HP-UX 11i simplifies your conformance to regulatory compliance requirements, such as Sarbanes-Oxley, HIPAA and Gramm-Leach-Bliley
From expensive business necessity to cost-effective compliance enablement
Simplify compliance
Many regulations: We understand that depending on the nature of your business, you may be required to conform to many different regulations, many of which place requirements on your IT Security. Many regulations are country or region specific (such as Sarbanes-Oxley/USA, and 11MEDIS-DC/Japan, SB-1386/USA-California) though their reach may extend to businesses operating in other regions depending on the particulars of the regulations).
Many regulations are industry-specific (such as HIPAA for Health Care, NERC for utilities, etc). As a result, a business with customers in different locations or operating out of multiple locations and multiple industries can easily be required to conform to many different regulations at the same time, and be subject to many different auditors and audit procedures. We at HP understand and are here to help.
Common elements of security-related compliance requirements
Most regulations have several elements in common, and compliance efforts may be eased by planning and maintaining your compliance efforts around these common elements, customizing where necessary. Compliance requires people, process/policy, and tools.
Several regulatory requirements are primarily human activities, and not computer activities, such as policies and processes related to:
Business continuity planning
Physical and environmental security
Operations training
For those compliance requirements, HP’s security governance solutions provide guidance and consulting services to assist you.
HP-UX 11i simplifies compliance requirements
For those compliance requirements which have a significant computer/automation component, such as:
Operational Enforcement
Operational Audit and Incident Response
HP and HP-UX 11i provide a rich portfolio of supporting technology (listed below) to ease your compliance burden
Operational enforcement
HP-UX 11i offers several tools and technologies to help establish and maintain system-access policies once they are created. Especially relevant are numerous identity management products including:
HP-UX 11i offers many tools and capabilities which provide evidence of working or failed access controls, and policy artifacts to satisfy auditors. Some of these products include:
Logging and audit trails from many individual applications