Compliance Center in Strata Cloud Manager enables you to automate the monitoring of
compliance and manage security frameworks across your deployments.
| Where Can I Use This? | What Do I Need? |
|
|
- Strata Cloud Manager Pro
- Panorama® CloudConnector Plugin 3.0.0 for Panorama managed deployments
- Traffic logs in Strata Logging Service
|
Compliance Center in Strata Cloud Manager offers continuous, automated
compliance monitoring and framework management across your deployments. It provides
a unified view, allowing you to assess your network security posture against various
security standards, such as NIST CSF 2.0, as well as your internal policies.
Here are the key features of Compliance Center:
- Framework Management - Compliance Center enables you to create, modify,
and manage compliance frameworks. This includes defining control hierarchies,
adding controls and sub-controls, organizing leaf-level controls into optional
groups, and associating specific security checks.
- Benchmarking - Involves calculating your organization's overall
compliance rate against a selected framework. This feature allows you to compare
your compliance against industry peers for predefined checks, providing context
on your security posture. Benchmarking requires a framework to be in an active
state.
- Remediation Workflow - Compliance Center provides a structured workflow
for remediation when configurations are found to be non-compliant. Failed checks
generate incidents that include remediation playbooks and evidence, which show
the exact failing configuration and its UI path. Incidents provide direct links
to the relevant configuration UI within Strata Cloud Manager, Panorama, or the Next-Generation Firewalls (NGFWs) local configuration
for corrections.
Compliance Center derives insights from NGFW and Prisma Access
configurations by analyzing configurations collected via telemetry, through the Panorama CloudConnector plugin, or directly from Strata Cloud Manager's
configuration manager. Configurations are sent via device telemetry once a day, the
CloudConnector plugin for Panorama sends the configuration during each
local commit, and the Strata Cloud Manager configuration is processed once every 3
minutes.
Here is a video that shows how to utilize Compliance Center in Strata Cloud
Manager.
Here is a video that shows how to create and manage frameworks in Compliance Center
in Strata Cloud Manager.