
Planning & Requirements Gathering – Identify monitoring needs, security requirements, and compliance goals before deployment.
System Preparation – Ensure the infrastructure (servers, storage, and network) meets EventSentry’s system requirements.
Software Installation – Deploy the EventSentry software on the designated server or cloud environment.
Agent Deployment – Install and configure EventSentry agents on target systems (Windows, Linux, or cloud environments).
Log & Data Source Configuration – Define event log sources, system health parameters, and network monitoring settings.
Alert & Notification Setup – Configure real-time alerts via email, SMS, Slack, or Teams for security and performance incidents.
Compliance & Security Policy Configuration – Enable compliance reports and security policies based on industry regulations.
Dashboard Customization – Set up custom dashboards and reporting templates for easy data visualization.
Testing & Validation – Verify that monitoring, logging, and alerting functionalities are working correctly.
User Training & Documentation – Provide training to IT and security teams on EventSentry’s features and best practices.
EventSentry can be highly customized to fit specific business needs. It offers a range of customization options across monitoring, alerting, automation, and reporting. Here are several key data points that highlight its flexibility:
Supports custom event log filters to track specific security incidents or operational events
.
Allows log correlation rules to detect complex security threats and anomalies.
Custom log file monitoring for tracking application-specific logs beyond standard Windows/Linux logs.
Threshold-based monitoring enables alerts only when certain conditions are met, reducing false positives.
Alerts can be configured via email, SMS, Slack, Microsoft Teams, Syslog, or third-party APIs.
Supports custom alert rules to trigger notifications based on severity, event ID, or specific log patterns.
Allows integration with ITSM tools like ServiceNow or PagerDuty for automated incident response.
Custom escalation policies ensure alerts reach the right personnel at the right time.
Pre-built compliance reports for HIPAA, PCI-DSS, ISO 27001, and GDPR, with options to create custom reports.
Custom file integrity monitoring (FIM) rules to track changes to sensitive files.
Supports custom scripts (PowerShell, Python, Bash) for automating security and system remediation tasks.
Role-based access control (RBAC) allows defining custom user permissions.
Fully customizable dashboards with widgets for event logs, system health, and network traffic.
Custom performance monitoring metrics can be added based on business needs.
Users can create scheduled or on-demand reports with tailored data visualizations.
Supports third-party integrations (e.g., Splunk, Elasticsearch, AWS CloudWatch, Syslog).
Offers a REST API for automation, allowing businesses to programmatically retrieve logs and monitoring data.
Can integrate with custom-built applications using API or webhooks for advanced workflows.
Automated remediation scripts can be triggered when a security event is detected.
Supports custom batch jobs and PowerShell scripts for system automation.
Ability to create custom response actions like shutting down a compromised system or blocking an IP.
Custom SNMP monitoring for tracking specific network device metrics.
Ability to configure custom thresholds for CPU, RAM, disk usage, and network bandwidth.
Supports custom process monitoring to track specific applications or services critical to a business.
Can be deployed on-premises, in private clouds, or hybrid environments based on business needs.
Supports multi-tenant environments, making it ideal for Managed Service Providers (MSPs).
EventSentry provides a range of training and support options to help new users effectively deploy, configure, and manage the software. Below are the key types of training and support available:
Online Documentation & Knowledge Base – A detailed set of guides, FAQs, and how-to articles to assist users with installation, configuration, and troubleshooting.
Video Tutorials & Webinars – Step-by-step video guides covering various features, best practices, and system optimization techniques.
Live Training Sessions – On-demand or scheduled training sessions for IT teams, covering advanced EventSentry features and customization.
Custom Training – Businesses can request customized training sessions tailored to their specific monitoring and security needs.
Email Support – Direct email assistance for technical queries and troubleshooting.
Phone Support – Available for critical issues requiring immediate resolution.
Live Chat Support – Quick responses for common questions and troubleshooting during business hours.
Ticket-Based Support System – Users can submit support tickets through the EventSentry website for issue
resolution.
EventSentry Blog & Knowledge Base – Offers best practices, troubleshooting tips, and updates on new features.
User Forum & Community Discussions – A platform where users can exchange ideas, report issues, and discuss solutions.
Product Updates & Release Notes – Regularly updated documentation on new features, bug fixes, and enhancements.
Priority Support – Faster response times for critical enterprise customers.
Dedicated Account Manager – Available for larger organizations needing personalized assistance.
EventSentry implements a suite of security measures to protect data and enhance network security:
1. Real-Time Monitoring and Alerts:
Event Log Monitoring: Continuously tracks system and application logs to detect and alert on suspicious activities.
File Integrity Monitoring: Monitors critical files for unauthorized changes, ensuring data integrity.
2. Threat Detection and Mitigation:
Anomaly Detection: Identifies deviations from established baselines, such as unusual logon attempts or process executions, to detect potential threats.
Ransomware Defense: Employs strategies like monitoring Master Boot Record (MBR) changes and assessing file entropy to detect and respond to ransomware attacks.
3. Compliance and Validation:
Validation Scripts: Regularly assess system configurations against security baselines to identify and rectify vulnerabilities.
Compliance Reporting: Provides tools to demonstrate adherence to standards such as PCI-DSS, ensuring the secure handling of sensitive information.
4. Network Security and Inventory:
NetFlow Monitoring: Analyzes network traffic to detect anomalies and potential data exfiltration attempts.
Permission Inventory: Enumerates and audits permissions on critical folders to prevent unauthorized data access.
5. Integration and Updates:
Software Version Checker: Identifies outdated software to ensure all applications are up-to-date with the latest security patches.
EventSentry primarily operates as an on-premise monitoring solution, granting users full control over their data. This design ensures that all collected data resides within the user's infrastructure, allowing for complete ownership and management.
Data Ownership:
User Control: Since EventSentry is installed and managed within your environment, you retain full ownership of all collected data.
Database Management: The data is stored in databases that you control, ensuring that only authorized personnel have access. It's crucial to implement strong passwords and restrict database access to prevent unauthorized data manipulation.
Data Portability:
Flexible Data Access: EventSentry supports various database systems, including Microsoft SQL Server, PostgreSQL, and others. This flexibility facilitates data portability, allowing you to export and migrate data as needed.
EventSentry licensing and maintenance policies encompass several key aspects related to contract renewal and cancellation:
1. License and Maintenance Terms:
License Duration: Upon purchase, EventSentry grants a perpetual license for the software, allowing continuous use without mandatory renewals.
Included Maintenance: Each new license includes one year of maintenance and support, providing access to software updates and customer support services.
2. Maintenance Renewal:
Optional Renewal: Continuing maintenance beyond the initial year is optional. While the software remains functional without an active maintenance plan, renewing ensures ongoing access to updates and support.
Renewal Cost: The annual maintenance renewal fee is 20% of the current license price.
Lapsed Maintenance: If maintenance expires and is not renewed within 90 days, reinstatement typically requires purchasing an upgrade at 35% of the current license price.
3. Cancellation and Refund Policy:
Refund Eligibility: EventSentry offers a 60-day refund policy. If an advertised feature does not function as described and the issue is reported within 60 days of purchase, a full refund is provided if the problem cannot be resolved within 20 working days.
EventSentry is designed to assist organizations in meeting various regulatory compliance standards by providing tools and features that align with specific requirements:
Payment Card Industry Data Security Standard (PCI-DSS) 4.0: EventSentry offers compliance tracking features, real-time event log monitoring, and system health monitoring, including file integrity monitoring, to help organizations meet PCI-DSS requirements.
Health Insurance Portability and Accountability Act (HIPAA): The software provides tools such as compliance reports and tracking to assist healthcare organizations in adhering to HIPAA regulations.
Federal Information Security Management Act (FISMA): EventSentry includes compliance modules and tracking features that support federal agencies in meeting FISMA standards.
Sarbanes-Oxley Act (SOX): The software aids publicly traded companies in fulfilling SOX compliance through its monitoring and reporting capabilities.
Gramm-Leach-Bliley Act (GLBA): EventSentry assists financial institutions in complying with GLBA by providing necessary security monitoring and reporting tools.
ISO/IEC 27001:2013: The software offers features that align with the information security management requirements of ISO 27001:2013.
NIST Special Publication 800-171: EventSentry helps organizations protect controlled unclassified information by supporting NIST 800-171 compliance efforts.
Cybersecurity Maturity Model Certification (CMMC) v2.0: The software includes tools and reports to assist organizations in preparing for CMMC assessments.