SlideShare a Scribd company logo
1 of 2
Download to read offline
THE COMPANY
INTEGRIS Health, a not-for-profit corporation founded in 1983, is Oklahoma’s largest
health system with hospitals, rehabilitation centers, physician clinics, mental health
facilities, independent living centers and home health agencies throughout much
of the state. The corporation is also one of the state’s largest private employers with
approximately 9,000 employees. Collectively, the entities within INTEGRIS Health
maintain more than 1,500 licensed beds and have medical staffs that number
approximately 1,400 physicians.
THE CHALLENGE
As INTEGRIS Health planned to consolidate close to 50 separate electronic medical
record systems spanning its healthcare network into a centralized Epic system,
Senior Systems Engineer Jason Hayes and his team faced a major challenge. “Epic
requires a Linux back-end environment, so we needed to expand to about 60 Linux
servers fairly quickly,” Hayes explains. “Previously, we primarily utilized AIX and
Solaris, but to accommodate the growth for the Epic project, we planned to deploy
most of the systems on the Red Hat Linux operating system.”
Approximately 400 application design, support and admin personnel as well as
medical personnel that would consult on the Epic user-interface system would
eventually need access to the Linux servers. Given that INTEGRIS Health must
operate under HIPAA compliance regulations, the security and policy controls that
would manage the Linux servers would play a major role as the organization must
always be prepared for potential audits.
THE SOLUTION
To take on this challenge, Hayes and his colleagues closely examined BoKS® Server
Control from FoxT as well as Centrify and BeyondTrust. For the new server control
solution that would help manage and protect the Epic servers running on Linux,
INTEGRIS Health sought several key capabilities:
•	 Integration with Active Directory for both users and groups.
•	 Discreet privilege escalation management across multiple systems—with the
ability to specify commands and options.
•	 Compatibility with the security-enhanced Linux kernel module for supporting
access control security policies.
SOLUTION SUMMARY
CUSTOMER TYPE
HEALTHCARE
CHALLENGE
MANAGING USER ACCOUNTS FOR ELECTRONIC
MEDICAL RECORD SYSTEM RUNNING ON
LINUX SERVERS WHILE ALSO IDENTIFYING AND
MITIGATING RISKS IN ORDER TO COMPLY WITH
HIPAA REGULATIONS.
SOLUTION
BoKS SERVER CONTROL
KEY BENEFITS
ACCELERATED DEPLOYMENT OF USERS AND
USER GROUPS ONTO LINUX SERVERS.
REDUCES TIME TO GIVE USER GROUPS NEW
PRIVILEGED ACCESS TO EXISTING SERVERS.
DECREASES TIME TO ASSIGN USERS AND ADD
NEW SYSTEMS TO THE SERVER NETWORK.
HELPS IDENTIFY AND MITIGATE SYSTEM
VULNERABILITIES.
INTEGRIS Health Turns to FoxT to Streamline Linux Server
Management and Mitigate System Vulnerabilities
CASE STUDY | HEALTHCARE
•	 Compliance with HIPAA regulations.
•	 Controls over local accounts and domain accounts
“The product demonstrations provided by each software firm and a review of the
capabilities that each solution offered differentiated BoKS Server Control as the only
one that met all the requirements,” Hayes reveals.
“The solution also streamlines the process for adding local accounts to systems and
controls the adding of the access route for the local accounts,” Hayes adds. “This
is a critical security feature as it prevents someone from using an account with root
access to create a new account with privileges.”
Hayes also particularly appreciates the privilege escalation management feature
offered by BoKS Server Control. This eliminates the need to manage a sudoers file
on every single system. “We were so impressed during the demonstration that we
did not need to run any on-site tests,” Hayes says.
THE RESULTS
After working through the initial accelerated deployment, Hayes and his team have
benefited from the day-to-day capabilities that BoKS Server Control provides in
managing the Linux server environment. “Privilege escalation management and
centralized sudo management are particularly huge benefits,” Hayes emphasizes.
On an almost daily basis, Hayes and his team receive requests for a group of users
to gain privileged access to one or more systems. Rather than having to manually
edit the sudoers file on each system every time there’s a change, they can go into
the BoKS Server Control console and add any program group that is needed.
The team can also set the duration for how long the group will be active and the
specific users for which each system is activated. The granted access is then
automatically pushed out to all the pertinent systems, and the users can instantly
connect.
“Gaining this capability means we no longer have to log into each server and edit the
sudoers file, keep track of the changes, and then remember to undo the access after
the duration expires,” Hayes adds. “This probably saves us about 30 minutes per
system every time we need to make such a change—and usually we need to do this
for anywhere from 6-30 systems. All that time adds up.”
BoKS Server Control is also a big time saver any time Hayes and his team roll out a
new system. “We just add the system, note the correct groups, and all the
accounts that are needed for that system are automatically added,” says Hayes.
ABOUT FOXT
Fox Technologies, Inc. helps
companies protect corporate
information assets with network security
and access management software as
well as striving to simplify compliance
and streamline administration with an
award-winning access management
and privileged account control solution.
Our access management software
centrally enforces granular access
entitlements in real time across diverse
server environments.
To learn more about Fox Technologies,
please visit us at: www.foxt.com
CONTACT INFO
North America
3300 Eagle Run Drive NE, Suite 202
Grand Rapids, MI 49525
+1 877 818 3698 (Toll Free)
Sweden
FoxT Sweden AB
Kungsängsgatan 18A
SE-753 22, Uppsala
+46 18 16 00 00 (Main)
United Kingdom
400 Thames Valley Park
Reading , Berkshire RG6 1PT
+44 1189 637 681 (Main)
www.foxt.com | info@foxt.com
INTEGRIS HEALTH TURNS TO FOXT TO STREAMLINE LINUX SERVER MANAGEMENT

More Related Content

Similar to Integris Health Care: BoKS ServerControl Use Case for Healthcare Systems

The Essentials | Privileged Access Management
The Essentials | Privileged Access ManagementThe Essentials | Privileged Access Management
The Essentials | Privileged Access ManagementRyan Gallavin
 
HIPAA and HITRUST on AWS
HIPAA and HITRUST on AWSHIPAA and HITRUST on AWS
HIPAA and HITRUST on AWSLogicworksNY
 
FoxT BoKS ServerControl Full Specifications Document
FoxT BoKS ServerControl Full Specifications DocumentFoxT BoKS ServerControl Full Specifications Document
FoxT BoKS ServerControl Full Specifications DocumentRyan Gallavin
 
BoKS ServerControl version 7.0
BoKS ServerControl version 7.0BoKS ServerControl version 7.0
BoKS ServerControl version 7.0Ryan Gallavin
 
How to Restructure Active Directory with ZeroIMPACT
How to Restructure Active Directory with ZeroIMPACTHow to Restructure Active Directory with ZeroIMPACT
How to Restructure Active Directory with ZeroIMPACTQuest
 
Database project edi
Database project ediDatabase project edi
Database project ediRey Jefferson
 
How to Restructure and Modernize Active Directory
How to Restructure and Modernize Active DirectoryHow to Restructure and Modernize Active Directory
How to Restructure and Modernize Active DirectoryQuest
 
Dentsply Sirona Sinks their Teeth into Oracle Hyperion Performance Management
Dentsply Sirona Sinks their Teeth into Oracle Hyperion Performance ManagementDentsply Sirona Sinks their Teeth into Oracle Hyperion Performance Management
Dentsply Sirona Sinks their Teeth into Oracle Hyperion Performance ManagementDatavail
 
u10a1 Network and Security Architecture _FINAL - Kent Haubein
u10a1 Network and Security Architecture _FINAL - Kent Haubeinu10a1 Network and Security Architecture _FINAL - Kent Haubein
u10a1 Network and Security Architecture _FINAL - Kent HaubeinKent Haubein
 
SUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UK
SUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UKSUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UK
SUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UKhuguk
 
Integrating Hitachi ID Management Suite with WebSSO Systems
Integrating Hitachi ID Management Suite with WebSSO SystemsIntegrating Hitachi ID Management Suite with WebSSO Systems
Integrating Hitachi ID Management Suite with WebSSO SystemsHitachi ID Systems, Inc.
 
intel_soae-h_data_sheet
intel_soae-h_data_sheetintel_soae-h_data_sheet
intel_soae-h_data_sheetAlan Boucher
 
Essbase security implementation
Essbase security implementationEssbase security implementation
Essbase security implementationAmit Sharma
 
Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민
Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민
Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민NAVER D2
 
Solving Interoperability: The Redox API
Solving Interoperability: The Redox APISolving Interoperability: The Redox API
Solving Interoperability: The Redox APIRedox Engine
 
Red Hat JBOSS_ FuseServiceWorks_Feb2015
Red Hat JBOSS_ FuseServiceWorks_Feb2015Red Hat JBOSS_ FuseServiceWorks_Feb2015
Red Hat JBOSS_ FuseServiceWorks_Feb2015Isaac Wm. Cornetti
 
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File SharingESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File SharingHitachi Vantara
 
City and County Healthcare Group consolidates servers
City and County Healthcare Group consolidates serversCity and County Healthcare Group consolidates servers
City and County Healthcare Group consolidates serversIBM India Smarter Computing
 
Fast, Cheaper and Better Content Conversion by Systemware - ECM Provider Company
Fast, Cheaper and Better Content Conversion by Systemware - ECM Provider CompanyFast, Cheaper and Better Content Conversion by Systemware - ECM Provider Company
Fast, Cheaper and Better Content Conversion by Systemware - ECM Provider CompanyJone Smith
 
Ensuring document control for healthcare vendors
Ensuring document control for healthcare vendorsEnsuring document control for healthcare vendors
Ensuring document control for healthcare vendorsChristopher Wynder
 

Similar to Integris Health Care: BoKS ServerControl Use Case for Healthcare Systems (20)

The Essentials | Privileged Access Management
The Essentials | Privileged Access ManagementThe Essentials | Privileged Access Management
The Essentials | Privileged Access Management
 
HIPAA and HITRUST on AWS
HIPAA and HITRUST on AWSHIPAA and HITRUST on AWS
HIPAA and HITRUST on AWS
 
FoxT BoKS ServerControl Full Specifications Document
FoxT BoKS ServerControl Full Specifications DocumentFoxT BoKS ServerControl Full Specifications Document
FoxT BoKS ServerControl Full Specifications Document
 
BoKS ServerControl version 7.0
BoKS ServerControl version 7.0BoKS ServerControl version 7.0
BoKS ServerControl version 7.0
 
How to Restructure Active Directory with ZeroIMPACT
How to Restructure Active Directory with ZeroIMPACTHow to Restructure Active Directory with ZeroIMPACT
How to Restructure Active Directory with ZeroIMPACT
 
Database project edi
Database project ediDatabase project edi
Database project edi
 
How to Restructure and Modernize Active Directory
How to Restructure and Modernize Active DirectoryHow to Restructure and Modernize Active Directory
How to Restructure and Modernize Active Directory
 
Dentsply Sirona Sinks their Teeth into Oracle Hyperion Performance Management
Dentsply Sirona Sinks their Teeth into Oracle Hyperion Performance ManagementDentsply Sirona Sinks their Teeth into Oracle Hyperion Performance Management
Dentsply Sirona Sinks their Teeth into Oracle Hyperion Performance Management
 
u10a1 Network and Security Architecture _FINAL - Kent Haubein
u10a1 Network and Security Architecture _FINAL - Kent Haubeinu10a1 Network and Security Architecture _FINAL - Kent Haubein
u10a1 Network and Security Architecture _FINAL - Kent Haubein
 
SUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UK
SUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UKSUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UK
SUSE, Hadoop and Big Data Update. Stephen Mogg, SUSE UK
 
Integrating Hitachi ID Management Suite with WebSSO Systems
Integrating Hitachi ID Management Suite with WebSSO SystemsIntegrating Hitachi ID Management Suite with WebSSO Systems
Integrating Hitachi ID Management Suite with WebSSO Systems
 
intel_soae-h_data_sheet
intel_soae-h_data_sheetintel_soae-h_data_sheet
intel_soae-h_data_sheet
 
Essbase security implementation
Essbase security implementationEssbase security implementation
Essbase security implementation
 
Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민
Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민
Elastic v5.0.0 Update uptoalpha3 v0.2 - 김종민
 
Solving Interoperability: The Redox API
Solving Interoperability: The Redox APISolving Interoperability: The Redox API
Solving Interoperability: The Redox API
 
Red Hat JBOSS_ FuseServiceWorks_Feb2015
Red Hat JBOSS_ FuseServiceWorks_Feb2015Red Hat JBOSS_ FuseServiceWorks_Feb2015
Red Hat JBOSS_ FuseServiceWorks_Feb2015
 
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File SharingESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
ESG - HDS HCP Anywhere Easy, Secure, On-Premises File Sharing
 
City and County Healthcare Group consolidates servers
City and County Healthcare Group consolidates serversCity and County Healthcare Group consolidates servers
City and County Healthcare Group consolidates servers
 
Fast, Cheaper and Better Content Conversion by Systemware - ECM Provider Company
Fast, Cheaper and Better Content Conversion by Systemware - ECM Provider CompanyFast, Cheaper and Better Content Conversion by Systemware - ECM Provider Company
Fast, Cheaper and Better Content Conversion by Systemware - ECM Provider Company
 
Ensuring document control for healthcare vendors
Ensuring document control for healthcare vendorsEnsuring document control for healthcare vendors
Ensuring document control for healthcare vendors
 

Recently uploaded

Exploring Selenium_Appium Frameworks for Seamless Integration with HeadSpin.pdf
Exploring Selenium_Appium Frameworks for Seamless Integration with HeadSpin.pdfExploring Selenium_Appium Frameworks for Seamless Integration with HeadSpin.pdf
Exploring Selenium_Appium Frameworks for Seamless Integration with HeadSpin.pdfkalichargn70th171
 
Unveiling the Future: Sylius 2.0 New Features
Unveiling the Future: Sylius 2.0 New FeaturesUnveiling the Future: Sylius 2.0 New Features
Unveiling the Future: Sylius 2.0 New FeaturesŁukasz Chruściel
 
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...Natan Silnitsky
 
Implementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with AzureImplementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with AzureDinusha Kumarasiri
 
VK Business Profile - provides IT solutions and Web Development
VK Business Profile - provides IT solutions and Web DevelopmentVK Business Profile - provides IT solutions and Web Development
VK Business Profile - provides IT solutions and Web Developmentvyaparkranti
 
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...Angel Borroy López
 
Precise and Complete Requirements? An Elusive Goal
Precise and Complete Requirements? An Elusive GoalPrecise and Complete Requirements? An Elusive Goal
Precise and Complete Requirements? An Elusive GoalLionel Briand
 
英国UN学位证,北安普顿大学毕业证书1:1制作
英国UN学位证,北安普顿大学毕业证书1:1制作英国UN学位证,北安普顿大学毕业证书1:1制作
英国UN学位证,北安普顿大学毕业证书1:1制作qr0udbr0
 
Balasore Best It Company|| Top 10 IT Company || Balasore Software company Odisha
Balasore Best It Company|| Top 10 IT Company || Balasore Software company OdishaBalasore Best It Company|| Top 10 IT Company || Balasore Software company Odisha
Balasore Best It Company|| Top 10 IT Company || Balasore Software company Odishasmiwainfosol
 
GOING AOT WITH GRAALVM – DEVOXX GREECE.pdf
GOING AOT WITH GRAALVM – DEVOXX GREECE.pdfGOING AOT WITH GRAALVM – DEVOXX GREECE.pdf
GOING AOT WITH GRAALVM – DEVOXX GREECE.pdfAlina Yurenko
 
Software Project Health Check: Best Practices and Techniques for Your Product...
Software Project Health Check: Best Practices and Techniques for Your Product...Software Project Health Check: Best Practices and Techniques for Your Product...
Software Project Health Check: Best Practices and Techniques for Your Product...Velvetech LLC
 
How to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion ApplicationHow to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion ApplicationBradBedford3
 
Recruitment Management Software Benefits (Infographic)
Recruitment Management Software Benefits (Infographic)Recruitment Management Software Benefits (Infographic)
Recruitment Management Software Benefits (Infographic)Hr365.us smith
 
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024StefanoLambiase
 
Cyber security and its impact on E commerce
Cyber security and its impact on E commerceCyber security and its impact on E commerce
Cyber security and its impact on E commercemanigoyal112
 
Unveiling Design Patterns: A Visual Guide with UML Diagrams
Unveiling Design Patterns: A Visual Guide with UML DiagramsUnveiling Design Patterns: A Visual Guide with UML Diagrams
Unveiling Design Patterns: A Visual Guide with UML DiagramsAhmed Mohamed
 
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...OnePlan Solutions
 

Recently uploaded (20)

Exploring Selenium_Appium Frameworks for Seamless Integration with HeadSpin.pdf
Exploring Selenium_Appium Frameworks for Seamless Integration with HeadSpin.pdfExploring Selenium_Appium Frameworks for Seamless Integration with HeadSpin.pdf
Exploring Selenium_Appium Frameworks for Seamless Integration with HeadSpin.pdf
 
Unveiling the Future: Sylius 2.0 New Features
Unveiling the Future: Sylius 2.0 New FeaturesUnveiling the Future: Sylius 2.0 New Features
Unveiling the Future: Sylius 2.0 New Features
 
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...
 
Implementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with AzureImplementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with Azure
 
2.pdf Ejercicios de programación competitiva
2.pdf Ejercicios de programación competitiva2.pdf Ejercicios de programación competitiva
2.pdf Ejercicios de programación competitiva
 
VK Business Profile - provides IT solutions and Web Development
VK Business Profile - provides IT solutions and Web DevelopmentVK Business Profile - provides IT solutions and Web Development
VK Business Profile - provides IT solutions and Web Development
 
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...
 
Precise and Complete Requirements? An Elusive Goal
Precise and Complete Requirements? An Elusive GoalPrecise and Complete Requirements? An Elusive Goal
Precise and Complete Requirements? An Elusive Goal
 
Advantages of Odoo ERP 17 for Your Business
Advantages of Odoo ERP 17 for Your BusinessAdvantages of Odoo ERP 17 for Your Business
Advantages of Odoo ERP 17 for Your Business
 
英国UN学位证,北安普顿大学毕业证书1:1制作
英国UN学位证,北安普顿大学毕业证书1:1制作英国UN学位证,北安普顿大学毕业证书1:1制作
英国UN学位证,北安普顿大学毕业证书1:1制作
 
Balasore Best It Company|| Top 10 IT Company || Balasore Software company Odisha
Balasore Best It Company|| Top 10 IT Company || Balasore Software company OdishaBalasore Best It Company|| Top 10 IT Company || Balasore Software company Odisha
Balasore Best It Company|| Top 10 IT Company || Balasore Software company Odisha
 
GOING AOT WITH GRAALVM – DEVOXX GREECE.pdf
GOING AOT WITH GRAALVM – DEVOXX GREECE.pdfGOING AOT WITH GRAALVM – DEVOXX GREECE.pdf
GOING AOT WITH GRAALVM – DEVOXX GREECE.pdf
 
Odoo Development Company in India | Devintelle Consulting Service
Odoo Development Company in India | Devintelle Consulting ServiceOdoo Development Company in India | Devintelle Consulting Service
Odoo Development Company in India | Devintelle Consulting Service
 
Software Project Health Check: Best Practices and Techniques for Your Product...
Software Project Health Check: Best Practices and Techniques for Your Product...Software Project Health Check: Best Practices and Techniques for Your Product...
Software Project Health Check: Best Practices and Techniques for Your Product...
 
How to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion ApplicationHow to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion Application
 
Recruitment Management Software Benefits (Infographic)
Recruitment Management Software Benefits (Infographic)Recruitment Management Software Benefits (Infographic)
Recruitment Management Software Benefits (Infographic)
 
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024
Dealing with Cultural Dispersion — Stefano Lambiase — ICSE-SEIS 2024
 
Cyber security and its impact on E commerce
Cyber security and its impact on E commerceCyber security and its impact on E commerce
Cyber security and its impact on E commerce
 
Unveiling Design Patterns: A Visual Guide with UML Diagrams
Unveiling Design Patterns: A Visual Guide with UML DiagramsUnveiling Design Patterns: A Visual Guide with UML Diagrams
Unveiling Design Patterns: A Visual Guide with UML Diagrams
 
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
Tech Tuesday - Mastering Time Management Unlock the Power of OnePlan's Timesh...
 

Integris Health Care: BoKS ServerControl Use Case for Healthcare Systems

  • 1. THE COMPANY INTEGRIS Health, a not-for-profit corporation founded in 1983, is Oklahoma’s largest health system with hospitals, rehabilitation centers, physician clinics, mental health facilities, independent living centers and home health agencies throughout much of the state. The corporation is also one of the state’s largest private employers with approximately 9,000 employees. Collectively, the entities within INTEGRIS Health maintain more than 1,500 licensed beds and have medical staffs that number approximately 1,400 physicians. THE CHALLENGE As INTEGRIS Health planned to consolidate close to 50 separate electronic medical record systems spanning its healthcare network into a centralized Epic system, Senior Systems Engineer Jason Hayes and his team faced a major challenge. “Epic requires a Linux back-end environment, so we needed to expand to about 60 Linux servers fairly quickly,” Hayes explains. “Previously, we primarily utilized AIX and Solaris, but to accommodate the growth for the Epic project, we planned to deploy most of the systems on the Red Hat Linux operating system.” Approximately 400 application design, support and admin personnel as well as medical personnel that would consult on the Epic user-interface system would eventually need access to the Linux servers. Given that INTEGRIS Health must operate under HIPAA compliance regulations, the security and policy controls that would manage the Linux servers would play a major role as the organization must always be prepared for potential audits. THE SOLUTION To take on this challenge, Hayes and his colleagues closely examined BoKS® Server Control from FoxT as well as Centrify and BeyondTrust. For the new server control solution that would help manage and protect the Epic servers running on Linux, INTEGRIS Health sought several key capabilities: • Integration with Active Directory for both users and groups. • Discreet privilege escalation management across multiple systems—with the ability to specify commands and options. • Compatibility with the security-enhanced Linux kernel module for supporting access control security policies. SOLUTION SUMMARY CUSTOMER TYPE HEALTHCARE CHALLENGE MANAGING USER ACCOUNTS FOR ELECTRONIC MEDICAL RECORD SYSTEM RUNNING ON LINUX SERVERS WHILE ALSO IDENTIFYING AND MITIGATING RISKS IN ORDER TO COMPLY WITH HIPAA REGULATIONS. SOLUTION BoKS SERVER CONTROL KEY BENEFITS ACCELERATED DEPLOYMENT OF USERS AND USER GROUPS ONTO LINUX SERVERS. REDUCES TIME TO GIVE USER GROUPS NEW PRIVILEGED ACCESS TO EXISTING SERVERS. DECREASES TIME TO ASSIGN USERS AND ADD NEW SYSTEMS TO THE SERVER NETWORK. HELPS IDENTIFY AND MITIGATE SYSTEM VULNERABILITIES. INTEGRIS Health Turns to FoxT to Streamline Linux Server Management and Mitigate System Vulnerabilities CASE STUDY | HEALTHCARE
  • 2. • Compliance with HIPAA regulations. • Controls over local accounts and domain accounts “The product demonstrations provided by each software firm and a review of the capabilities that each solution offered differentiated BoKS Server Control as the only one that met all the requirements,” Hayes reveals. “The solution also streamlines the process for adding local accounts to systems and controls the adding of the access route for the local accounts,” Hayes adds. “This is a critical security feature as it prevents someone from using an account with root access to create a new account with privileges.” Hayes also particularly appreciates the privilege escalation management feature offered by BoKS Server Control. This eliminates the need to manage a sudoers file on every single system. “We were so impressed during the demonstration that we did not need to run any on-site tests,” Hayes says. THE RESULTS After working through the initial accelerated deployment, Hayes and his team have benefited from the day-to-day capabilities that BoKS Server Control provides in managing the Linux server environment. “Privilege escalation management and centralized sudo management are particularly huge benefits,” Hayes emphasizes. On an almost daily basis, Hayes and his team receive requests for a group of users to gain privileged access to one or more systems. Rather than having to manually edit the sudoers file on each system every time there’s a change, they can go into the BoKS Server Control console and add any program group that is needed. The team can also set the duration for how long the group will be active and the specific users for which each system is activated. The granted access is then automatically pushed out to all the pertinent systems, and the users can instantly connect. “Gaining this capability means we no longer have to log into each server and edit the sudoers file, keep track of the changes, and then remember to undo the access after the duration expires,” Hayes adds. “This probably saves us about 30 minutes per system every time we need to make such a change—and usually we need to do this for anywhere from 6-30 systems. All that time adds up.” BoKS Server Control is also a big time saver any time Hayes and his team roll out a new system. “We just add the system, note the correct groups, and all the accounts that are needed for that system are automatically added,” says Hayes. ABOUT FOXT Fox Technologies, Inc. helps companies protect corporate information assets with network security and access management software as well as striving to simplify compliance and streamline administration with an award-winning access management and privileged account control solution. Our access management software centrally enforces granular access entitlements in real time across diverse server environments. To learn more about Fox Technologies, please visit us at: www.foxt.com CONTACT INFO North America 3300 Eagle Run Drive NE, Suite 202 Grand Rapids, MI 49525 +1 877 818 3698 (Toll Free) Sweden FoxT Sweden AB Kungsängsgatan 18A SE-753 22, Uppsala +46 18 16 00 00 (Main) United Kingdom 400 Thames Valley Park Reading , Berkshire RG6 1PT +44 1189 637 681 (Main) www.foxt.com | info@foxt.com INTEGRIS HEALTH TURNS TO FOXT TO STREAMLINE LINUX SERVER MANAGEMENT