FileAudit - Find out Who touched What File and Why

To manage and correlate Security Event logs, click here.

 

To enforce concurrent Logon and Generate Logon Reporting, click here.

 

To monitor access to your organization’s data, standard Microsoft utilities only propose manual event log analysis. This very limited functionality leaves administrators having to decrypt hundreds or even thousands of events, attempting to retrieve those of interest to answer the question who touched what file.

 

On the other hand, with a simple right click in Windows Explorer or from the console; FileAudit instantly gives a comprehensive list of File Access Queries: 

  1. read/write accesses

  2. appropriation attempts (accepted or denied)

  3. permission modification attempts (accepted or denied)

  4. each record detailing: the user, the domain, the date and time of the connection and disconnection

Based upon:

  1. a file

  2. a selection of files

  3. a folder and subfolders

  4. a selection of folders and subfolders

and gives you a very simple and efficient way of controlling the use made of your organization’s sensitive and confidential data.

How does FileAudit® work?

FileAudit is an administration console installed on a computer running Windows NT4, 2000, 2003 or XP. Enable Audit object access on the computers storing the files and folders to be analyzed. No extra installation or agent deployment is necessary as all the actions are made using the files and folders context menus.

Use FileAudit:

  • from Windows Explorer, as FileAudit is added to the file's and folder's context menu
    with it's own console

    one only needs to:

    1. select a file, a group of files, a folder or a group of folders in the explorer, right-click and select FileAudit
    2. select the file(s) or folder(s) in FileAudit's console to instantly display all access or access attempt information

    Why FileAudit® ?

    Experience these benefits: 

    1. security for your confidential and sensitive data
    2. eradication of the workload related to data surveillance
    3. help toward your information systems compliance as to multiple international regulations and standards (HIPAA, Sarbane-Oxley, GLBA, NIST/FIPS, ITIL, COBIT, CISP, ISO 17799…)
    4. simplicity of use: context menu, agent-less solution
    5. efficiency: instant display, multiple selections

    Access event archiving
    Schedule FileAudit to automatically archive into a database, at regular intervals, storing the file access events that occur on one or more systems.

    Audit and reporting
    FileAudit displays file/folder access history in a printable report that can be scheduled to run automatically and exported in an ASCII format.

    Ease of Use

    1. Elimination of all duplicated, irrelevant and pseudo events, rendering analysis a lot easier and sparing backup disk space
    2. Ability to add display filters: accepted or denied access, type of access (read, write, delete, ...), user account, time frame, etc...
    3. Quick access to the latest files/folders audited
    4. Automatic configuration of the Windows audit on files/folders with default audit values

    Non-intrusive technology
    FileAudit is an agent-less solution and only uses standard Windows APIs.

    Download FileAudit

    Download

    Release Notes
     

    Overview

    Details
    Technology Presentation
     

    Documentation

    Executive Summary
    FileAudit FAQ

    Resources

    FileAudit Setup
     

    © 2002-2007 Engagent