Vectra AI Inc. > Case Studies > University healthcare system counts on Vectra to expose the truth about cyberattacks

University healthcare system counts on Vectra to expose the truth about cyberattacks

Vectra AI Inc. Logo
Company Size
1,000+
Region
  • America
Country
  • United States
Product
  • Cognito NDR platform
  • Cognito Detect
  • Cognito Recall
  • Cognito Stream
Tech Stack
  • AI-derived machine learning models
  • Open-source Zeek
Implementation Scale
  • Enterprise-wide Deployment
Impact Metrics
  • Digital Expertise
  • Productivity Improvements
Technology Category
  • Analytics & Modeling - Machine Learning
  • Cybersecurity & Privacy - Network Security
Applicable Industries
  • Healthcare & Hospitals
Applicable Functions
  • Maintenance
Use Cases
  • Cybersecurity
Services
  • System Integration
  • Testing & Certification
About The Customer
The customer is a major university healthcare system based in the United States. As a healthcare provider, they are responsible for the health and well-being of a large number of patients. They have a significant number of employees and a large network infrastructure to support their operations. The healthcare system had in place anti-virus, anti-malware and email filters to protect end users. However, they were facing challenges in understanding threats, threat actors and the methods they employ in the internal threat landscape. They were in need of a proactive approach to manage these threats and ensure the security of their network and data.
The Challenge
The university healthcare system was in need of a proactive approach to understand threats, threat actors and the methods they employ in the internal threat landscape. They had in place anti-virus, anti-malware and email filters to protect end users. However, their log and event manager created a lot of work for the security team. It relied on the vendor to integrate the log and event manager with other security systems, which resulted in a deluge of anomalous alerts that didn’t make sense and were incompatible with security feeds that flowed into it. The university healthcare system needed a network-centric detection and response solution that was endpoint agnostic and which would help bring clarity to internal network traffic.
The Solution
The healthcare system deployed the full trifecta of Vectra solutions, which are currently running on the Cognito NDR platform – Cognito Detect™, Cognito Recall™ and Cognito Stream™. Cognito Detect identifies and stops cyberattackers in cloud, data center, IoT, and enterprise environments. It uses AI-derived machine learning models to deliver real-time attack visibility and put attack details at your fingertips. Cognito Recall performs AI-assisted threat hunting in cloud and data center workloads and user and IoT devices. As a comprehensive source of security-enriched network metadata stored in the Vectra cloud, Cognito Recall also empowers the security team to conduct more conclusive incident investigations. Cognito Stream delivers deep security insights and context needed to build custom tooling as well as feed models to detect, investigate and hunt. Delivered in open-source Zeek, it integrates seamlessly with the customer’s SIEM without the overhead and scale limitations associated with open-source Zeek.
Operational Impact
  • Poignant, actionable alerts that reduce anomalous noise and unintelligible events.
  • AI and machine learning that detects threat behaviors in the network and stops the progression of attacks.
  • A customer-focused solution that allows the Cognito NDR platform to fit and be tailored to specific requirements.
  • The security team has easily identified and fixed network vulnerability and hygiene issues.
  • This led to a company-wide initiative to target and eliminate the use of unsecure legacy protocols.

Case Study missing?

Start adding your own!

Register with your work email and create a new case study profile for your business.

Add New Record

Related Case Studies.

Contact us

Let's talk!
* Required
* Required
* Required
* Invalid email address
By submitting this form, you agree that IoT ONE may contact you with insights and marketing messaging.
No thanks, I don't want to receive any marketing emails from IoT ONE.
Submit

Thank you for your message!
We will contact you soon.