Overview
Privacy & Compliance
Corporate Compliance
Acceptable Use
Regulatory Compliance
Information Leakage
Archival Support
Threat Prevention
Scenarios
White Papers

Exchange Server email content control (Exchange 2007, 2003, 2000, 5.5)
Exchange Server email content control (internal, outgoing, incoming) - Exchange 2007, 2003, 2000, 5.5
Exchange Server Encryption - Exchange 2007, 2003, 2000, 5.5
Exchange Server email content control (outgoing, inbound) - Exchange 2007, 2003, 2000, 5.5
Exchange Disclaimer - Exchange 2007, 2003, 2000, 5.5

Real-time & after-the-fact scanning:

Intelligent Content Analysis (ICA):

Smart Action Triggers™

Support is provided for:
Exchange 2007
Exchange 2003
Exchange 2000
Exchange 5.5

Cluster environments support:
Active/Passive
Multi-node Active

All service packs for Exchange Server are supported.

PCI Compliance

The 12 PCI DSS requirements are organized into 6 main categories. To be fully compliant, an organization must satisfy all 12 requirements.

  • Maintain a Secure Network: Requirements 1 and 2
    • Install and maintain a firewall configuration to protect cardholder data
    • Do not use vendor-supplied defaults for system passwords and other security parameters
  • Protect Cardholder Data: Requirements 3 and 4
    • Protect stored cardholder data
    • Encrypt transmission of cardholder data across open, public networks
  • Maintain a Vulnerability Management Program: Requirements 5 and 6
    • Use and regularly update anti-virus software
    • Develop and maintain secure systems and applications
  • Implement Strong Access Controls: Requirements 7, 8, and 9
    • Restrict access to cardholder data by business need-to-know
    • Assign a unique ID to each person with computer access
    • Restrict physical access to cardholder data
  • Regularly Monitor and Test Networks: Requirements 10 and 11
    • Track and monitor all access to network resources and cardholder data
    • Regularly test security systems and processes
  • Maintain an Information Security Policy: Requirement 12
    • Maintain a policy that addresses information security

Source: PCI Security Standards version 1.1

 

The two main tenets of regulatory compliance requirements as they pertain to email are:

A number of the SecurExchange Family of products can address Regulatory Compliance issues:

 

Corporate

Perimeter

SBS

Anti-Spam

IMF

AutoContent

Monitoring / Control

Inbound

 

Outbound

 

 

Internal

 

 

 

 

opt

Mailbox Search

 

 

 

 

 

Granular by AD Group

Smart Action Triggers (Partial List)

Multi-level Quarantine

 

Multi-level "Approve and Send"

 

 

Block / Delete Message

 

Copy / Notify / Route Message

 

Secure Message (encrypt / sign)

Opt

Opt

 

 

 

 

Selective Archive to SQL / ODBC

 

 

 

Audit Log

 


To find out more about protecting your Exchange Server environment and dealing with your business email challenges, visit Nemx SecurExchange or contact us today!

More Solutions: Privacy and Compliance | Acceptable Use | Information Leakage | Threat Prevention

More About SecurExchange: General | Fact Sheet | FAQS | Download

 

You want to monitor email for compliance with regulatory requirements such as Sarbanes-Oxley (SOX), HIPAA, PCI, and GLBA
read more...

You want to guarantee that any distribution of non-public personal information (NPI) or credit card numbers (PCI) are restricted to a limited, authorized group of internal users
read more...



 

Active Policy Management

Real-time content analysis and violation prevention. (Internal, Outbound, and Inbound)

Built-in NPI content detection for such concepts as social security numbers, account numbers, DOB, etc

Built-in credit card detection (PCI) with full checksum validation to ensure no false positvies

Fine-grained message action control

Real-time Smart Action Triggers (ie Quarantine, Encrypt, Block, Copy, etc)

Instant notification

 

Copyright 1996-2007, Nemx Software Corporation, All Rights Reserved. All trademarks used or referred to on this site are the
property of their respective owners. No materials on this site may be reproduced, altered, or further distributed without Nemx's prior written permission.