IT infrastructure control and management systems are a set of software and hardware tools that provide continuous security monitoring, access management and antivirus protection in geographically distributed secure data centers. FINTECH JSC has developed a unique technology for creating a unified information protection system based on the digital platform SintezM, integrated with external automated information systems.
Our solutions provide software environment integrity control, security event audit and centralized security policy management for government and commercial customers working with restricted access information. Learn more about our attestation testing of informatization facilities.
Security monitoring and IT infrastructure management
This technology ensures the solution of the following tasks:
- Security monitoring — continuous control of the system state, detection of deviations and threats
- Security event audit — recording and analysis of all security-related events
- Management of the integrity control subsystem — protection against unauthorized changes
- Management of the closed software environment subsystem — control of the composition and integrity of software
- User/user group management — centralized administration
- Management of security policy groups — configuration of protection rules
- Password policy management — requirements for password complexity and rotation
- Management of access differentiation rule groups — configuration of access rights to resources
- Access differentiation to services, files, directories, database dumps, virtual machine images
- Antivirus protection — downloading and updating computer virus databases
- Network file storage management — centralized management of file resources
- Loading of reference software distributions into the repository with checksum verification
- Configuration of information protection tools and BIOS configuration on workstations and server equipment
- Control of the number, composition and integrity of technical tools
- Control of the certificate validity period of the VM manager, hypervisors and the access management server
Security event audit and access management
Control and management systems operate in close conjunction with data storage systems for data centers, data and virtual machine backup systems and secure e-mail, providing continuous monitoring of the entire IT infrastructure.
Integrity control and closed software environment
Integrity control and closed software environment are key protection mechanisms that prevent the introduction of malicious code and unauthorized changes in critical system components. We provide centralized management of these mechanisms, which allows prompt response to threats.
Antivirus protection and security policy management
Antivirus protection is implemented at the level of the entire data center infrastructure and includes automatic updating of virus databases, centralized management of scanning policies and prompt response to detected threats. Security policy management allows flexible configuration of protection rules for various categories of users and systems. Our certification testing confirms the compliance of protection tools with industry standards.
Key functions of the control and management system:
- Security monitoring — continuous control of the system state
- Security event audit — recording and analysis of all incidents
- Access management — differentiation of user rights
- Integrity control — protection of the software environment
- Antivirus protection — automatic updating of virus databases
- Security policy management — centralized administration
Integration with other technologies
IT infrastructure control and management systems combine monitoring of all components of a secure data center into a single console. Server virtualization is controlled by tracking hypervisor load and the state of virtual machines, data storage systems — through monitoring of data integrity and disk state, and backup systems — through auditing the status of each backup copy.
Why choose control and management systems from FINTECH JSC
- FSTEC certification — all system components have valid certificates
- Centralized management — a single point of control for the entire IT infrastructure
- Flexible security policy configuration — adaptation to any customer requirements
- Integration with existing systems — seamless connection to AIS and crypto
- State secret support — processing of restricted access information
Configuration of IT infrastructure monitoring and control
- Attestation testing of informatization facilitiesComprehensive security audit of control systems and confirmation of FSTEC compliance.
- Certification testing of software and crypto toolsVerification of monitoring and control tools for compliance with industry standards.
- Technical support and maintenancePrompt response to control system triggers and configuration of notifications.