Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
System Compliance on a Budget
Search
Sponsored
·
Ship Features Fearlessly
Turn features on and off without deploys. Used by thousands of Ruby developers.
→
paulh
June 04, 2012
Technology
59
0
Share
Embed
Copy iframe code
Copy JS code
Copy link
Start on current slide
System Compliance on a Budget
AUCTC, Saint Mary's University. 2012
paulh
June 04, 2012
More Decks by paulh
See All by paulh
Beginners Guide to OSINT
paulh
1
430
squert – an open source UI for NSM data
paulh
0
70
squert - an open source UI for NSM data
paulh
0
370
Internet Safety
paulh
0
140
Situational Awareness with Open Source Tools
paulh
0
120
Network Security Monitoring with Open Source Tools
paulh
0
200
Other Decks in Technology
See All in Technology
SONiCの統計情報を取得したい
sonic
0
170
AIソロプレナー時代に2ヶ月で20人増員した事業創造会社の開発組織の話
miyatakoji
0
660
【Cyber-sec+】経営層を"動かす"ための考え方
hssh2_bin
0
190
手塩にかけりゃいいってもんじゃない
ming_ayami
0
580
中期計画、2回作ってみた ~業務委託と正社員、両方の視点から~
demaecan
1
800
脆弱性対応、どこで線を引くか
rymiyamoto
1
390
200個のGitHubリポジトリを横断調査したかった
icck
0
130
LLMにもCAP定理があるという話
harukasakihara
0
370
MCP Appsを作ってみよう
iwamot
PRO
4
650
エラーバジェットのアラートのタイミングを考える.pdf
kairim0
0
150
AIのReact習熟度を測る
uhyo
2
570
AGENTS.mdとSkillsで始めるAIエージェント活用
sonoda_mj
3
210
Featured
See All Featured
What does AI have to do with Human Rights?
axbom
PRO
1
2.2k
jQuery: Nuts, Bolts and Bling
dougneiner
66
8.5k
"I'm Feeling Lucky" - Building Great Search Experiences for Today's Users (#IAC19)
danielanewman
230
23k
個人開発の失敗を避けるイケてる考え方 / tips for indie hackers
panda_program
123
22k
30 Presentation Tips
portentint
PRO
1
320
Automating Front-end Workflow
addyosmani
1370
210k
Sharpening the Axe: The Primacy of Toolmaking
bcantrill
46
2.9k
Build The Right Thing And Hit Your Dates
maggiecrowley
39
3.2k
How To Stay Up To Date on Web Technology
chriscoyier
790
250k
Rebuilding a faster, lazier Slack
samanthasiow
85
9.5k
DBのスキルで生き残る技術 - AI時代におけるテーブル設計の勘所
soudai
PRO
65
55k
AI: The stuff that nobody shows you
jnunemaker
PRO
8
710
Transcript
None
the question: what is the security posture of our devices?
what we used to try and get the answer: McAfee
ePO Nessus Build something
our Experience
McAfee ePO
problems with McAfee ePO complex inaccuracies cumbersome reports blackbox (customizations,
waiting)
Nessus
problems with Nessus tedious overkill inconsistent results hosts accounted for:
76%
our problems in general timing transient devices deepfreeze
our kick at the can
None
what we collect (currently) antivirus windows updates asset info
None
None
None
None
None
the backend host host antivirus antivirus windows updates windows updates
asset info asset info active directory active directory …? …? …? …? other.. other..
the backend host host antivirus antivirus windows updates windows updates
asset info asset info active directory active directory compliance history compliance history problem frequency problem frequency other.. other.. SHAZAM! SHAZAM!
the script (patch_status.vbs) what it does how it evolved where
it’s headed
what it does deployment scheduled task information gathering transport
how it evolved primarily driven by trial and error a
lot of: “wouldn’t this be neat” what works? what doesn’t? dealing with problems
what it has changed Managed AV Microsoft update Maintenance window
where it’s headed deployment strategy refne/improve installer target other OS’s
where it’s headed additional metrics ids alert data device usage
java version flash version
where it’s headed helpdesk integration automated ticket generation
thoughts?