About Shavlik  /  Careers  /  Contact Us  /  News  /  FAQs  /  International

Security Center

FDCC Resources

Federal Solutions

Federal Solutions

The Shavlik Security Suite is now SCAP validated. The SCAP, Security Content Automation Protocol, standard is a US government mandated initiative for standards based security automation. Leveraging these protocols, the Shavlik Security Suite provides a simplified and streamlined path to compliance for IT organizations faced with multiple security and compliance mandates.

The Shavlik Security Suite and SCAP

The Shavlik Security Suite delivers an SCAP Edition that is one of only a few SCAP-validated products that simplifies and automates both assessment and remediation.

Shavlik is ONE of only THREE vendors that have been validated for Misconfiguration Remediation.

To view Shavlik’s validation on the NIST web site click here.

FDCC: First Real World Application for the SCAP Protocols

The US Federal Government, in an effort to improve the security of its computer systems as well as provide more specific requirements for agencies to adhere to FISMA (Federal Information Security Management Act), has mandated that all cabinet level agencies deploy a single Federal Desktop Core Configuration.

Shavlik provides a downloadable FDCC template that agencies can use to quickly compare configurations across a network to the configuration mandated by the FDCC. The Shavlik Security Suite not only discovers those systems non compliant with the FDCC, but can automatically bring errant systems back to compliancy.

Shavlik IAV Compliance Reporting

The Shavlik Security Suite Government Edition helps customers achieve compliance with Information Assurance Vulnerability alerts, bulletins, and technical advisories and IAV-mandated remediation deadlines. This capability provides US Department of Defense agencies with the ability to simplify and automate their operational processes for reporting their patch compliance with the Department of Defense’s IAV policies.

The Shavlik IAVA Reporter works in tandem with Shavlik NetChk Protect to provide:

  1. Direct correlation of DoD-created unique IAV numbers to Microsoft QNumbers and Bulletin numbers.
  2. IAV-specific reports that aggregate results filtered by selected the IAV patch group. Reports include Deployment Percentage by Patch, Detailed Summary, Machines Status by Patch Count, and Patch Status Detail.
  3. Automated remediation to better ensure compliance with IAV-mandated remediation requirements and deadlines.
  4. Regularly distributed data updates to ensure the latest and most thorough IAV data coverage available through the Shavlik NetChk Protect application and the Shavlik IAVA Reporter add-on.