Product manual
GFI LanGuard 10 Reporting | 164
Report Suite Title Description
ISO/IEC 27001 &
27002 Compliance
Reports
The Information technology – Security techniques – Information security management systems
(ISO/IEC) standard formally specifies a management system that is intended to bring information
security under explicit management control. GFI LanGuard offers an extensive list of ISO/IEC
Compliance reports, including:
ISO/IEC 27001 A. 10.4 - Antivirus Applications
ISO/IEC 27001 A. 10.7.2 - Disk Encryption Applications
ISO/IEC 27001 A. 10.6.2 - Open Shares
ISO/IEC 27001 A. 10.6.2 - Services
ISO/IEC 27001 A. 10.6.2 - System Information.
FISMA Compliance
Reports
The Federal Information Security Management Act (FISMA) assigns specific responsibilities to
federal agencies, the National Institute of Standards and Technology (NIST) and the Office of
Management and Budget (OMB) in order to strengthen information system security. In particular,
FISMA requires the head of each agency to implement policies and procedures to cost-effectively
reduce information technology security risks to an acceptable level. GFI LanGuard helps you be
compliant to FISMAstandards through the provided reports, which include:
FISMA NIST SP 800-53 AC-2 - Groups and Users
FISMA NIST SP 800-53 PM-5 - Computer Details
FISMA NIST SP 800-53 PM-5 - Computer Summary
FISMA NIST SP 800-53 SI-5 - Missing Security Updates by Host
FISMA NIST SP 800-53 SI-7 - Antivirus Applications.
CAG Compliance
Reports
The Consensus Audit Guidelines (CAG) is a publication of best practice guidelines for computer
security. The project was initiated as a response to extreme data losses experienced by
organizations in the US defense industrial base. GFI LanGuard offers a list of CAG Compliance
reports, including:
CAGCC1 - Hardware Audit
CAGCC1 - Scan History
CAGCC3 - Audit Policy
CAGCC3 - Low Security Vulnerabilities
CAGCC11 - Open Ports.
NERC CIP Compli-
ance Reports
The North American Electric Reliability Corporation (NERC) develops standards for power system
operation, monitoring and enforcing compliance with those standards, assessing resource
adequacy, and providing educational and training resources as part of an accreditation program to
ensure power system operators remain qualified and proficient. GFI LanGuard provides a list of
NERCCIP Compliance reports, including:
NERC CIP-005 R2 - Installed Firewall Applications
NERC CIP-005 R2 - Open Ports
NERC CIP-007 R2 - Open Shares
NERC CIP-007 R2 - Services
NERC CIP-007 R2 - System Information.