant historical data record available immediately for analysis, reporting, and sharing with services.
    2. Real-Time Data Actualization:Security message data is leveraged in real-time for organizational benefit.
      1. ActionLogix services enact policies using Boolean logic filters that trigger alerts | notifications or programmed actions.
      2. Events may be synthesized and stored persistently.
      3. Persistent data is sharable with other services or tools via Web Services.
      4. Persistent data may be analyzed via the included interactive console on Windows, an Excel 2010 client,
        or a browser using SharePoint.

How does message centralization benefit my organization?

XMMessages may be centralized security message processing and data management can be automated. Immediate standardization of security data from each source eliminates complex data handling and management tasks that can drive up support costs and impact quality service delivery. For example, security data mapping step preserves included attribute names, allowing SpyLogix Enterprise Platform to automatically instantiate new data types into the database to save time and reduce security data management support burdens.

What traditional data management complexities are averted for my organization?

Traditionally centrally handling security data variety has been challenging, as data is sent to a central server in a source-specific format. With so many disparate enterprise sources holding security data, security data management quickly spun out of control and effective use of this data quickly evolved to be onerous at best. SANS security surveys have repeatedly cited complexities related to “data management” as the #1 inhibitor to effective use of centralized log data.

SpyLogix modules provide continuous multi-source native access to, and centralization of, enterprise security data without relying on log files.
 
The capture process is continuous and direct from each monitored resource so as to provide new identity and access management data for advanced processing via SpyLogix Platform. This approach means existing IT service processes can be enhanced with new data and automation not previously available using log management tools alone.

Why are log files a problem for my organization?

Well, locally stored log files by themselves are not really a problem. They provide an historical record of events. But centralized management of log data can be problematic:

    • Important enterprise wide RBAC, identity and access management (IAM entitlements) or object permissions security
      is not available.
    • Continuous monitoring and real-time processing of enterprise access management and activity data is substantially
      limited by relying on log data alone.
    • Log data may be tampered with, mismanaged or even not configured properly to collect what is needed.
    • Log management is a “set it and forget it” technology that requires constant IT support to remain current and useful.
    • It is primarily intended to record what happened, not what can happen.

SpyLogix modules are designed to continuously access multi-source security data as efficiently and effectively as possible to enhance information security governance, risk control, compliance and operational troubleshooting.

Agent-less

    1. SpyLogix server-side component that listens for security data via network connection to a source client API via subscription, and then builds and communicates messages to one or more SpyLogix Platform server(s) for advanced processing.
    2. SpyLogix server-side “plug-in” component that harvests security data by invoking via network connection a source API,
      and then builds and communicates messages to one or more SpyLogix Platform server(s) for advanced processing.

X-Spy is a multi-platform C agent that acquires data directly from any native source specific API, and then builds and communicates messages to one or more SpyLogix Platform server(s) for advanced processing.

C-Spy is a purpose-built Windows client or server agent that provides fully qualified user logon and logoff activity, programs executed, detailed LDAP client API invocation data, is extensible for unique application monitoring, and then builds and communicates messages to one or more SpyLogix Platform server(s) for advanced processing.

Products

  • SpyLogix Enterprise
    • SpyLogix Platform
    • SpyLogix Modules
      • Active Directory
      • Windows Server
      • User Security
      • FIM 2010
      • LDAP Directories
      • CA IdentityMinder
      • CA SiteMinder
      • VMware vSphere
      • IBM System z and i
      • Module SDK
    • SpyLogix Architecture
  • SpyLogix for Microsoft
    • SpyLogix for Active Directory
    • SpyLogix for Windows Server
    • SpyLogix for User Security
    • SpyLogix for FIM 2010
    • SpyLogix Module SDK
  • IDx Identity Assurance
    • IDx Voice Self Service Password Reset
SpyLogix Enterprise Data Sheet
Demo
Contact Us
  • Solutions
  • Products
  • Partners
  • News & Events
  • Company
  • Legal Notice
  • Privacy Policy
  • Contact Us
© Copyright 2010, IdentityLogix, All Rights Reserved.