using audit analytics in it ... - rutgers university

29
USING AUDIT ANALYTICS IN IT INFRASTRUCTURE ENVIRONMENTS Eckhardt Kriel C.A. (SA) E Kriel & Associates Inc. 1

Upload: others

Post on 13-May-2022

1 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: USING AUDIT ANALYTICS IN IT ... - Rutgers University

USING AUDIT ANALYTICS INIT INFRASTRUCTURE ENVIRONMENTS

Eckhardt Kriel C.A. (SA)E Kriel & Associates Inc.

1

Page 2: USING AUDIT ANALYTICS IN IT ... - Rutgers University

ITIL AND IT INFRASTRUCTURE

2

ITIL v2 defines IT infrastructure:

All of the components (configuration items) that are needed to deliver IT services to customers.

The IT Infrastructure consists of more than just hardware and software.

Page 3: USING AUDIT ANALYTICS IN IT ... - Rutgers University

ANOTHER WAY OF LOOKING AT IT INFRA

3

Page 4: USING AUDIT ANALYTICS IN IT ... - Rutgers University

Data Centre 1 Data Centre 2

SAN WAN LAN Routers Switches DHCP UPS DNS Power Remote Access VLAN Authentication Cabling Generators Transformers Fire Suppression

Databases File Sharing

Thin Client Thick Client Client/ServerWeb Apps Terminals Application Servers

ERP LOBApps Email Messaging Service

DeliveryApplications

Access Mechanism

Data Storage

Infrastructure

Facilities

PYRAMID

4

Page 5: USING AUDIT ANALYTICS IN IT ... - Rutgers University

Source: Engagdet http://www.engadget.com/2012/10/17/google-inside-data-centers/#continued Oct 17, 2012 Image Credit Connie Zhou / Google]

5

Page 6: USING AUDIT ANALYTICS IN IT ... - Rutgers University

6

Page 7: USING AUDIT ANALYTICS IN IT ... - Rutgers University

BIG DATA (ALMOST) Volume

From 4 mainframes. 17,000+ servers (AIX, LINUX, UNIX, Windows, iSeries). Thousands of devices – firewalls, routers, etc Millions of records created every hour.

Limited Velocity Little or no need to analyze in real time.

Steady State Variety Mainly text based structured records. No media files.

Steady State Variability Data comes from a steady state of known sources at a

mostly steady rate.7

Page 8: USING AUDIT ANALYTICS IN IT ... - Rutgers University

MANAGE OPERATIONS

MAINFRAME BATCH PROCESSING

8

Page 9: USING AUDIT ANALYTICS IN IT ... - Rutgers University

CA 7 – PRIMARY PROCEDURES

Analysis and testing of Job Abends Analysis and testing of Changes to Job Schedules Testing links to Incident and Change

Management systems

9

Page 10: USING AUDIT ANALYTICS IN IT ... - Rutgers University

Large volume of data (CA-7 Job Log for 1 Month = 2000+ pages).

Complex data structure (print image reports). Automation with scripts and GUI – easily re-executed by

anyone.

10

CA 7 – REPORTING ENVIRONMENT

Page 11: USING AUDIT ANALYTICS IN IT ... - Rutgers University

WINDOWS BATCH AND ACL ROUTINES

11

IM

CM

Audit Reports

Page 12: USING AUDIT ANALYTICS IN IT ... - Rutgers University

CA 7 PREDICTIVE ANALYTICSCHANGES

12

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 13: USING AUDIT ANALYTICS IN IT ... - Rutgers University

CA 7 PREDICTIVE ANALYTICSABENDS

13

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 14: USING AUDIT ANALYTICS IN IT ... - Rutgers University

CA 7 PREDICTIVE ANALYTICSCHANGES / ABENDS

14

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 15: USING AUDIT ANALYTICS IN IT ... - Rutgers University

CA 7 PREDICTIVE ANALYTICS

15

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 16: USING AUDIT ANALYTICS IN IT ... - Rutgers University

MANAGE ACCESS- ACCESS PROVISIONING

16

Page 17: USING AUDIT ANALYTICS IN IT ... - Rutgers University

UNIX

17

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 18: USING AUDIT ANALYTICS IN IT ... - Rutgers University

UNIX

18

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 19: USING AUDIT ANALYTICS IN IT ... - Rutgers University

UNIX – VERIFYING CHANGES IN USERSMONTH OVER MONTH

19

Month 1 Month 2 Month 3

Page 20: USING AUDIT ANALYTICS IN IT ... - Rutgers University

UNIX – VERIFYING CHANGES IN USERSMONTH OVER MONTH

20

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 21: USING AUDIT ANALYTICS IN IT ... - Rutgers University

MANAGE CHANGE

21

Page 22: USING AUDIT ANALYTICS IN IT ... - Rutgers University

MAINFRAME ENDEVOR CHANGES

22

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 23: USING AUDIT ANALYTICS IN IT ... - Rutgers University

VISUALIZATION – ANALYTIC REVIEW

23

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 24: USING AUDIT ANALYTICS IN IT ... - Rutgers University

OPERATING SYSTEM CONFIGURATION

24

Page 25: USING AUDIT ANALYTICS IN IT ... - Rutgers University

IBM MAINFRAME – Z/OS

25

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 26: USING AUDIT ANALYTICS IN IT ... - Rutgers University

TRANSFORMATION

26

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 27: USING AUDIT ANALYTICS IN IT ... - Rutgers University

AUDIT TESTS

27

Content restricted due to client confidentiality.

Item will be made available during presentation

Page 28: USING AUDIT ANALYTICS IN IT ... - Rutgers University

MOVE TO MORE FREQUENT TESTING

28

Audit Data StoreHR ACF2 UNIX Windows CA-7

Periodic Batch Feeds from IT systems

• Trends / Anomalies • Dashboards• Benchmarks • Predictive Trends•etc.

Data Transformation

Complex CAATs Execute Predefined Scripts

Audit Intelligence

• SOX and non-SOX testing

• Data Metrics• Queries• Exceptions• etc.

Audit Testing

Etc.

• ad hoc

Page 29: USING AUDIT ANALYTICS IN IT ... - Rutgers University

QUESTIONS

29

Eckhardt Kriel CA (SA)

E Kriel & Associates Inc.1148 Forest Trail PlaceOakvilleON L6M 3H7

www.krielassoc.com

Mobile: +1. 416 451-3919Direct: +1. 416 451-3919 Email: [email protected]