WelcomeEnterpriseSmall BusinessHome & Home OfficePartnersAbout Symantec
31 March 2004
Symantec Enterprise Security Manager™ Baseline Policies for the GLBA Standard

To use these baseline policies, Symantec ESM SU 18 or later is required for Symantec ESM 5.5 or Symantec ESM 6.0 managers and agents.

File(s)

Windows

Download Symantec Enterprise Security Manager™ Baseline Policy Manual for the Gramm-Leach-Bliley Act for Windows (PDF)

Download Microsoft Windows NT Server Policy Installer (EXE)<

Download Microsoft Windows 2000 Professional, Server, and domain controller Policy Installer (EXE)

Download Microsoft Windows XP Policy Installer (EXE)

Download Microsoft Windows Server 2003 Policy Installer (EXE)

UNIX

Download Symantec Enterprise Security Manager™ Baseline Policy Manual for the Gramm-Leach-Bliley Act for UNIX (PDF)

Download AIX 4.x and 5.x Policy Installer (EXE)

Download Solaris 2.x Policy Installer (EXE)

Download Red Hat Linux 6.x and 7.x Policy Installer (EXE)

Download HP-UX 10.x and 11.x Policy Installer (EXE)


Description

The Gramm-Leach-Bliley Act defines administrative, physical, and technical safeguards to protect the confidentiality, integrity, and availability of electronic personal non-public financial information (PFI). The Symantec ESM baseline policy for GLBA assesses compliance with many of the technical and some administrative elements of the law and the standard's requirements. The policy addresses elements of Title V, Subtitle A, Section 501 and 12 CFR Part 364.


About the Gramm-Leach-Bliley Act

The Gramm-Leach-Bliley Act (GLBA) requires companies to give privacy notices that explain the institutions' information-sharing practices about individuals. GLBA applies to financial institutions that offer financial products or services such as loans, financial or investment advice, or insurance to individuals. The Federal Trade Commission has authority to enforce the law with respect to financial institutions that are not covered by the federal banking agencies, the Securities and Exchange Commission, the Commodity Futures Trading Commission, and state insurance authorities. Compliance is mandatory for all non-bank mortgage lenders, loan brokers, financial or investment advisers, tax preparers, debt collectors and providers of real estate settlement institutions.


Introducing Regulatory Baseline Policies

Symantec Enterprise Security Manager™ regulatory policies are based on regulations and standards and are intended to ease the burden of effective security policy development. These preconfigured policies provide prepackaged Symantec security research that assess compliance with each supported regulation or standard's minimum requirements.

Regulatory policies are configured to target specific OS platforms. These policies use preconfigured values, name lists, templates, and word files that directly apply to the targeted platforms. Regulatory policies use the modules and templates from Symantec ESM Security Update releases to check OS patches, password settings, and other vulnerabilities and exposures on the targeted operating system. These policies may also introduce new templates and word lists to check conditions required by the supported standard or regulation.


Last modified on: Wednesday, 28-Jan-09 11:58:01