|
With Card Recon you Can... |
| ▪ |
Scan any supported Desktop or Server to find unprotected
storage of payment cards |
| ▪ |
Scan a production host without impacting performance |
| ▪ |
Identify and isolate any files that contain payment card
data |
| ▪ |
Produce a compliance report for use with both internal and
external audits |
| |
|
|
PCI
DSS and PA DSS is now easier to audit |
| ▪ |
Card Recon removes the need for manual regex scripts and
in-house searching techniques |
| ▪ |
Card Recon reduces the time required during internal and
external audits leading to substantial cost savings |
| ▪ |
Card Recon reduces the time required during internal and
external audits leading to substantial cost savings |
| ▪ |
Card Recon is compatible with a wide variety of Windows and
Linux Operating Systems |
| ▪ |
Card Recon was designed by Security and PCI specialists for
the PCI industry |
| |
|
|
Unrivalled Payment Card Detection Capabilities |
| ▪ |
Card Recon's scanning capabilities are unrivalled for
isolating Card Holder Data storage |
| ▪ |
Scans a broad variety of information repositories including
file servers, logging systems and common user desktops |
| ▪ |
Advanced scanning engine capable of intelligently searching
within a wide variety of documents, archives, and email
formats with superior accuracy |
| ▪ |
A series of intelligent pattern matching algorithms and
heuristics are applied to handle unrecognised file types
whilst continuing to identify genuine payment card matches |
| |
|
|
Advanced False Positive Elimination |
| ▪ |
One of the main
pitfalls faced by traditional Payment Card Number scanning
techniques is a high false positive rate |
| ▪ |
This stems from
the fact that a normal regular expression approach will work
only by looking for 13-16 digit numbers with limited scope
or verification beyond a simple modulus algorithm check |
| ▪ |
Card Recon has
been engineered to achieve advance false positive removal as
a key product feature |
| ▪ |
Employs
multiple false positive removal routines using a variety of
statistical and environmental metrics. These metrics work in
unison to eliminate up to 99.99% of false matches |
| ▪ |
Card Recon is
written and maintained by experts in the field of
information scanning and detection |
| ▪ |
Card Recon is
continually refined by the Ground Labs engineering team to
ensure it remains the the most advanced payment card
detection solution in the market |
| |
|
|
Low Impact on
Production Systems |
| ▪ |
Card Recon Standard Edition has
been developed specifically for use with Production Systems |
| ▪ |
The core engine of Card Recon
implements advanced resource prioritisation controls to
ensure a high velocity scan occurs with low impact to your
operating system |
| ▪ |
Our approach minimises CPU
resouce utilisation whilst completing a scan in minimal time |
| |
|
|
Compatible
with Modern Environments |
| ▪ |
Card Recon Standard Edition is
available for multiple platforms commonly found in modern
desktop and server environments. Supported platforms
include: |
| |
▪ |
Microsoft Windows – 2000, XP and Vista |
| |
▪ |
Microsoft Windows Servers – 2000, 2003 and Vista |
| |
▪ |
Linux -Debian 3.1/4.0, Fedora Core 4/9, Centos 4.1/5.2,
Ubuntu 8.04, Slackware 12 |
| ▪ |
Whilst Ground Labs has not
tested Card Recon all Linux distributions it has been
designed for general deployment on most distributions
currently in use |
| |
|
|
Easy to Use |
| ▪ |
Card Recon can be operated by
users and administrators of all skill levels |
| ▪ |
Initating a Card Recon scan is
as easy as plugging and playing. There is no customization
necessary nor is special training required |
| ▪ |
The Card Recon workflow guides
the user to identify problem areas then perform any clean-up
required by removing or encrypting files containing payment
card data |
| ▪ |
Card Recon allows the user to
continue performing re-scans until the host can be shown as
compliant |
| ▪ |
Upon achieving a compliant
status status the user can export a PDF formatted compliance
report for submission to a PCI QSA or sponsoring acquirer |