SysAuditor framework builds on the SPDX standard to optimize the power of the graph language and ontology by combining all profiles into one graph (or inventory). This inventory includes the extraction or reading of live hardware to ensure system audits are accurate.
Real-time auditing of hardware provides accurate information related to including containers and virtual machines.
(Also link to: www.systauditor.com )
SysAuditor builds supply chains.
SysAuditor reads and monitors systems and environments.
SysAuditor provides analysis and solutions for threat mitigation.
It is easy to amalgamate SPDX profiles to create a single document with all the information needed to evaluate a system or an environment.
SysAuditor supports continuous auditing and system evaluation by creating, capturing, and monitoring your system inventory
Metadata capture by SysAuditor is used for regulatory compliance. A combination of supply chain information and system information is used for traceability, system standards, verification, and attestation.
Supply chains must support the diverse needs of businesses across all supply chains. The supply chain implementations of large and small companies must generate and save money.
The flexibility of the supply chain, combined with the ability to capture data, is required for supply chain effectiveness.
The Action Methodology (as seen on the right) is a high-level abstraction integrated into SPDX to support the mid-level abstractions, such as supply chains, functional design, and threat mitigation.
Requirements define processes. Processes define actions. Actions are actions based on processes. Data is evidence. Evidence allows you to determine if you met your requirements.
SysAuditor is more than glue tying together BOM data profiles. It builds on the SPDX standard to optimize the power of the graph language and ontology by combining all profiles into one graph (or inventory).
SysAuditor data inventories support analysis, new operational tools, and threat management.