Managing information system security is a priority for every organization. In fact, the level of security provided by software vendors has become a differentiating factor for IT purchase decisions. Quest strives to meet standards designed to provide its customers with their desired level of security as it relates to privacy, confidentiality, integrity and availability.
This document describes the security features of Quest On Demand Audit. This includes access control, protection of customer data, secure network communication, and cryptographic standards.
Quest On Demand Audit is an Azure hosted cloud service in the Quest On Demand platform that consolidates audit data from a variety of on premises and Microsoft 365 workloads. Integrating with Quest Change Auditor provides the ability to search and correlate identities across both on premises and in the cloud to give a seamless view of activity in hybrid Microsoft environments.
On Demand Audit, specifically enables:
- Fast and flexible searches for easy investigation and accurate results across tenants and on premises environments
- Interactive visualizations and dashboards to summarize audit activity
- Easy to use customizable alerts based on audit event searches
- Long term storage of audit events outside of Microsoft 365 and Change Auditor for a retention period of up to 10 years
The following scheme shows the key components of the On Demand Audit configuration
Azure Datacenter Security
Microsoft Azure datacenters have the highest possible physical security and are considered among the most secure datacenters in the world. They are subject to regular audits and certifications including Service Organization Controls (SOC) 1, SOC 2 and ISO/IEC 27001:2005.
Relevant references with additional information about the Windows Azure datacenter security can be found here: