brightfly.com

Login

Log in to start commenting, connect with colleagues,
and get our latest Research.
It's free, it's easy, and there
are no lengthy forms to fill
out. Besides, we are a bunch of
security people too, so don't worry.

We won't share your
information with anyone.

Subscribe





Home
Configuresoft’s Center for Policy and Compliance Offers Federal Desktop Core Configuration Toolkits PDF Print
Posted by News Desk   
Thursday, 29 May 2008

Configuresoft’s Center for Policy and Compliance (CP&C) Expands Desktop Security for Windows with Federal Desktop Core Configuration (FDCC) Toolkits

Department of Defense, DISA, NSA and NIST Consensus Strengthens Desktop Hardening Guidelines

 

Pub. 5.28.08 by vendor 

Configuresoft, the world's leading enterprise server configuration management company, today announced the availability of the Federal Desktop Core Configuration (FDCC) toolkits for Microsoft Windows XP and Vista. The FDCC is a security mandate and push toward PC standardization by the Office of Management and Budget (OMB).

For organizations looking to increase their desktop security controls, the FDCC is one of the few security guidelines that deals directly with Vista and provides a baseline best practice configuration for desktops across the enterprise, said Scott Crawford, Research Director for analyst firm Enterprise Management Associates. The FDCC policy is a strong set of best practices for both federal and commercial organizations.

The FDCC is based on Department of Defense (DoD) strengthening of the Microsoft Security Guide and reflects the consensus recommended settings for the Windows Vista and Windows XP from Defense Information System Agency (DISA), National Security Agency (NSA), and National Institute of Standards & Technology (NIST).

At CP&C our mission is to identify regulations, standards and best practices critical to our customers information security programs. We then translate that guidance into working compliance content that allows IT operations to focus on strategic initiatives rather than have to become regulatory and security controls experts themselves, said Dave Shackleford, director, Center for Policy and Compliance for Configuresoft. While FDCC was developed for federal organizations, commercial organizations can and do benefit by using it to enhance their desktop security policies. For example, financial and healthcare organizations that need to protect their customers sensitive data could benefit from implementing the FDCC guidelines for all Vista and XP desktop systems.

This new compliance toolkit translates the FDCC security policy into a rules-based template to ensure enterprise security configuration settings correspond with OMB and NIST guidelines as it relates to the FDCC mandate. Each toolkit produced by the CP&C team consists of a set of rule-based templates, reports and dashboards that easily plug into Configuresofts Enterprise Configuration Manager (ECM) to ensure security and operational compliance. Additionally, CP&C continuously updates the security and compliance toolkit content to ensure the latest appropriate information security processes and risk management best practices are available.

Configuresofts CP&C has led the industry in forming opinion and bringing together published security and compliance information to build a rich library of compliance content that are available for download by Configuresoft customers from www.configuresoft.com. These CP&C Compliance Toolkits include:

  • PCI DSS Compliance Toolkit for Windows, UNIX and Linux
  • VMware Infrastructure 3 Security Hardening Guidelines and VMware Virtual Center Best Practices
  • Center for Internet Security (CIS) VMware ESX Server Benchmark
  • ISO17799/27001 Toolkit for Physical and Virtual Computing
  • FISMA Compliance Toolkit for Physical and Virtual Computing
  • GLBA Compliance Toolkit for Physical and Virtual Computing
  • HIPAA Compliance Toolkit for Physical and Virtual Computing
  • Sarbanes-Oxley (404) Compliance Toolkit for Physical and Virtual Computing
  • DISA STIG Compliance Toolkit for Physical and Virtual Computing

[ Browse news by category ]   [ Read all vendor news ]

Note: Brightfly covers announcements of new commercial offerings as a community service. In order to retain objective oversight of market news, we neither ask nor receive compensation for commercial coverage.

Recommend this article...




Add as favorites (0) | Link to this | Views: 107

  Comment
RSS comments

Only registered users can write comments.
Please login or register.

 
< Prev   Next >
© 2009 brightfly.com