下载PDF
实例探究 > Financial Services Innovator Deploys Robotic Decision Automation for 24x7 Security Operations

Financial Services Innovator Deploys Robotic Decision Automation for 24x7 Security Operations

技术
  • 分析与建模 - 预测分析
  • 网络安全和隐私 - 网络安全
  • 网络安全和隐私 - 安全合规
适用功能
  • 商业运营
  • 质量保证
用例
  • 入侵检测系统
  • 监管合规监控
服务
  • 软件设计与工程服务
  • 系统集成
挑战
Smaller or mid-sized financial services companies face the same security challenges as large banks and major investment firms. No matter its size, any company that processes or stores consumer financial data needs to ensure that information is well protected. This is especially important for organizations that process large volumes of high-value transactions. Our customer, the mortgage and title division of a Fortune 500 home building firm, needed to protect the data of its thousands of customers with a security team of only four full-time employees. To achieve this goal, the team deployed the Respond Analyst side-by-side with their traditional SIEM solution. Comparing the results over the course of a year in which both solutions ingested the same data, they are highly confident that the intelligence and reliability of Robotic Decision Automation has made it possible for them to build a more efficient and cost-effective security program with no loss of detection accuracy.
关于客户
The customer is the mortgage and title division of a Fortune 500 home building firm. This division processes high-value transactions and interacts directly with consumers, making it an attractive target for cyber threats. Despite its small size, the company handles significant volumes of consumer financial data, necessitating robust security measures. The security team consists of only four full-time employees, which presents a challenge in maintaining enterprise-grade information security. The company had previously deployed a traditional Security Information and Event Management (SIEM) platform to meet regulatory compliance requirements and aggregate log data from security sensors across their environment. However, they needed to enhance their security posture and increase coverage and visibility within their environment.
解决方案
The organization decided to deploy the Respond Analyst to increase coverage and visibility within its environment. The team aimed to enhance their security posture by introducing east-west traffic monitoring to detect lateral movement across the network, which client-to-server monitoring might have missed. They knew that installing additional detection devices would increase the number of alerts, but with the Respond Analyst, they could handle the expansion cost-effectively. The benefits seen since deploying the Respond Analyst include time savings, cost savings, and continuous improvement of their security program. The security team spends less time tuning the SIEM and can exclude more alerts, knowing that the Respond Analyst will catch anything the SIEM misses. The Respond Analyst essentially added an additional analyst to the team, reviewing the full set of raw log data and not being limited by SIEM rules. This allows human security team members to focus on higher-value tasks, such as threat hunting and investigating potential vulnerabilities. The company plans to continue working with Respond Software to develop additional capabilities within the Respond Analyst and improve the maturity of their security program.
运营影响
  • The security team is spending less time tuning the SIEM, allowing them to focus on higher-value tasks.
  • The Respond Analyst has effectively added an additional analyst to the team, enhancing their capacity.
  • The team is now more proactive in threat hunting and investigating potential vulnerabilities.
数量效益
  • 160 incidents escalated out of 272M events monitored with 100% accuracy.
  • 20% increase in security team capability.
  • 24/7 extended coverage.

相关案例.

联系我们

欢迎与我们交流!

* Required
* Required
* Required
* Invalid email address
提交此表单,即表示您同意 IoT ONE 可以与您联系并分享洞察和营销信息。
不,谢谢,我不想收到来自 IoT ONE 的任何营销电子邮件。
提交

Thank you for your message!
We will contact you soon.