Gold Finger delivers 6 valuable benefits that substantially mitigate risk and enhance organizational security.
Reliably Demonstrate Regulatory Compliance of Active Directory based IT Resources
Gold Finger lets organizations reliably demonstrate the most critical and essential elements of compliance.

Organizations in the United States that meet specific industry or financial requirements are subject to government-imposed standards such as Sarbanes-Oxley (SOX) or HIPAA. In addition, organizations worldwide are often required to adhere to similar government-imposed standards.
Active Directory stores and protects vital IT components that organizations use to secure and control access to organizational IT resources whose protection falls under the purview of demonstrating regulatory compliance.
For example, in order to demonstrate SOX compliance, organizations need to accurately document the identities of all personnel who can reset the Chief Financial Officer's (CFO's) password. Similarly, organizations need to document the identities of all personnel who can modify the membership of all security groups that are being used to control access to financial documents, portals or databases that fall under the purview of these compliance regulations.
In effect, in order to demonstrate regulatory compliance, organizations need to assess and document the identities of all personnel who can perform specific administrative tasks on specific IT assets stored and managed in Active Directory.
Failure to include accurate evidence documenting delegated administrative access on IT resources that fall within the purview of the audit in a compliance audit can have severe legal consequences for both the auditors and the organization.
Gold Finger is the only solution in the world that can accurately determine and document the identities of all individuals who can perform specific administrative tasks on specific IT assets stored in Active Directory.
For example, Gold Finger can help organizations instantly and accurately determine and document the identities of all individuals who can perform the following tasks, which are critically essential to demonstrating regulatory compliance –
- Reset the Chief Financial Officer's account's password
- Modify the membership of a domain (Active Directory) security group currently used to provision access to confidential financial information residing in an IT database
- Modify the security policy protecting a server that hosts a database containing confidential financial information
- Modify password policies protecting user accounts used to access confidential financial information
Gold Finger thus uniquely helps organizations reliably demonstrate the most critical and essential components of regulatory compliance.
|