Friday, October 24, 2008

Using FileSure to protect payroll systems

An IT administrator called today looking for a solution that would help him record accesses to a payroll signature file that is kept on a pen drive.

His situation was that his payroll system was kept in a secure location and the pen drive containing the signature is used on each of the checks, was kept in a secure location away from the server. To ensure that that someone didn’t use the payroll system with any other signature file than the one on the secure pen drive, he needed to records all accesses to the signature files on the pen drive.

His goal was simple: generate a report showing all accesses to signature file while it plugged into the payroll system server. He had looked at USB protection systems and many offer auditing of the files on the drive, but fell short when the file was copied to the hard drive. In other words, someone could copy the signature file to the hard drive, give the pen drive back and print checks all day using the signature file on the hard drive.

With one simple rule in FileSure, he was able to completely solve his problem: “Audit ALL access to *.sig files, on all drives, for all users.” FileSure not only audited all the accesses, but also recorded what program was being used to access those files.

Perfect.

No comments: