Skip Links

Network World

  • Social Web 
  • Email 
  • Close

A deep dive into CA's GRC software

CA's new version of its GRC (governance, risk and compliance) Manager
Network/Systems Management Alert By Denise Dubie , Network World , 06/11/2008
Denise Dubie
Sign up for this newsletter now!

Senior Editor Denise Dubie guides you through the latest developments in management tools and services.

  • Share/Email
  • Comment
  • Print

CA made news this week with updates across its security and management product portfolios, but the software maker's work in governance, risk and compliance management in particular caught one industry watcher's eye.

Among some eight new and updated products (see slideshow of new and update CA software here) CA released a new version of its GRC (governance, risk and compliance) Manager.

"What I like most about CA's GRC Manager is its [project and portfolio management] roots. Many risk and compliance initiatives take a lifecycle approach without clearly defined outcomes," says Scott Crawford, a research director at Enterprise Management Associates. "Project management (and PPM by extension) is very different from that in defining measurable objectives as well as key milestones, and I think this could be a substantial differentiator for CA, particularly as IT risk metrics are still evolving, and many efforts are long on input-based measures (number of configuration parameters defined, for example) and short on outcome-based measures such as risk management performance."

The software helps audit and IT professionals create, maintain and approve compliance policies. The application can define, manage and analyze key performance indicators as well as key risk indicators to help IT professionals measure current performance and risk levels. It also alarms IT to poor performance or potential risks triggered by thresholds and events.

Version 1.5 now includes policy management capabilities that include full policy lifecycle management, including creation, maintenance, approval and communication. GRC Manager 1.5 also now features automated testing and cost tracking for specific compliance programs such as Sarbanes-Oxley, HIPAA and others. CA also integrated the software with its new application CA Security Compliance Management

While CA came late to the game and could face tough competition in the GRC market from companies such as Symantec and IBM, putting PPM know-how to work here will benefit CA in the long run. CA's prowess in IT service management (ITSM) and service-level management (SLM) could also help the vendor catch up more quickly to competitors.

"ITSM and SLM are domains that specifically link business values and business input in defining measurable IT outcomes and could likely set meaningful precedents in IT GRC," Crawford says. "CA's strengths in IT management coupled with a PPM approach to this could be very influential on the evolution of the IT GRC market."

Denise Dubie is senior editor with Network World.

  • Share/Email
  • Comment
  • Print
Partner Content

NetScout is one of the world's premier providers of integrated network and application performance solutions.

www.netscout.com

Know First

Get Proactive — Move from Troubleshooting to Monitoring to Management with nGenius K2's Service Dashboard & Intelligent Early Warning Alarms

Watch the Video

Know Where

Get Rapid Performance Problem Isolation with nGenius Performance Manager and Diagnose Problems up to 70% Faster!

Learn More

Know Why

Get the Details to Validate and Solve your Toughest Performance Issues with nGenius InfiniStream and Sniffer Intelligence Modules

Read the Whitepaper

Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed

Whitepapers

Overcoming Single Provider MPLS Limitations

In this whitepaper paper, Stratecast Partners reviews the limitations associated with a single...

Global IT Integration Strategies for Mergers, Acquisitions & Divestitures

One of the most critical success factors for a merger, acquisition or divestiture is how quickly...

Windows Vista: Necessity and Opportunity

The Vista era of Windows is here. Yet most organizations will retain Windows XP alongside new Vista...

Webcasts

Migrating to Windows Vista: Necessity and Opportunity

The Vista era of Windows is here. Yet most organizations will retain Windows XP alongside new Vista...

Turning information into a Competitive Advantage

Companies today are realizing that competitive advantage is harder to sustain when based solely on...

PoE Plus: Impact on the PoE Market

The standard for Power over Ethernet (PoE), IEEE Std. 802.3af(tm)-2003, advanced networking,...

Special Reports

Mapping a Successful Virtualization Course

Managing a newly virtualized environment can be tricky. Effectively deploy this technology with the...

Unified Threat Management from CheckPoint

Discover why Unified Threat Management Firewalls are ready for the enterprise today. High...

Closing the Loop: Extending Wireless LAN Security to Wireless Printers

Enterprises cannot overlook wireless printers when assessing network security. The print jobs and...

Get instant email notification when white papers, webcasts, executive guides are added to our library. Stay informed and up-to-date with the latest on IT Technologies with Network World's Resource Alerts.
Network World,to go. Wherever you are. Breaking news delivered to your mobile device. Select the hottest topics in networking and start receiving Network World on your mobile device today.