Integrated out-of-the-box support for DISA-STIG controls and NIST Cybersecurity Framework, reduces the time and cost for agencies to meet EO requirements
The 2017 White House EO charges each individual agency with reviewing and reporting on its cyber posture using the
Qualys Policy Compliance (PC) now helps customers overcome that challenge by harmonizing the process of technical control assessment and reporting. PC has been updated with DISA-STIG content along with comprehensive mapping of controls to the NIST Cybersecurity Framework. This gives customers automated control assessment capabilities across complex heterogeneous environments leveraging DISA-STIG and other best practice standards, while integrating native reporting against NIST CSF.
"IT security and compliance plays a crucial role in the continued adoption of cloud by
The Qualys Cloud Platform combines assessment and reporting of technical and procedural EO requirements in a harmonized solution that helps with:
- Combined Visibility of Mandate Compliance - PC empowers customers to comply with multiple mandates and standards in a harmonized manner — by consolidating the requirements from the multiple standards into a single view — and allows reporting on one mandate or on multiple mandates in a single report. This is done through the automated harmonization of compliance requirements from multiple standards, in a continuous manner.
- Technical and Procedural Risk Assessment - Qualys Security Assessment Questionnaire (SAQ) module allows customers to also assess the procedural controls of the standards and also empowers customers in assessing their vendors and third parties for their controls posture. An out-of-the-box NIST Cybersecurity Framework template can be sent across internal departments and to vendors to assess their responses and report on overall compliance.
- Automated Mandate-based Reporting - Qualys PC and SAQ support out-of-the-box, automated reporting on NIST CSF on the basis of the DISA STIG guidelines. The mandate-based reporting feature of PC showcases the compliance posture against the standards or mandates in terms of the underlying security baseline by mapping DISA and other controls to the required compliance standards in a continuous manner.
The Qualys Cloud Platform
The Qualys Cloud Platform is FedRAMP Certified with Authority to Operate. All
Additional Resources:
- Follow
Qualys on LinkedIn and Twitter - Read more about Qualys Policy Compliance and SAQ
- Read more about the
Qualys Cloud Platform
About
QUALYS MEDIA CONTACT
dconner@qualys.com
650-801-6196
To view the original version on PR Newswire, visit:http://www.prnewswire.com/news-releases/qualys-helps-federal-agencies-address-requirements-of-white-house-executive-order-eo-on-cybersecurity-300471889.html
SOURCE
News Provided by Acquire Media