8
Xacta IA ManagerAutomating Compliance for Security Operations David Wilson, VP Product Mgmt & Support

Xacta IA Manager - NVD - Home presentations/Day2/Xacta... · Continuous Risk Management Solutions IA Management Process Integration and ... SCAP in Xacta IA Manager ... IA Solutions

Embed Size (px)

Citation preview

Xacta IA Manager™

Automating Compliance for Security Operations

David Wilson, VP Product Mgmt & Support

2©Copyright 2007 Xacta Corporation

Corporate Profile

Telos® Corporation (founded 1969)

Secure IT Solutions to the Federal Government

Xacta® Corporation, a Telos Company (founded 2000)

Government-validated security management solutions

for the Government and Industry� Xacta IA Manager™

� Information Assurance Services

� Compliance Assessment and Reporting Solutions

� Continuous Risk Management Solutions

� IA Management Process Integration and Automation

3©Copyright 2007 Xacta Corporation

Xacta IA Manager Process Enforcement

Xacta IA ManagerTM provides security

management functionality to

continuously manage

IT-related risk

4©Copyright 2007 Xacta Corporation

Xacta Timeline

2000 2002 2003 20042001

C&A Process & Documentation

Security Scanning &

C&A Workflow

Active Updates (e.g., vulnerability feed)

Security Management

Process AutomationContinuous

Assessment

Add New Functionality to Address Different Types of Security Management Issues…

NIAP Certified,

E-eye Retina Integrated

DIACAP Process & Reports

20062005

5©Copyright 2007 Xacta Corporation

Core Assessment Engine

Security Test & Evaluation

(Auto Executed)

Security Requirements File

(Auto-Generated)

Policies & Regulations (DITSCAP-DIACAP, HIPAA,

FISMA, DCID, NIST)

SSP/

SIP, DIP

POAM

Scorecard

6©Copyright 2007 Xacta Corporation

Continuous Assessment Upgrade

7©Copyright 2007 Xacta Corporation

SCAP in Xacta IA Manager™

Continue to Automate C&A and Compliance Reporting, while Bridging the Gap with Ops

� XCCDF – increases interoperability with other products to

retrieve vulnerability data

� CPE – solves major issues when importing asset info from

multiple sources

� Further leverage CVE – augment our ability to Pass/Fail

security controls

� OVAL – extend vulnerability detection capabilities

� CONTENT – leverage and contribute

8©Copyright 2007 Xacta Corporation

Contact Information

David WilsonIA Products

VP, Product Mgmt & Support

[email protected]

Work: 703. 726.2238

Mobile: 571.274.9946

Telos Corporation19886 Ashburn RoadAshburn, VA 20147

Tom LeahyIA Solutions

Business Development

[email protected]

Work: 703.858.4836

Mobile: 703.623.3489