CimTrak Integrity Suite

IT Compliance, Maximised System Uptime, Security And Efficiency

Proactively Secure Your Critical IT Infrastructure - stop unauthorised change.

CimTrak is a key component in the IT compliance and security strategy of enterprises and government agencies worldwide. CimTrak quickly, easily and cost-effectively preserves your system’s state of integrity by proactively responding to any unauthorised incident.

    • Add an unauthorised file – it gets deleted
    • Modify the content of a website – it gets restored
    • Alter key business logic – it gets returned to its original form 


With CimTrak, you get integrity monitoring, proactive incident response, change control and auditing capabilities in one easy tool.

    • Maintain Compliance
    • Increase Security
    • Preserve Integrity
    • Control and Manage Change
    • Ensure Network Availability

Protection

How It Works

PCI - FIM

Change Control

CimTrak protects any type of file, whether it is a document, executable, script, application program file, or operating system file.

It also monitors for changes to critical system and device configurations, as well as critical database components. CimTrak instantly determines when files and configurations are modified can take instant, proactive action to correct the change and mitigate risk Increase your survivability from unexpected changes with CimTrak which prevents the compromised objects from ever existing on your servers and network devices.

CimTrak is easy to deploy and scales to the largest of global networks.

CimTrak’s automated detection process, flexible response options, and auditing capabilities make it a powerful compliance, information assurance and security tool.

CimTrak is Common Criteria Certified and ready for use by Australian Government Agencies.

 

CimTrak consists of three integrated software components - CimTrak Management Console, CimTrak Agent and the CimTrak Master Repository. Each component operates as an autonomous unit, yet work in tandem to provide superior protection of your critical IT assets.

CimTrak Master Repository

The CimTrak Master Repository is the principal component of the CimTrak family. It is where all the authoritative and authenticated copies of protected objects are maintained, digital signatures are stored, objects are validated and communication between the other CimTrak family components is performed.

A complete revision history is kept on the CimTrak Master Repository allowing you to roll back to any pervious version of a file with a simple click of a mouse.

CimTrak Agent

The CimTrak Agent is the watchdog of the system. Its sole objective is to capture and address any event that occurs to any object that is being protected. Each component being protected has an Agent installed, which in turn communicates through an authenticated and encrypted layer, with the CimTrak Master Repository.

The CimTrak agent can monitor a wide variety of components of your IT infrastructure including servers, network devices, applications, databases, and even SCADA systems.

CimTrak Management Console

The CimTrak Management Console or “Client” is your administrative window into the inner workings of CimTrak and your IT environment. The Management Console is used to configure users, analyse events, perform change control and produce reports. Through the Management Console, you can:

Create the policies to determine which directories and/or files to monitor and protect, and define what actions will be taken when a change occurs.

View forensic detail on changes including what was changed, what process made the change and who made the change.

Review extensive reports detailing any and all authorised and unauthorised changes on your servers or network devices as well as the corrective actions automatically taken by CimTrak.

Forensically study quarantined malicious code captured by CimTrak that passed by your firewall, IDS or anti-virus software.

View various system performance criteria such as CPU utilisation, memory utilisation, storage statistics, and other system health information.

CimTrak helps you meet the PCI data security standard real time both by providing you with the industry leading file integrity monitoring and configuration management solution. 

Payment card industry data security standards specifically call for file integrity monitoring (PCI 10.5.5 and PCI 11.5) to be deployed as well as the monitoring of critical network device configurations (PCI 1.1.1)  such as those on firewalls. CimTrak not only covers these payment card industry standards but also gives you the ability to audit a large number of configuration settings against industry benchmarks and PCI data security standards.

Because seconds count when it comes to detecting change in a PCI environment, CimTrak monitors file integrity  in real-time, and notifies you immediately upon a change being detected. Further, CimTrak allows you to take immediate remediation action upon a detected change up to and including automatically restoring a file or device configuration back to its’ original state. With CimTrak, you can feel confident that your PCI environment is protected.

It is important to remember that PCI compliance should be viewed as a “snapshot” in time. Just because you are compliant at this very minute, there is no guarantee that a change will cause you to become non-compliant, or worse, allow a data breach to occur. CimTrak works to help you continuously maintain compliance once you are certified. Continuous compliance keeps bad things from happening, and bad things cost your business not only cold hard cash, but also loss of customers and reputation.

Meeting PCI-DSS Requirements 10.5.5 and 11.5 with CimTrak

While CimTrak can help your achieve compliance with a number of PCI-DSS requirements, two sections, PCI 10.5.5 and PCI 11.5 specifically call for a file integrity monitoring solution such as CimTrak to be deployed.

PCI 10.5.5: "Use file-integrity monitoring and change detection software on logs to ensure that existing log data cannot be changed without generating alerts."

PCI 11.5: "Deploy file-integrity monitoring software to alert personnel to unauthorised modification of critical system files, configuration files, or content files, and configure the software to perform critical file comparisons at least weekly."

The goal of PCI 10.5.5 and PCI 11.5 is to ensure the integrity of critical logs from the PCI environment and to ensure that changes to files do not allow a breach of PCI data.  While PCI 11.5 calls for file-integrity monitoring software such as CimTrak to look for file changes at least weekly, true integrity of your PCI environment requires much more frequent monitoring. CimTrak provides real-time file integrity monitoring (FIM) without taxing your system resources.

This allows you to exceed the minimum frequency for file-integrity monitoring called for in PCI 11.5 and give you added piece of mind that your PCI environment is secure and in a state of constant integrity.  PCI 11.5 also discusses the importance of regularly monitoring the output of your file integrity monitoring (FIM) solution. CimTrak makes it easy by providing complete reporting on changes as well as critical configurations.

Real-time IT Change Control 

Unlike other change management solutions on the market today, unauthorised changes are not simply logged in a database. CimTrak detects, quarantines and can instantly resolve mistakes or unexpected changes so that your critical business functions remain available to employees, customers, and suppliers.

CimTrak ensures the availability and integrity of your critical IT assets by instantly detecting the root-cause and responding in real-time to any unexpected changes to your applications and infrastructure. 

When a change is detected, CimTrak captures it at the exact moment it occurs and provides a detailed audit trail of the incident:

    • Where the change was made
    • When the change took place
    • Who made the change
    • How the change was made
    • What was changed
    • Was it an approved action

CimTrak’s change control and configuration management features ensures that your critical IT assets cannot be tampered with - either maliciously or inadvertently. This guarantees that your applications, databases, servers and network devices, including switches, routers and firewalls, keep running the way they are intended to, so there are no interruption in your business operations or compliance violations.


More about CimTrak Integrity Suite

expand all

CimTrak for Servers (including VMWare ESX)

expand

Protects against unauthorised change to vital applications and servers (virtual and physical), including operating system settings, system files, directories, data files, and file attributes.

 

Monitoring Critical VMware ESX and ESXi Server Configurations with CimTrak

Awareness of VMware ESX/ESXi server configuration changes is vital in maintaining a stable, secure virtual machine host. Monitoring the integrity of these configurations ensures that the hosted systems remain available for supporting day-to-day business operations. Because VMware ESX hypervisors generally run many virtual machines, unexpected or malicious changes can quickly cripple an organisation's IT infrastructure.

Active monitoring of VMware ESX hypervisor configurations is an important aspect of IT security as well as a best-practice for VMware administration. It also provides vital insight into your virtual infrastructure. Existing VMware ESX hypervisor monitoring tools tend to focus solely on monitoring certain key configuration settings. Based on this limited view of the state of the hypervisor, it is possible that subtle changes and alternations to the hypervisor configuration will not be detected. Cimtrak keeps your VMware ESX hypervisors in a constant state of integrity and ensures that all ESX configuration changes are detected.

Cimtrak takes VMware ESX/Sexy monitoring to the next step by monitoring the configurations of the VMware Hypervisor directly at the source. Cimtrak interfaces directly with VMware to securely capture actual configuration data filles from the Hypervisor host. Capturing the actual configuration data files allows complete analysis of the VMware Hypervisor and the host operating system running the Hypervisor. Additionally, Cimtrak provides administrators the capability to manually roll-back configurations using the authoritative copy of configurations stored within Cimtrak's Master Repository.

CimTrak for Network Devices

expand

 

Protects against unauthorised and destructive changes to your network infrastructure, including firewalls, routers, switches, and intrusion detection systems as well as accidental misconfigurations that can lead to your IT infrastructure being compromised.

CimTrak for Databases

expand

 

Protects against unauthorised changes to critical database schemas including security and access settings which have the potential to allow critical data to be breached.

CimTrak for POS

expand

 

Protects POS Systems from changes that can allow payment card data to be breached or cripple these business critical systems.


About CimCor - makers of CimTrak

CimCor - makers of  CimTrak

Cimcor develops innovative security and integrity software solutions. Since 1997, the Company has been on the front lines of corporate, government and military initiatives to protect computer networks from unauthorised access.

Aquion is the sole CimTrack Solution Partner in Australia and New Zealand.

For more information

Contact Audrey Lyon, CimCor - makers of CimTrak Product Manager from Aquion

Call 1300-AQUION

or email us at

Schedule a Demo Request a Quote

Contact Audrey Lyon

CimCor - makers of CimTrak Product Manager from Aquion

Name

Email

Phone

+ Add A message

Message

Company

Submit

Schedule a Demo

Contact Audrey Lyon, CimCor - makers of CimTrakproduct manager from Aquion

Name

Email

Phone

+ Add A message

Message

Company

Submit

Request a Quote

Contact Audrey Lyon, CimCor - makers of CimTrak product manager from Aquion

Name

Email

Phone

+ Add A message

Message

Company

Submit
Home » Vendors » CimCor - makers of CimTrak » CimTrak Integrity Suite
CimCor - makers of  CimTrak

Contact Audrey Lyon, CimCor - makers of CimTrak Product Manager from Aquion

Call 1300-278-466

Request a Quote

Request a Quote

Contact Audrey Lyon, CimCor - makers of CimTrak Product Manager from Aquion

Name

Email

Phone

+ Add A message

Message

Company

Submit

Contact Audrey Lyon

CimCor - makers of CimTrak Product Manager from Aquion

Name

Email

Phone

+ Add A message

Message

Company

Submit

Whitepapers

CimTrak Integrity Suite Whitepaper

CimTrak Technical Summary

CimTrak is a leader in helping organizations and government agencies worldwide maintain the security, integrity, compliance and availability of their critical IT assets.

Please download this Technical Summary for details.

Download whitepaper

Common Criteria

Information Security
Network Change Management
Network Configuration Management
PCI-DSS Compliance
 

Aquion Technical Services


Aquion's Technical Consultants are available to assist our resellers and customers with solutions advice, pre-sales assistance with technical evaluations, implementation services, and post-sales support. Aquion has Technical Certifications from Solarwinds, Symantec and GlobalSCAPE - as well as extensive practical experience with a large number of our vendors technologies.

Contact Aquion for more information.

AqRE - Strategic Sourcing Solutions

Let Aquion's Reseller Extension Service (AqRE) help you with software sourcing. We have relationships with 100s of software publishers. Account Managers are assigned to Reseller Partners to deliver quotes accurately and on time. Post-sales we provide maintenance management services. Learn more about AqRE service.

View all AqRE services

About Aquion

For nearly a decade, Aquion has supplied and supported software for leading large accounts and their resellers and partners. We have expertise in information security, organisational efficiency, network optimisation and strategic software sourcing. We provide all services to market, sell, implement and support the strategic technologies that we supply in Australia, New Zealand, Asia Pacific and India. Our partners include major Reseller and Consulting Firms.

Contact Aquion
  • Security Solutions
    • Mobile Device Security and Management
    • Authentication Management
    • Network Management Software
    • Intrusion Detection, Intrusion Prevention
    • Two Factor Authentication
    • Data Loss Prevention (DLP)
    • Message Classification
    • view all solutions >
  • Products
    • SMS PASSCODE
    • Solarwinds Orion NCM
    • Symantec/PGP Whole Disk Encryption
    • Rapid7 NeXpose
    • Rapid7 Metasploit
    • view all products >
  • Vendors
    • SMS PASSCODE
    • PGP/Symantec
    • Solarwinds
    • Globalscape
    • Seavus
    • SSH
    • Rapid7
    • view all vendors >
Aquion Pty. Ltd. - Software Reseller in Australia, New Zealand, Asia Pacific

© Aquion Pty Ltd. 2005-2012. All rights reserved.

1300-AQUION

About us | Contact us | Sitemap |
Privacy Statement | Terms of Use | Channel Partners

 
Home » Vendors » CimCor - makers of CimTrak » CimTrak Integrity Suite
Contact Sales
1300-AQUION
(278-466)
  • AqSEC
  • AqRE
  • Vendors
  • About Aquion
  • Promos