zerO'clock Log Manager (zLM)


zerO'clock Log Manager (zLM)

zLM is the right solution to be compliant with existing regulations (es. Garante Privacy) and international security standards. Give to your business maximum security protection.

 

DESCRIPTION

The ideal solution for log managemet of your IT infrastructure.

To meet the changing needs of IT Security and in paticular Log and Security Event Management (privacy, compliance, retention, information confidentiality/integrity/availability, fast auditing) often companies have difficulty adapting their IT infrastructure to the new standards.

The presence of heterogeneous systems often unable to interoperate with each other in terms of IT Security (database, applications, operative systems, security devices, web application  servers, firewall, IDS/IPS, etc.) represents the typical scenario that a Log Management platform must be able to manage.

A detailed and rigorous analysis of theese environments originated as a result of many years of experience about SIEM (Security Information Event Management) led zerO'clock to realize zLM, a platform that meets the real IT world needs in terms of Log Managemet and Event Correlation, collecting requirements and use cases from real contexts.

 

ADVANTAGES AND FEATURES - What make special zLM?

zLM meets all the reastrictes measures of italian and european Guarantor about Data Protection, with particular reference to "System Administrators"  of November, 27 2008.

 

Some zLM features are the following:

  • Integrated toos for Auditing
  • Ability to collect: applicative accesses, access both client and server systems, access-log, event-record both integral and filteredsia
  • Very high degree of robustness to ensure high level of integrity
  • Collected log are a not rebuttable forensic evidences in case of legal proceedings and provides an absolute guarantee of unalterability of logs
  • Multiplatform and integrable: can be used with all Operative Systems (alod Mainframes) and can be integrated with existing external Storage
  • Both Agentless and Agent based
  • Events acquisition in real time
  • Ability to limit the bandwidth for log tranfers
  • Absorbs any workload peaks through a caching system
  • Inspection, monitoring and patching of agents even remotely
  • Normalize events
  • Ensure a non-intrusive time synchronization between log collector and agents
  • Customizable in all its components to ensure maximus integration level in Customer's infrastructure and in IT Operation processes
  • Fully controllable by command line to be integrated even in the most sophisticated and varied environments and IT Operation processes
  • Scalable to any numbers of servers
  • Can be used as a singel sounce for all SIEM systems
  • Extensible via API
  • Secure data tranfer with mutual authentication and encrypted mode