McAfee PASCDE-AB-IA Product Guide - Page 39

Creating and managing audits, Audits and how they work

Page 39 highlights

Creating and managing audits McAfee Policy Auditor allows you to create audits based on benchmarks and assign them to run on systems. You can create audits from a McAfee-supplied selection of predefined benchmarks established by government and industry such as SOX, HIPAA, PCI, and FISMA. You can also create audits based on third-party benchmarks or benchmarks that you create yourself. Audits return results that include a score allowing you to determine how well a system complies with the rules in the benchmark. Contents Audits and how they work Activate benchmarks Create an audit Run an audit manually Disable an audit Delete audits Audit whiteout and blackout periods Service Level Agreements Exporting audits and audit results Export audits Audits and how they work McAfee Policy Auditor evaluates systems against independent standards that are developed by government and private industry. It can also evaluate systems against standards that you create. The software uses audits to determine the compliance status of a system, and returns results indicating areas that are out of compliance. An audit consists of: • A benchmark or a selected profile within a benchmark • A system or groups of systems • An audit frequency (how often the data should be gathered) • An optional waiver to temporarily exclude systems or audit results from reports Benchmarks are documents that contain rules for describing the desired state of a system according to recognized standards. Rules contain one or more checks that are normally written in the OVAL language. See the documentation for McAfee Benchmark Editor to learn more about benchmarks and their structure. McAfee Policy Auditor 6.0 software Product Guide for ePolicy Orchestrator 4.6 39

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98

Creating and managing audits
McAfee Policy Auditor allows you to create audits based on benchmarks and assign them to
run on systems.
You can create audits from a McAfee-supplied selection of predefined benchmarks established
by government and industry such as SOX, HIPAA, PCI, and FISMA.You can also create audits
based on third-party benchmarks or benchmarks that you create yourself.
Audits return results that include a score allowing you to determine how well a system complies
with the rules in the benchmark.
Contents
Audits and how they work
Activate benchmarks
Create an audit
Run an audit manually
Disable an audit
Delete audits
Audit whiteout and blackout periods
Service Level Agreements
Exporting audits and audit results
Export audits
Audits and how they work
McAfee Policy Auditor evaluates systems against independent standards that are developed
by government and private industry. It can also evaluate systems against standards that you
create.
The software uses audits to determine the compliance status of a system, and returns results
indicating areas that are out of compliance.
An audit consists of:
A benchmark or a selected profile within a benchmark
A system or groups of systems
An audit frequency (how often the data should be gathered)
An optional waiver to temporarily exclude systems or audit results from reports
Benchmarks are documents that contain rules for describing the desired state of a system
according to recognized standards. Rules contain one or more checks that are normally written
in the OVAL language. See the documentation for McAfee Benchmark Editor to learn more
about benchmarks and their structure.
39
McAfee Policy Auditor 6.0 software Product Guide for ePolicy Orchestrator 4.6