What is FIM

In today's dynamic cybersecurity landscape, IT environments span diverse systems and clouds, making the integrity of configuration files, system binaries, and registry settings essential for security and stability. Any unauthorized or unintended change whether from attackers, malware, or internal errors-can undermine security controls, introduce compliance risks, and disrupt operations.

Qualys FIM is a cloud-based security solution that detects and reports changes in files, directories, and registry settings across IT environments. It helps organizations ensure security, maintain compliance, and streamline auditing by identifying unauthorized or suspicious modifications that could indicate security breaches.

FIM provides the visibility and governance necessary to maintain a secure and compliant IT ecosystem.

Key Features of FIM

Everything you need to detect, alert on, and report unauthorized changes across your environment

Real-time Monitoring

FIM detects unauthorized or suspicious changes to critical system files, helping to reduce the time to respond to potential breaches.

Learn More →

Centralized Management

FIM is a cloud-based solution, offering centralized visibility and management of file change events.

Learn More →

Alerting

FIM automatically alerts you when it detects unauthorized or suspicious changes.

Learn More →

Reporting

FIM generates reports to capture events and incidents occurring in your files.

Learn More →

User Impersonation Detection

FIM can identify and alert if someone is impersonating a privileged user to gain unauthorized access.

Learn More →

File Access Monitoring (FAM)

FIM can capture file access attempts, providing detailed information about who, what, when, and where access attempts occur.

Learn More →

Compliance Support

FIM helps organizations meet compliance requirements like PCI DSS, HIPAA, GDPR, and others.

Learn More →

Agentless Network Monitoring

FIM can monitor network devices for configuration changes, even without requiring agents to be on the devices.

Learn More →

FIM Integration with CAR

You can perform the database monitoring by configuring FIM with the help of Qualys CAR subscription

Learn More →

Your FIM Journey

Click a step below to explore your guided path to complete file integrity monitoring

1
Create Profile
2
Activate Profile
3
Configure Rules and Execute Them
4
View Events
5
Get Reports
6
Monitor Status

How Do I Get Started with FIM

Follow these steps to set up and start using FIM

Prerequisites

Before using FIM, ensure the Cloud Agent application is enabled for your subscription and the required Qualys Cloud Agent is installed and activated for your assets.

Role-based Access Control (RBAC)

Ensure user roles are properly defined, as FIM uses RBAC permissions to control specific script operations.

Tag based User Scoping

Tag-based User Scoping ensures sub-users can access only those assets and related FIM data that match their assigned tags, while untagged assets remain accessible to all sub-users.

FIM Profile Configuration

Create a customized FIM monitoring profile by defining the required rules, assets, and tags based on your monitoring requirements.

Looking for Something Else

Get the most out of your Qualys FIM with these helpful resources

FIM APIs

View More →

FIM Search Tokens

View More →

Events, Incidents and Rules

View More →

FIM Dashboard

View More →

Troubleshoot

Get Help →