下载PDF
Experity's Security Operations Scaling with Rapid7 Managed Services
技术
- 网络安全和隐私 - 应用安全
- 网络安全和隐私 - 入侵检测
适用行业
- 玻璃
- 国家安全与国防
适用功能
- 质量保证
用例
- 入侵检测系统
- 篡改检测
服务
- 网络安全服务
- 测试与认证
挑战
Experity 是一家充满活力的健康信息技术公司,由美国两家最大的紧急护理电子病历 (EMR) 公司合并而成。这次合并导致人员、办公地点、软件和服务的快速扩张,给安全团队带来了独特的挑战。该团队肩负着保护公司免受任何类型损失事件影响的重大使命,因此需要业务连续性和标准化。该团队规模较小,扩张意味着他们需要将规模扩大三倍或四倍才能获得所需的覆盖范围。该公司一直在使用托管检测和响应 (MDR) 平台,但不足以满足新的运营规模。它仅监控网络和服务器活动,而不监控端点活动,这一点至关重要,因为大多数安全问题都是由台式机和笔记本电脑上的用户活动引起的。安全团队需要一个平台来审查来自数量增加的员工和承包商的警报。
关于客户
Experity 是一家充满活力的健康信息技术公司,由美国两家最大的紧急护理电子病历 (EMR) 公司合并而成。随着合并,更多地点的更多员工致力于开发和支持 Experity 的综合紧急护理操作系统。如今,Experity 为全国 5,700 多家按需医疗机构、紧急护理中心、诊断测试中心和初级保健中心提供集成技术和服务解决方案。该公司正在快速发展,致力于实现推动以患者为中心的医疗保健革命的使命。它在医疗保健行业运营,被认为是一家中端市场公司。
解决方案
Experity 在 Rapid7 中找到了解决方案,购买 MDR 用于事件检测和响应,购买 Managed AppSec 以增强应用程序安全性,并购买 InsightVM 用于漏洞扫描。这些工具提供活动监控、动态应用程序安全测试和高级漏洞管理分析,使 Experity 能够自动评估、理解和响应整个 IT 基础设施中的风险。 Rapid7 的 MDR 团队审查警报并处理异常活动,从而使 Experity 的安全团队能够专注于其他任务。 Rapid7 的 InsightAppSec 提供了跨 Web 应用程序的漏洞管理见解,这些应用程序以前由开发团队管理。它还提供托管服务,使 Experity 团队无需解析数百个警报。 Rapid7 的团队还直接与负责修复的 Experity 开发人员进行沟通,消除了潜在的沟通错误。
运营影响
相关案例.
Case Study
Data Capture for Afghanistan Forces
Electronic equipments on the field of Afghanistan provided information on the status of the vehicle and to identify potential threats surrounding it to the British Force. The monitoring and interpretation of this data requires robust and sophisticated digitization for data capture and communication.
Case Study
Discrete Manufacturing Industries (Fiberglass Pipe)
The implementation of ERP software in a Discrete Manufacturing organization needs to be strategic, irrespective of its size and capacity. The client had already implemented an ERP system which fulfilled their requirements but was not efficient enough. Efficiency here meant Synchronized Planning, Updating and Multisite Planning. Planning at client’s place was done outside the ERP system. Lack of proper synchronization to the ERP system paved way to huge delays in the changes getting updated in the system. These delays caused disruption in achieving delivery schedules. Multisite Planning is a solution to an organization which has multiple production units (may or may not be geographically separated) and thus needs planning across these units to synchronize production activities within them. The client also has multiple factories and hence Production Planning control is very essential in their case. Since Multisite planning was not possible with Baan ERP system, this was another bottleneck for the client.
Case Study
Major Aerospace Company Automates Asset Management
The O&M division of an aerospace and global security company was using spreadsheets to manually track more than 3,000 assets assigned to students and staff. Maintaining audit trails for this high volume of equipment became increasingly time-consuming and challenging. The chore involved knowing precisely what equipment was on hand, what had been issued, its location and the name of the custodial owner of each item. Every aspect of this task was carried owner of each item. Every aspect of this task was carried out by individuals with spreadsheets. Manually documenting the full lifecycle of each asset added to the burden. This included tracking maintenance requirements and records, incidents and damages, repairs, calibrations, depreciation, and end-of-life data.
Case Study
Securing a Large Data Center in the EMEA Region: An IoT Case Study
A leading data-center operator in the EMEA region, with multiple facilities spanning over 25,000 square meters, faced significant security challenges. The operator experienced interruptions in their internal IT network due to unsupervised work of third-party technicians. Despite having a high-end building control system that provided 24x7 monitoring and control to all the building’s infrastructure, the data center was vulnerable from a cyber perspective as it was connected to the IT network infrastructure. The operator launched an urgent OT cyber security project that included both IT-OT network segmentation and OT network asset mapping and anomaly detection. The main objectives were to harden the security of the server systems, secure the facility’s power supply and server cooling system, strengthen the segmentation between building and operational systems, create a visual OT network map, and set up a system for presenting supply-chain attacks that may threaten the data center through equipment vendors’ maintenance activities.
Case Study
Enhancing Security Precision with IoT: A Case Study of Guardsman Group
Guardsman Group, a leading security company in the Caribbean, faced a significant challenge in maintaining the security of its digital infrastructure. The company provides security equipment, personnel, and systems for various businesses across the region. However, one of its offices experienced a security incident that affected all communications at that location. The existing security tools were not sufficient to provide the necessary protection, and it took hours to identify the source of the issue. This incident highlighted the need for a dynamic solution that could proactively identify threats. The company's primary concern was any disruption to its business, as it manages a significant portion of Jamaica's money and cannot afford for its operations to go down.
Case Study
Asia Airfreight Terminal Enhances Operational Efficiency with CommScope's RUCKUS Solutions
Asia Airfreight Terminal (AAT), a leading cargo handling company based out of Hong Kong International Airport, was facing challenges with its Wi-Fi network, which was critical for the functioning of its automated Material Handling System (MHS) within the warehouse. Any interference or lost signals could directly impact their operational efficiency. AAT also had separate networks for their office and CCTV cameras, which made the job of their data center challenging. The company was in search of a Wi-Fi network configuration that could streamline their networks and reduce its network management workload. AAT was already running on equipment from a competing vendor, and the new solution needed to prove its worth in scalability and reliability.