Download PDF
SaaS Provider of Payment Processing Solutions Protects Business from DDoS Attacks with Arbor Edge Defense
Technology Category
- Cybersecurity & Privacy - Network Security
- Infrastructure as a Service (IaaS) - Cloud Computing
Applicable Industries
- Finance & Insurance
- Healthcare & Hospitals
- Software
Applicable Functions
- Business Operation
Use Cases
- Cybersecurity
Services
- Cloud Planning, Design & Implementation Services
- Cybersecurity Services
The Challenge
The biggest challenge facing this organization was visibility into security threats attacking the business. As a payment processor and provider of financial transaction reconciliation, promptness in completing a request is an imperative. Anything impeding the availability of these services to their clients would be financially detrimental to both the clients and the SaaS provider, not to mention the reputation of the provider. Despite investing in security tools such as a web application firewall (WAF), a DDoS attack impeded access to critical business services for almost half a day. Customers were unable to process payments or reconcile financial transactions while the attack was ongoing. Even though no actual breach occurred, the downtime and reputational damage from an attack had a significant financial impact on the business. Even worse, the existing tools that the security team was using had not helped them detect or mitigate the attack. They needed a new solution that could provide both visibility and counter measures.
About The Customer
This global organization is a major provider of software as a service (SaaS) based solutions operating in cloud, for banking, payments and transactional documents, and other areas. Global companies depend on them for application solutions such as digital banking, cloudbased financial messaging, cyber and risk management, along with many other services. Their customers operate in the financial services, healthcare, insurance, and other industries that are highly security conscious. With almost a dozen datacenters around the world and office locations in North America, Europe, Asia, and the Middle East, a relatively small number of IT staff support essential business service offerings for their thousands of customers. For this SaaS provider, the network is the business, and thus any threat to availability of the online services can impact the financial concerns of its customers as well as future revenue.
The Solution
To more effectively protect their business, as well as their customers’ business, this organization turned to Arbor Edge Defense (AED) from NETSCOUT®. This stateless packet processing engine functions as a network perimeter enforcement point, detecting and blocking both inbound cyber threats (e.g. DDoS attacks) and outbound malicious communications. Unlike their WAF which only protected web applications, AED protects all services inbound and outbound, providing best of breed DDoS protection and contextual threat intelligence. Essentially, AED delivers both the first and last line of perimeter defense for an organization. Deploying AED was a complete game changer. Suddenly the IT team was able to both see and mitigate ongoing volumetric and application layer DDoS attacks that they had previously been blind to. They were able to detect both botnet and attack traffic as well as stop new DDoS attacks in their tracks. The ease of configuration and visibility into different types of threats made for quick time to value for this organization. AED provided the IT team a unique view into the traffic on the network, due to the curated library of threat data it has access to through the ATLAS Threat Intelligence Feed. Armed with potentially millions of reputation-based Indicators of Compromise (IoC), AED could stop inbound IoCs in bulk, taking pressure off of stateful security devices such as the previously deployed WAF. AED was also able to block outbound communication from compromised internal devices to known bad sites on the internet – essentially acting as a last line of defense. Each time an outbound IoC was blocked, AED could provide more context related to the IoC, thus helping the security teams better determine risk and provide additional information for proactive use in other security tools.
Operational Impact
Quantitative Benefit
Related Case Studies.
Case Study
Hospital Inventory Management
The hospital supply chain team is responsible for ensuring that the right medical supplies are readily available to clinicians when and where needed, and to do so in the most efficient manner possible. However, many of the systems and processes in use at the cancer center for supply chain management were not best suited to support these goals. Barcoding technology, a commonly used method for inventory management of medical supplies, is labor intensive, time consuming, does not provide real-time visibility into inventory levels and can be prone to error. Consequently, the lack of accurate and real-time visibility into inventory levels across multiple supply rooms in multiple hospital facilities creates additional inefficiency in the system causing over-ordering, hoarding, and wasted supplies. Other sources of waste and cost were also identified as candidates for improvement. Existing systems and processes did not provide adequate security for high-cost inventory within the hospital, which was another driver of cost. A lack of visibility into expiration dates for supplies resulted in supplies being wasted due to past expiry dates. Storage of supplies was also a key consideration given the location of the cancer center’s facilities in a dense urban setting, where space is always at a premium. In order to address the challenges outlined above, the hospital sought a solution that would provide real-time inventory information with high levels of accuracy, reduce the level of manual effort required and enable data driven decision making to ensure that the right supplies were readily available to clinicians in the right location at the right time.
Case Study
Gas Pipeline Monitoring System for Hospitals
This system integrator focuses on providing centralized gas pipeline monitoring systems for hospitals. The service they provide makes it possible for hospitals to reduce both maintenance and labor costs. Since hospitals may not have an existing network suitable for this type of system, GPRS communication provides an easy and ready-to-use solution for remote, distributed monitoring systems System Requirements - GPRS communication - Seamless connection with SCADA software - Simple, front-end control capability - Expandable I/O channels - Combine AI, DI, and DO channels
Case Study
Driving Digital Transformations for Vitro Diagnostic Medical Devices
Diagnostic devices play a vital role in helping to improve healthcare delivery. In fact, an estimated 60 percent of the world’s medical decisions are made with support from in vitrodiagnostics (IVD) solutions, such as those provided by Roche Diagnostics, an industry leader. As the demand for medical diagnostic services grows rapidly in hospitals and clinics across China, so does the market for IVD solutions. In addition, the typically high cost of these diagnostic devices means that comprehensive post-sales services are needed. Wanteed to improve three portions of thr IVD:1. Remotely monitor and manage IVD devices as fixed assets.2. Optimizing device availability with predictive maintenance.3. Recommending the best IVD solution for a customer’s needs.
Case Study
HaemoCloud Global Blood Management System
1) Deliver a connected digital product system to protect and increase the differentiated value of Haemonetics blood and plasma solutions. 2) Improve patient outcomes by increasing the efficiency of blood supply flows. 3) Navigate and satisfy a complex web of global regulatory compliance requirements. 4) Reduce costly and labor-intensive maintenance procedures.
Case Study
Harnessing real-time data to give a holistic picture of patient health
Every day, vast quantities of data are collected about patients as they pass through health service organizations—from operational data such as treatment history and medications to physiological data captured by medical devices. The insights hidden within this treasure trove of data can be used to support more personalized treatments, more accurate diagnosis and more advanced preparative care. But since the information is generated faster than most organizations can consume it, unlocking the power of this big data can be a struggle. This type of predictive approach not only improves patient care—it also helps to reduce costs, because in the healthcare industry, prevention is almost always more cost-effective than treatment. However, collecting, analyzing and presenting these data-streams in a way that clinicians can easily understand can pose a significant technical challenge.