Press Releases

TraceSecurity Announces a Major Release of its TraceRisk and TraceAudit Modules of TSCM 5.0, Streamlining the Risk Assessment and IT Audit Processes

Baton Rouge, Louisiana — April 1, 2011

If you use TraceSecurity Compliance Manager (TSCM 5.0) software solution to perform, manage and maintain your Risk Assessments and IT Audits, your job is about to get much easier. 

This major upgrade not only incorporates considerable improvements to many of the standard functions users are familiar with, but it also includes several new functions designed to save time, effort and streamline the entire process.  Many of the enhancements were implemented to improve the overall workflow for the user and reduce much of the guesswork involved in configuring the parameters of the organization’s risk assessments and IT audits.

Improved User Interface (Enhancement)
The new and improved user interface of TraceRisk drastically reduces the learning curve needed to establish and modify custom risk assessments. Some of the most notable changes include:

  • The addition of several new “Help boxes” that appear next to critical tasks
  • Useful “pop-up” dialogue boxes that help simplify the process of adding, modifying or managing risk assessments
  • The parameters of each risk assessment are now displayed in a series of tabs; users now modify the properties of each element of the risk assessment simply by clicking the appropriate tab
  • The new “Analysis” tab (which replaces the existing “Questions” tab)

Global Settings (New Feature)
TraceRisk now consolidates all available Threats, Asset Groups and Controls into one central repository.  Users can access the repository through the Global Setting tab and then modify global asset groups, threats and control objects.  This new feature was added to significantly save the user time and effort in establishing a new risk assessment as well as modifying the parameters of existing risk assessments.  The changes made here only apply to future risk assessments created, not the current risk assessments at the time of the change.

Preconfigured Templates (New Feature)
One of the most significant additions is the ability for users to choose from a variety of customizable templates in order to create a new risk assessment. The templates are preconfigured with standard values and settings for Asset Groups, Threats and Controls which can easily be customized to match the organization’s environment.  Since users can now base future assessments on existing risk assessments, the time needed to perform risk assessments is greatly reduced.  This approach also reduces the total costs in manpower required to conduct and manage the process.

Versioning of Risk Assessments (New Feature)
In order to eliminate duplication of tasks, a new versioning function has been integrated into TraceRisk.  The feature allows users to create multiple revisions of the same risk assessment while maintaining the original version.  This is particularly useful in dynamically changing environments where organizations wish to assess the effectiveness of proposed changes to the infrastructure prior to permanently implementing the changes.  Using this virtual method, users can compare how modifying a new asset or safeguard will directly affect the entire system. 

Systems Auditing (New Feature)
In order to maintain accurate oversight of the modified revisions of each risk assessment, a new system auditing feature has been implemented in TraceRisk that provides tracking and logging of all revisions and changes to a particular risk assessment. 

Integration with TraceAudit (Enhancement)
To further improve the workflow of users that utilize TSCM 5.0 to administer both their risk assessments and IT audits, TraceRisk now provides a tight integration with the TraceAudit module.  This integration streamlines the approach to the IT audit process by focusing more on a linear workflow: users will find it to be a seamless transition between the risk assessment process and the IT Audit process.

In addition to the greatly improved user interface that increases the efficiency of performing IT Audits, new features added to TraceAudit include:

Streamlined Creation of New Audits (New Feature)
Users now have the ability to create new audits using a variety of methods, including (1) importing data from a spreadsheet, (2) base the audit on an existing risk assessment, (3) base a new audit on an existing audit, or (4) create the IT Audit from scratch.

Annotating the Status of Controls/Safeguards (Enhancement)
The enhancement to TraceAudit provides much better clarification of the status of each control/safeguard.  Users may annotate that a control has been (1) Verified, (2) Not Verified, or (3) Not Implemented.  Users can easily upload supporting documentation to prove the legitimacy of the control, which leads to a more comprehensive and accurate final report.

Although this new integration between modules greatly improves overall workflow and decreases the time and effort required to perform necessary processes when used with both modules, it is important to point out that either TraceAudit or TraceRisk can be used as a standalone module within TSCM. 

The enhanced versions of both TraceRisk and TraceAudit will be released on April 1st, 2011.  Users of either module may access the Release Notes for this upgrade through the “Help” menu within the TSCM interface.  This document provides complete details about each component of the upgrade, plus contains instructions on administering the risk assessment and IT audit processes using the enhancements and new features.  Customers may also contact TraceSecurity’s first level support desk at 877-798-7223.

If you would like to find out how TraceCompliance Manager (TSCM) can help your organization streamline your IT Security Compliance program while saving both time and money, we encourage you to contact your Delivery Manager to arrange a demonstration.

Drew Burdsall
drewb@tracesecurity.com
225.215.2483

Tim Goedeke
timg@tracesecurity.com
225.215.2492

Katie Cangelosi
katiec@tracesecurity.com
225.215.2485

Jessica Bastin
jessicab@tracesecurity.com
225.612.2129

 

 

About TraceSecurity
TraceSecurity is a pioneer in cloud based security solutions and a leading provider of security compliance and risk management solutions for the Fortune 2000 market.  The company delivers cloud-based services that help organizations achieve, maintain and demonstrate security compliance while significantly improving their security posture. 

With over 1,200 customers representing over $500 Billion in assets, TraceSecurity supports the security and risk management efforts of organizations in financial services, healthcare, insurance, government and other regulated sectors. TraceSecurity’s, flagship TraceCompliance Manager 5.0 is the first comprehensive software-as-a service platform to integrate and automate vulnerability assessment, vulnerability alerting, regulatory compliance audits, policy management and dissemination, file/URL integrity monitoring and employee education and testing. Through a combination of its software and professional services solutions, TraceSecurity helps clients address all critical components of a successful IT Security Compliance program, including people, process and technology.

The company's expert professionals provide comprehensive security assessments that include vulnerability assessments, penetration testing, application layer testing, IT audits and risk assessments. The team also provides security policy development, security awareness training and social engineering assessments.

For more information, visit TraceSecurity’s website or call (877) 275-3009.

# # #

Note: TraceSecurity is a trademark of TraceSecurity, Inc.

FOR IMMEDIATE RELEASE:
Dariel LeBoeuf
225-612-2153
dariel@tracesecurity.com