PCI DSS Requirements 10.6: Review logs for all system components at least daily. Log reviews must include those servers that perform security functions such as:

Intrusion detection system (IDS) and authentication
Authorization
Accounting protocol (AAA) servers (for example, RADIUS)

ClearNet’s expert Security Monitoring

Monitoring the security of your infrastructure is important for detecting problems and compromises early.

But even the best firewalls, log analysis, and intrusion-detection products on the market may miss opportunities to detect and contain motivated attackers if a trained expert isn’t monitoring logs and alerts.

At ClearNet Security, we provide the added and essential ingredient that makes security products and solutions work: human intelligence. By monitoring the logs generated in your environment ClearNet will help you discover and prevent unauthorized activities or a full-blown compromise.

We leverage open-source, cost-effective security tools to gain the required visibility into, and make critical discoveries about, the operations of your networks, systems, and applications.


ClearNet's Daily Log Watch

Overview:

ClearNet’s experts perform a review of your logs and look for unauthorized activity, separating the false alarms from the issue of real concern.

Features:

Deployment of popular open-source security tools in your environment (works in cloud environments).

Daily Log Watch also includes daily external port scans to detect for changes in your public-facing servers.

Satisfies PCI requirements 10.6.

  • Setup: Deploy agent software
  • On-going activity: Daily review of the alerts & logs
  • Deliverable: Daily report

Cost: Log Watch starting at $1295 per month. No software purchases or contracts

ClearNet's Daily Infrastructure Watch

Overview:

ClearNet’s experts perform a review of your logs and look for unauthorized activity, separating the false alarms from the issues of real concern.

Features:

Deployment of popular open-source security tools in your environment (works in cloud environments)

Deployment of a popular intrusion detection stack composed of:
Software log analyzer
Host intrusion detection software (HIDS)
Network intrusion detection software (NIDS)
Web application intrusion detection software


Daily Infrastructure Watch Includes:

Daily external port scans to detect for changes in your public-facing servers.
Daily software version checks to ensure you are not running known vulnerable software.


Satisfies PCI requirements 10.6, 11.2, 11.5, 1.1.6.

  • Setup: Deploy open source suite
  • On-going activity: Daily review of the alerts & logs
  • Deliverable: Daily report

Cost: Infrastructure Watch starting at $2495 per month. No software purchases or contracts