CCIME• ISO27001• PCI-DSS• • • • • • • • AuditSec• • TIM/TAMp ITp AuditSecp p AuditSecp SOXISO27001RDPXwindowITITIT12IT1n n n 3n n ITn IT2n ITITroot/administratorn n p ITp AuditSecp p AuditSecp 1.2.3.4.5.1.2.3.4.5.1.2.3.4.AuditSeczhang3rootROOTwang5rootrootAuditSec Windows Unix Linux IEAuditSec 12IE telnet …….. SSH ……. TelnetFTPVMwareKVMPLSQLVNCRDPToadSQLPLUSX-WindowSSH IT IBMTIM/TAM4AIT/VPNITInternetITITØ IBMTIM/TAM4AØ ArcSightSOCØ VMWareKVMØ HTTP/HTTPSB/SØ SSHRDPSFTPVNCØ OEMCSQLPLUSPLSQLTOADØ Ø Ø Ø ……Ø u ISO27001SOXu u Ø u u u u Ø u SSOu ITu ITp ITp AuditSecp p AuditSecp 1.[2006]320-2.[2006]43-ITV1.2• • • • • • • • • IT• • p ITp AuditSecp p AuditSecp Ø Ø Ø Ø Ø p ITp AuditSecp p AuditSecp SetupInformationSecuritySystem,Youneed!