FireScope Comply Key Controls

    Out-Of-The-Box Regulation Support (as of April 2010)

  • Statement on Auditing Standards No. 70 (SAS 70) Type I & II Audits
  • Sarbanes-Oxley (SOX)
  • Health Insurance Portability and Accountability Act (HIPAA)
  • Payment Card Industry Data Security Standard (PCI DSS)
  • North American Electric Reliability Corporation (NERC)
  • Financial Services Authority (FSA)
  • Federal Information Security Management Act of 2002 (FISMA)

Out-of-the-box, FireScope includes all of the controls associated with the licensed compliance class. Each control includes a friendly name, references to the associated regulation as well as a plain language description of the requirements and guidance for IT professionals not intimately familiar with the regulation. This is designed to make it significantly easier for organizations to fully understand the requirements and take more effective actions to ensure compliance. Additionally, as regulations change or new requirements enter enforcement, FireScope Comply's auto update capability can keep you current so you never get caught unaware.

Customizability

Every organization's compliance requirements are unique, based on a number of factors including size, industry and internal policies. As a result, FireScope Compliance includes the ability to either copy and modify a compliance control, or create entirely new controls. This enables a much closer fit to an organization's exact needs.

During a typical deployment of FireScope Compliance, among the first steps taken is a review of the base compliance controls. Those that do not apply to the organization are disabled. For additional requirements, existing controls are either cloned or created.

Guidance is Key

Many of the users performing tasks for compliance have little to no comprehensive knowledge of the details of the regulatory requirements they are supporting. Reading the regulations themselves usually only adds to the confusion. To reduce possible confusion and increase the effectiveness of efforts, FireScope compliance experts include a plain-language description with each control, as well as guidance that better informs users of the actual intent of requirements.

Organizations are free to expand on these sections to include their own interpretations of regulatory requirements, or in the case of custom controls communicate specific intentions.

Formal Policy Documents

Additionally, each control in FireScope Compliance can be linked to formal documentation of policies and testing procedures. To the left is a screen shot of a typical use case for these links. When combined with the attribute data collected, users gain a single repository to access formal policies and verify their effectiveness, without the need to consult additional applications or solutions.

Experience FireScope Comply for yourself, schedule a personal demonstration today.

 

  • Videos

    Watch these short videos to see FireScope Compliance in action.
    Watch now
  • Features

    Dive into the rich feature-set of FireScope Compliance.
    Learn more
  • Tech Briefs

    Grab our tech briefs for more in-depth explanations of FireScope Compliance's capabilities.
    Read more
  • Differentiators

    Explore the top ten innovations that have customers world-wide choosing FireScope Compliance.
    Explore now
North America Sales 1.877.780.3473    |     United Kingdom Sales +44 (0)1895.876227    |     Australia Sales +61.2.9091.0010    |     Support 1.214.296.9243