Get the right data to the right people

VAM works the way your company is structured
A vulnerability is discovered on a UNIX® server. Should be simple to fix, right?

As the corporate IT security manager, you're ultimately responsible. But you don't 'own' the box; it's the responsibility of the server group. And because it contains sensitive personnel data, only a select few have access to it. Oh, and by the way, it's located in the Seattle office, and you're in Chicago, but it's a high-criticality device and policy states it must be patched with in 48 hours...

Relax. With VAM, this is a simple fix.

VAM's powerful Groups and Collections features let you re-create your organizational structure within VAM for accountability and maximum efficiency. Device ownership, personnel lines of reporting, multiple geographic locations—VAM accounts for it all across the enterprise and auto-provisions task assignments, alerts and notifications. VAM not only alerts the designated device repairer, but everyone in the organizational structure with a legitimate need to know. And VAM integrates with Active Directory to import and manage users.

Security that's secure
VAM's multi-user, role-based permissions ensure that only those with a legitimate need to know have access to vulnerability data. Default roles ship with VAM and can be modified with fine-grained permissions to fit organizational requirements, allowing you to meticulously control access to vulnerability data. In this way, your desktop group is automatically assigned—and is able only to "see"—Mac and Windows vulnerabilities, while the mainframe guys get the UNIX ones. Likewise your team in the Boston office can't see—and is not distracted by—the vulnerabilities found on the web server in Albuquerque.

Enterprise deployment
VAM scales seamlessly, from simple LAN deployments to enterprise-level networks. Managed from a single Central Server, multiple Distributed Scanners (DSs) can be deployed to provide the coverage required. DSs enable VAM to scan through or behind firewalls (and other access control measures) and across geographically dispersed networks. Enterprise features include:

  • Scalable vulnerability scanning and management
  • Parallel scanning
  • Load balancing
  • Centralized configuration and control of distributed scanners
  • In-depth scanning of remote networks
  • Penetration testing
  • Secure, central management of all vulnerability data