SCAP configuration compliance assessments, commonly referred to as “Benchmark” assessments, are traditionally cumbersome tasks when multiple benchmarks have to be tested against multiple targets at the same time. For the vast majority of SCAP-certified tools, this means executing one benchmark at a time against a valid host(s) and reviewing the results. The same targets often require multiple benchmarks, necessitating multiple scans and jobs that can eat up a lot of time. We’ve solved this problem with the Configuration Compliance Module, part of the Retina CS Enterprise Vulnerability Management capabilities under the BeyondInsight IT Risk Management Platform.
The Configuration Compliance Module includes the capability to select multiple SCAP Benchmarks against multiple targets (i.e., “Smart Groups”) to assess each and every target for compliance. The results comply with SCAP standards for XCCDF, ARF, Micro AFR, and NIST ARF export per benchmark, even though all benchmark assessments occur simultaneously. For example, a user can select multiple benchmarks for a group of assets …