
Automated Server Hardening and CIS Baseline Enforcement Without Downtime
CalCom Software Solutions, established in 2001 and based in Lod, Israel, with a second office in New York, automates security baseline hardening across server estates. A CIS-certified vendor, it sells to organizations working under strict configuration mandates: financial services, healthcare, and government, with hospitals, credit unions, and banking groups among the described deployments. The problem it addresses is that hardening is well documented but rarely finished, because a misapplied setting breaks production and the project stalls.
The CalCom Hardening Suite applies and maintains baselines on Windows and Linux servers with no scripts and no manual Group Policy edits. Before a change is deployed the system analyzes its impact on that specific machine, so a setting that would break a dependent service is identified in advance rather than discovered during an outage. After deployment it continuously detects configuration drift and corrects it automatically, which keeps a hardened server hardened as software and administrators change around it.
Companion products narrow the same approach to specific stacks: CSS for IIS handles web server hardening, CHS for SQL Server covers database configuration, and the Policy Analysis Center reports policy compliance across the estate. Reporting maps to CIS Benchmarks and NIST standards, and the company states its automation reaches 95 percent CIS compliance. The recurring pitch is zero-downtime hardening, aimed squarely at teams that have deferred baseline work because of the operational risk involved.



