Citrix Systems has announced SmartAuditor, a new feature of Citrix Presentation Server that helps enterprise customers monitor, record and play back specific application sessions as part of their ongoing risk management and regulatory compliance measures.
By incorporating user activity auditing as a core property of a company`s existing application delivery infrastructure, SmartAuditor makes it easy for customers to demonstrate that employees are meeting established guidelines for information access, transaction integrity and intellectual property protection.
In a world where businesses run on applications and highly sensitive data flows easily across international boundaries, compliance and risk management have become increasingly important concerns to enterprises of all sizes.
Companies in all industries now face a growing list of regulatory initiatives such as King II, Sarbanes-Oxley, HIPAA, and Basel-II, designed to protect consumers, employees and investors from fraudulent acts.
In this climate, security executives report that monitoring employee activity, conducting periodic security audits and protecting intellectual property are now among their top-five overall IT initiatives. Unfortunately, the additional cost and complexity associated with these initiatives can often be prohibitive.
Using the new SmartAuditor feature, Presentation Server customers can now address many of these problems by setting policies that record specific application sessions based on a user`s role, the application being accessed or the sensitivity of the application transaction.
When activated, SmartAuditor acts like a digital video recorder to capture screen activity from a user`s computer and store it in a small, digitally-signed, time-stamped video file that can later be analysed and logged. By recording only relevant user sessions, SmartAuditor is far more efficient and practical than add-on auditing solutions, which often have large storage requirements, are difficult to manage and can be unwieldy to analyse during an audit.
"Most organisations are increasingly information-intensive, with highly distributed and complex information infrastructures. To mitigate the inherent risks of this transfer of information, organisations must implement enterprise risk management programmes with sustainable compliance-driven standards," says Michael Rose, associate research analyst with International Data Corporation (IDC).
"As a result, IT administrators are being asked to leverage technology that not only mitigates risk and meets these compliance standards, but also manages the ongoing costs. Incorporating policy-drive session recording capabilities directly into the underlying application delivery infrastructure makes a lot of sense."
While SmartAuditor is an important benefit for all enterprise customers, it is especially beneficial in industries like healthcare, financial services and government agencies that must meet stringent regulatory compliance standards and monitor suspicious activity to effectively safeguard company information. It is also valuable for monitoring functions that are outsourced or applications which involve highly sensitive customer information or high-value transactions.
"Many compliance-driven initiatives limit the flexibility of both users and enterprises," says Scott Herren, vice-president and general manager of Citrix Systems.
"Citrix`s application delivery solution automatically secures, monitors and audits data and applications using configurable policies, without inhibiting user access or mobility. By using SmartAuditor, IT can quickly provide a regulatory compliant environment that satisfies both corporate and end-user requirements, and SmartAuditor can be used with any Windows application without modification."
SmartAuditor is one of many features that have made Citrix Presentation Server one of the most trusted solutions in the industry for ensuring regulatory compliance and data security. By centralising all Windows applications in the corporate data centre and delivering them virtually over the network, Presentation Server keeps sensitive application data safely under IT control, rather than distributing it across thousands of end-user PCs.
By making data security a core property of their application delivery infrastructure, companies can avoid many unnecessary costs and greatly reduce the complexity of achieving regulatory compliance.
Pricing and availability: SmartAuditor is now available as a standard feature of Citrix Presentation Server, Platinum Edition, at no additional charge. More details about the capabilities of SmartAuditor can be found at: www.citrix.com/presentationserver/features/smartauditor.
Citrix Systems (Nasdaq:CTXS) is the global leader and the most trusted name in application delivery infrastructure. More than 200 000 organisations worldwide rely on Citrix to deliver any application to users anywhere with the best performance, highest security and lowest cost. Citrix customers include 100% of the Fortune 100 companies and 99% of the Fortune Global 500, as well as hundreds of thousands of small businesses and prosumers. Citrix has approximately 6 200 channel and alliance partners in more than 100 countries. Annual revenue in 2006 was $1.1 billion.
Citrix, NetScaler and Citrix Presentation Server are trademarks of Citrix Systems, Inc. and/or one or more of its subsidiaries, and may be registered in the US Patent and Trademark Office and in other countries. All other trademarks and registered trademarks are property of their respective owners.
Editorial contacts

