Vulnerability management: Visionael Enterprise Security Protector 3.0 - Information Security Magazine

Vulnerability management: Visionael Enterprise Security Protector 3.0

Visionael Enterprise Security Protector 3.0
Visionael
Price: Starting at $15,000

@exb

    Requires Free Membership to View

    SearchSecurity.com members gain immediate and unlimited access to breaking industry news, virus alerts, new hacker threats, highly focused security newsletters, and more -- all at no cost. Join me on SearchSecurity.com today!

    Michael S. Mimoso, Editorial Director

    By submitting your registration information to SearchSecurity.com you agree to receive email communications from TechTarget and TechTarget partners. We encourage you to read our Privacy Policy which contains important disclosures about how we collect and use your registration and other information. If you reside outside of the United States, by submitting this registration information you consent to having your personal data transferred to and processed in the United States. Your use of SearchSecurity.com is governed by our Terms of Use. You may contact us at webmaster@TechTarget.com.

Visionael Enterprise Security Protector 3.0
@exe

Visionael's Enterprise Security Protector 3.0 combines Nessus-based scanning with a comprehensive dashboard to facilitate the vulnerability management lifecycle.

Visionael Enterprise Security Protector 3.0 (ESP) is an integrated reporting and vulnerability scanning tool, whose great value lies in its ability to manage and track vulnerabilities workflow from discovery to remediation.

The Web-based interface and dashboard give security managers a view of the current status of enterprise systems: up-to-date information on the SANS Top 20 vulnerabilities, current risk level, trending, enterprise vulnerabilities, business risk ranking breakdown and ticketing.

ESP conducts asset discovery through ICMP ping sweeps (OS detection can be enabled via TCP stack fingerprinting). Scan jobs are conducted by IP address range and scan name, and can be scheduled or run on demand. Although powered by Nessus, the scan scheduler had less granularity in the initial settings than the open-source scanner. For example, Nessus allows you to configure plug-ins with more than 2,900 unique settings; Visionael is more general, allowing you to choose between Unix and Windows systems, network appliances, etc., by selecting a checkbox in the scan setup.

Once the scan is completed, a series of tree menus show you the number of discovered high-, medium- and low-risk vulnerabilities. Accessing specific results is straightforward and easy to navigate. Risk is measured on a one-to-five scale, based on Visionael's criticality ratings and user definitions of the asset's importance. Clicking on a scan job opens a pop-up window for defining report information.

The job-ticketing and status-tracking functions are among ESP's most useful features. Users can employ Visionael's proprietary Web-based ticketing system or Remedy Action Request System to assign remediation tasks. Tickets are created and tracked through the centralized interface as open, resolved or closed. ESP can verify all remediation.

Data can be exported for analysis, but reporting doesn't go much beyond open-source tools' capabilities: You can easily build a Web-reporting capability with the MYSQL data export feature of Nessus; whipping up some simple PHP pages to report is a snap with Nessus and Apache serving up the data.

Overall, we liked Visionael Enterprise Security Protector's nice layout and ease of use. The dashboard allows security managers to manage the current scan and vulnerability posture of the enterprise. While the reporting and scanning capabilities don't go much beyond its open-source capabilities, its ability to manage the vulnerability lifecycle from discovery to validation makes ESP a worthy product.

--George Wrenn

This was first published in March 2005