March 24, 2008

Unique integration of SIEM and Change Management helps Autoscribe cover a broad range of PCI compliance challenges while strengthening security efforts

Columbia, MD – Prism Microsystems, a leading provider of comprehensive IT security and compliance solutions, announced today that its integrated SIEM (Security Information and Event Management) and Change Management software, EventTracker, has been selected by Autoscribe to meet compliance requirements imposed by the Payment Card Industry Data Security Standard (PCI-DSS), manage change and strengthen overall security.

As a leading provider of electronic payment processing solutions conducting over $4 billion in transactions every year, it is critical for Autoscribe to comply with the PCI standard that demands continual monitoring and protection of cardholder data. With the complexity of requirements imposed by the industry mandate, Donald J. Patti, VP of Technology and Product Development at Autoscribe, concluded that a SIEM solution that provided the greatest coverage of requirements would be most beneficial and cost-effective.

“Selecting EventTracker was an obvious choice. It came with a number of pre-built reports specifically mapped to PCI requirements and as an added bonus, provided us with both Event Management and Change Management capabilities. This allowed us to not only comply with section 10, which describes log data monitoring and reporting requirements, but also section 11, which details requirements relating to monitoring changes on critical systems,” says Patti. “None of the other solutions that we evaluated were able to provide us with such a broad range of functionalities.”

“Monitoring for change, user activity, unauthorized access and other anomalies are considered best practices in IT security and are mandated by a number of compliance standards such as PCI-DSS. However, most SIEM solutions in the market are able to address only a subset of these critical requirements,” says Steve Lafferty, VP of Marketing at Prism Microsystems Inc. “EventTracker provides an industry-unique approach that combines real-time event correlation and alerting, in-depth forensic analysis and change monitoring for a streamlined response to compliance management and data protection from a single command center.”

In addition to helping Autoscribe with PCI compliance, EventTracker also helps the company get a firm grasp on its security posture by protecting critical IT assets from a number of malicious activities such as insider-abuse and zero-day attacks. “Although we originally bought EventTracker for compliance, we are now leveraging the solution to continuously manage risk and provide visibility into our security operations” adds Patti.

“We welcome the addition of a leading solution provider such as Autoscribe to our growing base of customers” says Lafferty.

About Autoscribe

Autoscribe’s rich history of innovation in the electronic payment processing business dates back to 1992, with the release of their first desktop software application. Over the years they have expanded their platform to include a variety of payment collection methods, verification systems, and settlement services to support the cash management process. Today, Autoscribe has over 800 clients processing over $4 billion in payments annually through their systems. Autoscribe is a member of NACHA’s Electronic Check Council (ECC) and works closely with ECC and other industry leaders to deliver products that exceed government security and compliance requirements. Visit for more information.

About Prism Microsystems:

Prism Microsystems, Inc. was formed in 1999 and is a privately held corporation with headquarters in the Baltimore-Washington high tech corridor. The company delivers business-critical solutions that unify Security Information and Event Management (SIEM) with Change Management capabilities to defend critical IT assets from cyber attacks and ensure compliance with regulatory standards. EventTracker, Prism’s SIEM solution is designed to enhance the security of critical systems, maintain confident compliance, and improve overall performance and availability by automating the real-time collection, correlation, consolidation and analysis of log data. It is engineered for ease of use and flexibility and has over 650 customers in 50 countries across multiple sectors.

Visit for more information. Follow us on Twitter @logtalk.