Download PDF
Vectra AI Inc. > Case Studies > Global financial services firm banks on NDR to stop cyberattacks
Vectra AI Inc. Logo

Global financial services firm banks on NDR to stop cyberattacks

Technology Category
  • Analytics & Modeling - Machine Learning
  • Cybersecurity & Privacy - Network Security
Applicable Industries
  • Finance & Insurance
Applicable Functions
  • Business Operation
Use Cases
  • Cybersecurity
  • Fraud Detection
Services
  • Cloud Planning, Design & Implementation Services
  • Cybersecurity Services
  • Data Science Services
The Challenge
The global financial services company was in constant reactive mode due to their security operations center (SOC) being overwhelmed with homegrown solutions that required a lot of software patches. The SOC team was constantly putting out fires, rushing to investigate whenever they saw smoke. They were looking for a network detection and response (NDR) solution that would enable them to proactively detect and respond to hidden threats inside their network. They evaluated potential NDR solutions, including Darktrace and Vectra, hoping to find the right solution that would enable them to proactively detect and respond to hidden threats inside the network.
About The Customer
The customer is a global financial services company with over $118 billion in assets. The company has a rich history in banking and asset management that dates back 150 years. The company's security operations center (SOC) was in constant reactive mode, working off of homegrown solutions that required a lot of software patches. The company was looking for a network detection and response (NDR) solution that would enable them to proactively detect and respond to hidden threats inside their network.
The Solution
The financial services company chose Vectra’s Cognito Detect for Office 365, Cognito Detect, and Cognito Recall, all running on the Cognito platform. Cognito for Office 365 ingests activity logs from multiple services like Office 365, Azure Active Directory, SharePoint, OneDrive, and Exchange. Vectra applies AI-derived machine learning algorithms to proactively detect and respond to attack behaviors in these services to avert damage and theft. Detections are correlated to accounts and prioritized based on risk, giving security professionals a complete attack narrative to quickly stop and mitigate threats. The company also deployed AI-driven Cognito Recall, a cloud-hosted investigative workbench that uses security-enriched metadata to dramatically improve threat hunting and incident investigations.
Operational Impact
  • The company gained more value from Vectra in a week than from configuring their SIEM for an entire year.
  • The SOC team no longer has to sift through DHCP logs or identify IP address changes during an investigation.
  • Cognito Detect provides the team with every critical alert worth investigating and how to go about resolving it.

Related Case Studies.

Contact us

Let's talk!

* Required
* Required
* Required
* Invalid email address
By submitting this form, you agree that IoT ONE may contact you with insights and marketing messaging.
No thanks, I don't want to receive any marketing emails from IoT ONE.
Submit

Thank you for your message!
We will contact you soon.