The Gramm-Leach-Bliley Act (GLBA)—also known as the Financial Services Modernization Act—mandates the standards that financial institutions, such as commercial banks, security firms, insurance companies, and credit unions, need to follow to ensure the confidentiality and security of their customers' financial records and personal information. Failure to comply can result in dire consequence for businesses, including imprisonment of directors and officers for up to five years, penalties up to $100,000 per violation, or both.
DataSecurity Plus' audit tools help protect your organization's critical information against loss, misuse, unauthorized access, or modification by proactively identifying and addressing potential threats using preconfigured alerts. In addition, DataSecurity Plus' robust auditing and reporting capabilities help ensure data integrity, prove regulatory compliance, and verify role-based access, ensuring business continuity.
Below is a list of reports you can use to prove that your organization is compliant.
GLBA standards | DataSecurity Plus report or alert |
Track all modifications to files in order to assess risks to data integrity and resolve violations, if any. | All file/folder changes report |
Deleted/overwritten files report | |
Security permission changes report | |
Most modified file report | |
File modified after N days report | |
Create events report | |
Renamed/moved events report | |
Periodically review all attempts to access critical data, including both successful and failed attempts. | All failed attempts report |
Read events report | |
Most accessed file report | |
Most accesses by processes/user report | |
File accessed after N days report | |
Review access rights and file permissions periodically to ensure that no excessive permissions are assigned beyond what is needed. | NTFS permissions report |
Share permissions report | |
Utilize customizable alerts to enable timely detection of any user actions that violate your data protection policies. | File/folder moved or renamed alert |
File/folder security changes alert | |
File/folder removed alert | |
Media files alert | |
Use preconfigured alerts to detect and respond quickly to potential data breaches. | Ransomware file alert |
Threshold-based alert |
* You can also generate customized reports based on file path, users, business hours, etc..
Audit and analyze file and folder access |
Analyze files and disk space |
|||
The Access Audit report provides detailed information on the quintessential Four W's—who accessed what, when, and from where. This will help you keep track of all accesses and changes. The Access Analysis report provides a summary view of accesses and changes, which can help you detect access trends. | The File Analysis report helps isolate files that are old, unused, unmodified, large, hidden, or non-business; making data cleanup easier. The Disk Analysis report provides visual insight into disk space usage and trends, facilitating optimization of disk space; it also reveals properties of files and folders. | |||
Actively respond to security breaches |
Audit access rights |
|||
Detect security breaches as and when they occur with alerts that get emailed instantly. Define threshold limits for mass access events such as malware attacks. | Examine share and security permissions of files and folders and prevent access exploitation. | |||
Minimize incident response times |
||||
Become proactive with real-time file and folder access and change auditing. Continuously monitor and get notified about critical activities. |
Disclaimer: Fully complying with the GLBA requires a variety of solutions, processes, people, and technologies. This page is provided for informational purpose only and should not be considered as legal advice for GLBA compliance. ManageEngine makes no warranties, express, implied, or statutory, as to the information in this material.