FortiScan Automated Compliance and Vulnerability Management

Efficient IT Governance, Risk & Compliance (ITGRC)
Today’s businesses are required to address security and compliance risks on their IT infrastructure on a daily basis. ITGRC requirements affect IT security at multiple
levels, from the network down to endpoint client machines and other network devices. Vigilance in keeping up with current operating System (OS) vulnerabilities
and associated patches is critical as zero-day attacks at the OS level become more sophisticated. Maintaining homegrown and manual security compliance processes
is no longer a viable option.
Keeping up with Compliance - PCIDSS, SOX, GLBA, HIPAA
- Unified platform or auditing, policy and vulnerability management
- Industry and federal standards based
- Easy to deploy and manage
- Automated compliancemanagement
- SCAP certified
- Periodic updates from FortiGuard
Automating Compliance at the Operating System Level
FortiScan provides an enterprise-scale solution that integrates endpoint vulnerability management, industry and federal compliance, patch management, remediation, auditing and reporting into a single, unified appliance for immediate results. Organizations realize quick time-to-value with easy to install, intuitive and standard compliance policies (NIST SCAP, FDCC, PCI-DSS, SOX, GLBA, HIPAA) ready outof- the-box with regular updates from FortiGuard.
Minimal Impact and Low Total Cost of Ownership (TCO)
Failing to keep up with regulations, vulnerabilities and patches for the OS can have grave cost implications. FortiScan simplifies the process with regular policy updates through FortiGuard for current patches and industry leading remediation advice that strengthens the integrity and security of operating systems.
Key Features and Benefits
| Vulnerability Management (VM) |
Identifies security vulnerabilities and compliance exposures through deep inspection with client-resident asset agents - transparent to end users. |
|
| Agent-less Vulnerability Assessment |
Asset prioritization and profile-based scanning to automatically discover, inventory and assess security posture of the oS on networked devices, including mail servers, FtP servers or other UNIX
or Windows hosts. |
| Auditing |
Monitors across heterogeneous systems and provides industry-standard benchmarks for IS compliance audits for operating systems; Select from the list of audit benchmarks or create custom policies. |
| Patch Management and Remediation |
Delivers patch management with ready-to-deploy remediation and enforcement actions; remediation capability goes beyond traditional patch management, allowing network managers to change confi gurations and potentially mitigate weak settings, including disabling an application or denying a network request. |
| Reporting and Compliance |
Compliance for regulatory mandates with 360 degree reporting and analysis; provides industry, regulatory and best practices for NISt SCAP, FDCC, PCI-DSS, SoX, GlbA, HIPAA, ISo 17799, FISMA, and more. Pre-defi ned reports and views for compliance are also provided. |
| Smart Automation |
Reduced errors, repeatable processes, and predictable results delivered with an extensive libraries of templates that enable It staff to leverage industry standard best practices that produce measurable results. |
| Enterprise Scalability |
Supports fl exible deployments across the network of up 60 databases per appliance for consistent enterprise-wide policy enforcement, processing tens of millions of audit records from databases per day. |
FortiScan Series Specifications
| FortiScan Models |
|
| FortiScan-1000B |
| System Specifications |
| Security Hardened Platform |
Yes |
| Asset Agent Licenses |
2,000 |
| Agent-less Scans |
Unlimited |
| Hardware Specifications |
| 10/100/1000 Ethernet |
4 |
| Number of Drive Bays |
2 |
| Total Hard Drive Capacity |
2 x 1 TByte |
| Storage key (boot image) |
1 GB USB |
| RAID Storage Management |
Yes (0,1) |
| Redundant Hot Swap Power Supplies |
No |
| Dimensions (H, W, L) |
1.7 x 16.7 x 30.4 in
(4.3 x 42.6 x 77.2 cm) |
| Weight |
39 lbs (17.7 kg) |
| Rack Mountable |
Yes |
| AC Power Required |
100-240 VAC, 50-60 Hz, 4.8 Amp (Max) |
| Auto-Switching Universal |
110/220 Volts |
| Average Power Consumption |
295 Watts |
| Environmental |
| Operating Temperature |
50 to 95 deg F
(10 to 35 deg C) |
| Storage Temperature |
-40 to 149 deg F
(-40 to 65 deg C) |
| Humidity |
5 to 95% non-condensing |
| Regulatory |
| Regulatory |
FCC Class A Part 15 / CE Mark |
| Browser Support |
| Browser Support |
Internet Explorer 7.x, Firefox 3.x |
| Features |
FortiScan Administration Console |
| System Requirements |
1.0 GHz CPU, 1024 MB RAM, 80 GB HDD |
| Operating System support |
Windows 2000 / XP; Windows Server 2000 / 2003 |
| Features |
FortiScan Asset Agents |
| Operating System support |
Windows 2000 / XP; Windows Server 2000 / 2003;
Red Hat Enterprise WS, ES, AS 3.0, 4.0 and 5.0;;
Sun Solaris 8, 9 and 10
|
| Footprint |
500 KB |