Overview Cisco Compliance Management and Configuration Solution Understand, control, and maintain compliance in your network to achieve business continuity and focus on your company’s strategic priorities. Change and Compliance in Dynamic Environments Many companies struggle to manage compliance and implement change in their network. Security requirements are increasing, creating an enduring reality of risk that needs to be managed. Companies do not have a method to implement the necessary changes consistently across complex and evolving networks to meet internal best practices, and commercial and regulatory standards. Change management tools available today are inadequate—requiring a high amount of manual work and lacking consistency and controls for change activity. One manual error on a configuration can undermine the security of the entire business. According to Gartner, 85 percent of network problems are due to changes, 60 percent of network outages are due to human error, and 47 percent of changes are not accounted for or authorized. A structured approach to the management of change and compliance eliminates these issues and can help you achieve and maintain these standards on a continuous basis. By countering inadequate implementation and a lack of comprehension of operational responsibilities associated with change, your company can avoid the cascading and cumulative costs of non-compliance. Over time, these automated, consistent processes build alignment, commitment, and integration across your organization, resulting in true business transformation. 1 © 2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Overview Compliance Management Cisco® Compliance Management and Configuration Solution provides a comprehensive set of network management tools and Cisco operational expertise to meet the complex infrastructure needs of enterprise and service provider clients, and focuses on addressing critical compliance and configuration needs across your network. Compliance Management and Configuration Solution applies Cisco intellectual capital, operational expertise, and smart automation capabilities to enable compliance and configuration management through controlled change to support your business continuity and growth. The service is ideal if you need to gain insight and accelerate change to strategically address expanding compliance in your environment to resolve issues more quickly and achieve the highest levels of efficiency. It configures policies for compliance monitoring and includes configuration analytics, compliance reporting, and automation of compliance checks and remediation steps. Compliance Management and Configuration Solution capabilities are summarized in Figure 1. Figure 1. Capabilities of Compliance Management and Configuration Solution 2,500 best practices and configuration Configuration guidelines are embedded in the appliance database Combines Cisco expertise and industry Compliance standards to craft internal policy and measure against regulatory compliance Workflow Complete workflow management with customizable entitlement Fully integrated with Cisco intellectual capital Software Image to enable advanced functionality around image promotion, restore, and monitoring Combining Cisco expertise, intellectual capital, and workflow automation our solution enables you to manage changing organizational, commercial, and regulatory compliance requirements across your entire network infrastructure. The Compliance Management and Configuration Solution will assess and remediate your compliance against the following security and regulating standards: • Health Insurance Portability and Accountability Act (HIPAA) • Sarbanes-Oxley with Control Objectives for Information and Related Technologies (SOX-COBIT) 2 © 2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Overview • ISO/IEC 27002: Information technology and security techniques. Code of practice for information security management published by the International Organization for Standardization and the International Electrotechnical Commission • National Security Agency (NSA) • Payment Card Industry Data Security Standard (PCI DSS) • Department of Homeland Security (DHS) checklist reports • Defense Information systems Agency (DISA) checklists • Center for Internet Security (CIS) benchmarks • Cisco Advisory Reports • North American Electric Reliability Corporation (NERC) checklist reports • Federal Information Security Management Act (FISMA) reports Removing complexity, addressing ongoing regulatory change in the environment, and delivering secure, predictable performance helps you realize the full business value of proactive compliance management that delivers greater speed, accuracy and repeatable processes. Primary Benefits • Manage change and complexity: Our service experts align resources and service capabilities to your infrastructure to make sure continuous updates are made against organizational, commercial, and regulatory compliance standards. • Mitigate risk: The Compliance Management and Configuration Solution eliminates multiple toolsets to prevent redundancy, reduce human errors and the time required for change by instilling full automation of all release management activities. It gives you a view into industry best practices for configuration, and workflow management provides you with centralized control, increasing security, and accountability. • Achieve and enforce compliance: Detect and correct compliance violations to stay current with compliance standards. Automated compliance reporting, advanced network change control workflows and approvals enforcement, and best practice configurations all play a vital role in helping you reduce and even eliminate non-compliance costs and penalties. • Maintain business continuity: The Compliance Management and Configuration Solution provides consistent, repeatable experiences to increase the uptime and stability of your network. The solution gives you full archive and restore capabilities for configurations, auto rollback to decrease repair time, real-time change detection, and integration for comprehensive views of your network infrastructure. Gain Full Advantage of Cisco Expertise The Cisco Compliance Management and Configuration Solution allows you to combine service elements to deliver a customized solution that meets your specific network management needs. This includes seamless integration with ServiceGrid, Network Optimization Service, Installed-Base Lifecycle Management, and other Cisco Advanced Services. You gain full advantage of Cisco’s technology expertise, processes, and best-in-class tools to help you achieve your network goals. With Cisco Compliance Management and Configuration Solution, you can focus on your strategic business initiatives, while Cisco focuses on your network. 3 © 2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Overview Why Cisco Services Realize the full business value of your technology investments with smart, personalized services from Cisco and our partners. When you secure our services, we: • Plan, test, and execute change • Provide regular reporting and planning • Deliver highly skilled engineering expertise We enable you to successfully plan, build, and run your network as a powerful business platform. Whether you are looking to quickly seize new opportunities to meet rising customer expectations, improve operational efficiency to lower costs, mitigate risk, or accelerate growth, we have a service that can help you. Americas Headquarters Cisco Systems, Inc. San Jose, CA Asia Pacific Headquarters Cisco Systems (USA) Pte. Ltd. Singapore Europe Headquarters Cisco Systems International BV Amsterdam, The Netherlands Cisco has more than 200 offices worldwide. Addresses, phone numbers, and fax numbers are listed on the Cisco Website at www.cisco.com/go/offices. Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. To view a list of Cisco trademarks, go to this URL: www.cisco.com/go/trademarks. Third party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (1110R) Printed in USA 4 © 2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. 04/16