SlideShare a Scribd company logo
1 of 2
Download to read offline
THE COMPANY
INTEGRIS Health, a not-for-profit corporation founded in 1983, is Oklahoma’s largest
health system with hospitals, rehabilitation centers, physician clinics, mental health
facilities, independent living centers and home health agencies throughout much
of the state. The corporation is also one of the state’s largest private employers with
approximately 9,000 employees. Collectively, the entities within INTEGRIS Health
maintain more than 1,500 licensed beds and have medical staffs that number
approximately 1,400 physicians.
THE CHALLENGE
As INTEGRIS Health planned to consolidate close to 50 separate electronic medical
record systems spanning its healthcare network into a centralized Epic system,
Senior Systems Engineer Jason Hayes and his team faced a major challenge. “Epic
requires a Linux back-end environment, so we needed to expand to about 60 Linux
servers fairly quickly,” Hayes explains. “Previously, we primarily utilized AIX and
Solaris, but to accommodate the growth for the Epic project, we planned to deploy
most of the systems on the Red Hat Linux operating system.”
Approximately 400 application design, support and admin personnel as well as
medical personnel that would consult on the Epic user-interface system would
eventually need access to the Linux servers. Given that INTEGRIS Health must
operate under HIPAA compliance regulations, the security and policy controls that
would manage the Linux servers would play a major role as the organization must
always be prepared for potential audits.
THE SOLUTION
To take on this challenge, Hayes and his colleagues closely examined BoKS® Server
Control from FoxT as well as Centrify and BeyondTrust. For the new server control
solution that would help manage and protect the Epic servers running on Linux,
INTEGRIS Health sought several key capabilities:
•	 Integration with Active Directory for both users and groups.
•	 Discreet privilege escalation management across multiple systems—with the
ability to specify commands and options.
•	 Compatibility with the security-enhanced Linux kernel module for supporting
access control security policies.
SOLUTION SUMMARY
CUSTOMER TYPE
HEALTHCARE
CHALLENGE
MANAGING USER ACCOUNTS FOR ELECTRONIC
MEDICAL RECORD SYSTEM RUNNING ON
LINUX SERVERS WHILE ALSO IDENTIFYING AND
MITIGATING RISKS IN ORDER TO COMPLY WITH
HIPAA REGULATIONS.
SOLUTION
BoKS SERVER CONTROL
KEY BENEFITS
ACCELERATED DEPLOYMENT OF USERS AND
USER GROUPS ONTO LINUX SERVERS.
REDUCES TIME TO GIVE USER GROUPS NEW
PRIVILEGED ACCESS TO EXISTING SERVERS.
DECREASES TIME TO ASSIGN USERS AND ADD
NEW SYSTEMS TO THE SERVER NETWORK.
HELPS IDENTIFY AND MITIGATE SYSTEM
VULNERABILITIES.
INTEGRIS Health Turns to FoxT to Streamline Linux Server
Management and Mitigate System Vulnerabilities
CASE STUDY | HEALTHCARE
•	 Compliance with HIPAA regulations.
•	 Controls over local accounts and domain accounts
“The product demonstrations provided by each software firm and a review of the
capabilities that each solution offered differentiated BoKS Server Control as the only
one that met all the requirements,” Hayes reveals.
“The solution also streamlines the process for adding local accounts to systems and
controls the adding of the access route for the local accounts,” Hayes adds. “This
is a critical security feature as it prevents someone from using an account with root
access to create a new account with privileges.”
Hayes also particularly appreciates the privilege escalation management feature
offered by BoKS Server Control. This eliminates the need to manage a sudoers file
on every single system. “We were so impressed during the demonstration that we
did not need to run any on-site tests,” Hayes says.
THE RESULTS
After working through the initial accelerated deployment, Hayes and his team have
benefited from the day-to-day capabilities that BoKS Server Control provides in
managing the Linux server environment. “Privilege escalation management and
centralized sudo management are particularly huge benefits,” Hayes emphasizes.
On an almost daily basis, Hayes and his team receive requests for a group of users
to gain privileged access to one or more systems. Rather than having to manually
edit the sudoers file on each system every time there’s a change, they can go into
the BoKS Server Control console and add any program group that is needed.
The team can also set the duration for how long the group will be active and the
specific users for which each system is activated. The granted access is then
automatically pushed out to all the pertinent systems, and the users can instantly
connect.
“Gaining this capability means we no longer have to log into each server and edit the
sudoers file, keep track of the changes, and then remember to undo the access after
the duration expires,” Hayes adds. “This probably saves us about 30 minutes per
system every time we need to make such a change—and usually we need to do this
for anywhere from 6-30 systems. All that time adds up.”
BoKS Server Control is also a big time saver any time Hayes and his team roll out a
new system. “We just add the system, note the correct groups, and all the
accounts that are needed for that system are automatically added,” says Hayes.
ABOUT FOXT
Fox Technologies, Inc. helps
companies protect corporate
information assets with network security
and access management software as
well as striving to simplify compliance
and streamline administration with an
award-winning access management
and privileged account control solution.
Our access management software
centrally enforces granular access
entitlements in real time across diverse
server environments.
To learn more about Fox Technologies,
please visit us at: www.foxt.com
CONTACT INFO
North America
3300 Eagle Run Drive NE, Suite 202
Grand Rapids, MI 49525
+1 877 818 3698 (Toll Free)
Sweden
FoxT Sweden AB
Kungsängsgatan 18A
SE-753 22, Uppsala
+46 18 16 00 00 (Main)
United Kingdom
400 Thames Valley Park
Reading , Berkshire RG6 1PT
+44 1189 637 681 (Main)
www.foxt.com | info@foxt.com
INTEGRIS HEALTH TURNS TO FOXT TO STREAMLINE LINUX SERVER MANAGEMENT

More Related Content

Similar to BoKS ServerControl Health System Use Case: Integris Healthcare

Database project edi
Database project ediDatabase project edi
Database project edi
Rey Jefferson
 
u10a1 Network and Security Architecture _FINAL - Kent Haubein
u10a1 Network and Security Architecture _FINAL - Kent Haubeinu10a1 Network and Security Architecture _FINAL - Kent Haubein
u10a1 Network and Security Architecture _FINAL - Kent Haubein
Kent Haubein
 
intel_soae-h_data_sheet
intel_soae-h_data_sheetintel_soae-h_data_sheet
intel_soae-h_data_sheet
Alan Boucher
 
Essbase security implementation
Essbase security implementationEssbase security implementation
Essbase security implementation
Amit Sharma
 
Red Hat JBOSS_ FuseServiceWorks_Feb2015
Red Hat JBOSS_ FuseServiceWorks_Feb2015Red Hat JBOSS_ FuseServiceWorks_Feb2015
Red Hat JBOSS_ FuseServiceWorks_Feb2015
Isaac Wm. Cornetti
 

Similar to BoKS ServerControl Health System Use Case: Integris Healthcare (20)

The Essentials | Privileged Access Management
The Essentials | Privileged Access ManagementThe Essentials | Privileged Access Management
The Essentials | Privileged Access Management
 
HIPAA and HITRUST on AWS
HIPAA and HITRUST on AWSHIPAA and HITRUST on AWS
HIPAA and HITRUST on AWS
 
FoxT BoKS ServerControl Full Specifications Document
FoxT BoKS ServerControl Full Specifications DocumentFoxT BoKS ServerControl Full Specifications Document
FoxT BoKS ServerControl Full Specifications Document
 
BoKS ServerControl version 7.0
BoKS ServerControl version 7.0BoKS ServerControl version 7.0
BoKS ServerControl version 7.0
 
How to Restructure Active Directory with ZeroIMPACT
How to Restructure Active Directory with ZeroIMPACTHow to Restructure Active Directory with ZeroIMPACT
How to Restructure Active Directory with ZeroIMPACT
 
Database project edi
Database project ediDatabase project edi
Database project edi
 
How to Restructure and Modernize Active Directory
How to Restructure and Modernize Active DirectoryHow to Restructure and Modernize Active Directory
How to Restructure and Modernize Active Directory
 
Dentsply Sirona Sinks their Teeth into Oracle Hyperion Performance Management
Dentsply Sirona Sinks their Teeth into Oracle Hyperion Performance ManagementDentsply Sirona Sinks their Teeth into Oracle Hyperion Performance Management
Dentsply Sirona Sinks their Teeth into Oracle Hyperion Performance Management
 
u10a1 Network and Security Architecture _FINAL - Kent Haubein
u10a1 Network and Security Architecture _FINAL - Kent Haubeinu10a1 Network and Security Architecture _FINAL - Kent Haubein
u10a1 Network and Security Architecture _FINAL - Kent Haubein
 
SUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UK
SUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UKSUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UK
SUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UK
 
Integrating Hitachi ID Management Suite with WebSSO Systems
Integrating Hitachi ID Management Suite with WebSSO SystemsIntegrating Hitachi ID Management Suite with WebSSO Systems
Integrating Hitachi ID Management Suite with WebSSO Systems
 
intel_soae-h_data_sheet
intel_soae-h_data_sheetintel_soae-h_data_sheet
intel_soae-h_data_sheet
 
Essbase security implementation
Essbase security implementationEssbase security implementation
Essbase security implementation
 
Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민
Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민
Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민
 
Solving Interoperability: The Redox API
Solving Interoperability: The Redox APISolving Interoperability: The Redox API
Solving Interoperability: The Redox API
 
Red Hat JBOSS_ FuseServiceWorks_Feb2015
Red Hat JBOSS_ FuseServiceWorks_Feb2015Red Hat JBOSS_ FuseServiceWorks_Feb2015
Red Hat JBOSS_ FuseServiceWorks_Feb2015
 
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File SharingESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
 
City and County Healthcare Group consolidates servers
City and County Healthcare Group consolidates serversCity and County Healthcare Group consolidates servers
City and County Healthcare Group consolidates servers
 
Fast, Cheaper and Better Content Conversion by Systemware - ECM Provider Company
Fast, Cheaper and Better Content Conversion by Systemware - ECM Provider CompanyFast, Cheaper and Better Content Conversion by Systemware - ECM Provider Company
Fast, Cheaper and Better Content Conversion by Systemware - ECM Provider Company
 
Ensuring document control for healthcare vendors
Ensuring document control for healthcare vendorsEnsuring document control for healthcare vendors
Ensuring document control for healthcare vendors
 

Recently uploaded

Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Victor Rentea
 

Recently uploaded (20)

WSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering Developers
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 
JohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptxJohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptx
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Spring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUKSpring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUK
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
AI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by AnitarajAI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by Anitaraj
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
Introduction to use of FHIR Documents in ABDM
Introduction to use of FHIR Documents in ABDMIntroduction to use of FHIR Documents in ABDM
Introduction to use of FHIR Documents in ABDM
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 

BoKS ServerControl Health System Use Case: Integris Healthcare

  • 1. THE COMPANY INTEGRIS Health, a not-for-profit corporation founded in 1983, is Oklahoma’s largest health system with hospitals, rehabilitation centers, physician clinics, mental health facilities, independent living centers and home health agencies throughout much of the state. The corporation is also one of the state’s largest private employers with approximately 9,000 employees. Collectively, the entities within INTEGRIS Health maintain more than 1,500 licensed beds and have medical staffs that number approximately 1,400 physicians. THE CHALLENGE As INTEGRIS Health planned to consolidate close to 50 separate electronic medical record systems spanning its healthcare network into a centralized Epic system, Senior Systems Engineer Jason Hayes and his team faced a major challenge. “Epic requires a Linux back-end environment, so we needed to expand to about 60 Linux servers fairly quickly,” Hayes explains. “Previously, we primarily utilized AIX and Solaris, but to accommodate the growth for the Epic project, we planned to deploy most of the systems on the Red Hat Linux operating system.” Approximately 400 application design, support and admin personnel as well as medical personnel that would consult on the Epic user-interface system would eventually need access to the Linux servers. Given that INTEGRIS Health must operate under HIPAA compliance regulations, the security and policy controls that would manage the Linux servers would play a major role as the organization must always be prepared for potential audits. THE SOLUTION To take on this challenge, Hayes and his colleagues closely examined BoKS® Server Control from FoxT as well as Centrify and BeyondTrust. For the new server control solution that would help manage and protect the Epic servers running on Linux, INTEGRIS Health sought several key capabilities: • Integration with Active Directory for both users and groups. • Discreet privilege escalation management across multiple systems—with the ability to specify commands and options. • Compatibility with the security-enhanced Linux kernel module for supporting access control security policies. SOLUTION SUMMARY CUSTOMER TYPE HEALTHCARE CHALLENGE MANAGING USER ACCOUNTS FOR ELECTRONIC MEDICAL RECORD SYSTEM RUNNING ON LINUX SERVERS WHILE ALSO IDENTIFYING AND MITIGATING RISKS IN ORDER TO COMPLY WITH HIPAA REGULATIONS. SOLUTION BoKS SERVER CONTROL KEY BENEFITS ACCELERATED DEPLOYMENT OF USERS AND USER GROUPS ONTO LINUX SERVERS. REDUCES TIME TO GIVE USER GROUPS NEW PRIVILEGED ACCESS TO EXISTING SERVERS. DECREASES TIME TO ASSIGN USERS AND ADD NEW SYSTEMS TO THE SERVER NETWORK. HELPS IDENTIFY AND MITIGATE SYSTEM VULNERABILITIES. INTEGRIS Health Turns to FoxT to Streamline Linux Server Management and Mitigate System Vulnerabilities CASE STUDY | HEALTHCARE
  • 2. • Compliance with HIPAA regulations. • Controls over local accounts and domain accounts “The product demonstrations provided by each software firm and a review of the capabilities that each solution offered differentiated BoKS Server Control as the only one that met all the requirements,” Hayes reveals. “The solution also streamlines the process for adding local accounts to systems and controls the adding of the access route for the local accounts,” Hayes adds. “This is a critical security feature as it prevents someone from using an account with root access to create a new account with privileges.” Hayes also particularly appreciates the privilege escalation management feature offered by BoKS Server Control. This eliminates the need to manage a sudoers file on every single system. “We were so impressed during the demonstration that we did not need to run any on-site tests,” Hayes says. THE RESULTS After working through the initial accelerated deployment, Hayes and his team have benefited from the day-to-day capabilities that BoKS Server Control provides in managing the Linux server environment. “Privilege escalation management and centralized sudo management are particularly huge benefits,” Hayes emphasizes. On an almost daily basis, Hayes and his team receive requests for a group of users to gain privileged access to one or more systems. Rather than having to manually edit the sudoers file on each system every time there’s a change, they can go into the BoKS Server Control console and add any program group that is needed. The team can also set the duration for how long the group will be active and the specific users for which each system is activated. The granted access is then automatically pushed out to all the pertinent systems, and the users can instantly connect. “Gaining this capability means we no longer have to log into each server and edit the sudoers file, keep track of the changes, and then remember to undo the access after the duration expires,” Hayes adds. “This probably saves us about 30 minutes per system every time we need to make such a change—and usually we need to do this for anywhere from 6-30 systems. All that time adds up.” BoKS Server Control is also a big time saver any time Hayes and his team roll out a new system. “We just add the system, note the correct groups, and all the accounts that are needed for that system are automatically added,” says Hayes. ABOUT FOXT Fox Technologies, Inc. helps companies protect corporate information assets with network security and access management software as well as striving to simplify compliance and streamline administration with an award-winning access management and privileged account control solution. Our access management software centrally enforces granular access entitlements in real time across diverse server environments. To learn more about Fox Technologies, please visit us at: www.foxt.com CONTACT INFO North America 3300 Eagle Run Drive NE, Suite 202 Grand Rapids, MI 49525 +1 877 818 3698 (Toll Free) Sweden FoxT Sweden AB Kungsängsgatan 18A SE-753 22, Uppsala +46 18 16 00 00 (Main) United Kingdom 400 Thames Valley Park Reading , Berkshire RG6 1PT +44 1189 637 681 (Main) www.foxt.com | info@foxt.com INTEGRIS HEALTH TURNS TO FOXT TO STREAMLINE LINUX SERVER MANAGEMENT