实例探究 > Financial Institution Thwarts Penetration Test with Deception

Financial Institution Thwarts Penetration Test with Deception

公司规模
1,000+
地区
  • America
国家
  • United States
产品
  • ThreatDefend Deception and Response Platform
  • ThreatStrike deceptive credentials
技术栈
  • Deception Technology
  • Endpoint Security
实施规模
  • Enterprise-wide Deployment
影响指标
  • Customer Satisfaction
  • Digital Expertise
  • Productivity Improvements
技术
  • 网络安全和隐私 - 端点安全
  • 网络安全和隐私 - 网络安全
适用行业
  • 金融与保险
适用功能
  • 商业运营
用例
  • 网络安全
  • 入侵检测系统
  • 远程资产管理
服务
  • 系统集成
  • 培训
关于客户
The customer is a hedge fund institution that operates under an 'assumed breach posture,' meaning that their infosec team positions their security infrastructure with the assumption that threats are within the network. They proactively seek out infections and prevent full-on breaches from occurring. The team needed a solution that would provide an early warning system to generate high-fidelity alerts for suspicious network activity. With time being the most critical resource during a cyberattack, the team knew an effective warning system would grant the visibility to react to a threat as soon as possible and derail its success.
挑战
The challenge facing the infosec team was that, like many security professionals, the volume of alerts generated by their current devices was not only overwhelming, but almost guaranteed that something malicious would slip through unnoticed. The impact to the team was that they were spending the majority of their time analyzing alerts rather than remediating threats in their system and thus were forced into being reactive to attacks once they were well underway. They recognized that they needed an accurate and efficient solution to detect attacks from all vectors and the ability to cut through the noise and generate only high-integrity alerts with zero false positives.
解决方案
The team implemented the ThreatDefend Deception and Response Platform throughout their network and installed the ThreatStrike deceptive credentials on their endpoints. The solution was able to provide high-quality alerts so that the team could focus their resources on proactively addressing threats, rather than reactively. They were also able to use the ThreatDefend platform to demonstrate the security of their network and their ability to detect and shut down attacks. The platform successfully detected the Red Team and deceived them into engaging, capturing all their tactics and movements through the entire process. None of the information that the Red Team gained access to was real, and the deceptive credentials effectively diverted the attack.
运营影响
  • By having the ThreatDefend Deception Platform installed in their network, the organization was able to thwart the Red Team and pass the penetration test with flying colors.
  • The results of the penetration test highlight deception as an invisible and unexpected layer of security for cyber criminals looking to exploit organizations.
  • With their investment, the infosec team now not only has visibility into their network that was previously unachievable, but they also can operate with the confidence that they can detect and deceive advanced threats inside of their network before their critical assets are compromised.
  • The ThreatDefend platform empowers the infosec team with the visibility to monitor their network on a continuous basis to see what types of activity are normal.
  • Once installed, they were able to pinpoint misconfigurations in their network and, more importantly, better identify unusual activity that could indicate a threat.
数量效益
  • The organization was able to pass the Red Team penetration test, which they had previously failed multiple times.

Case Study missing?

Start adding your own!

Register with your work email and create a new case study profile for your business.

Add New Record

相关案例.

联系我们

欢迎与我们交流!
* Required
* Required
* Required
* Invalid email address
提交此表单,即表示您同意 IoT ONE 可以与您联系并分享洞察和营销信息。
不,谢谢,我不想收到来自 IoT ONE 的任何营销电子邮件。
提交

感谢您的信息!
我们会很快与你取得联系。