实例探究 > Financial Services Innovator Deploys Robotic Decision Automation for 24x7 Security Operations

Financial Services Innovator Deploys Robotic Decision Automation for 24x7 Security Operations

公司规模
Large Corporate
地区
  • America
国家
  • United States
产品
  • Respond Analyst
  • Snort NIDS
  • SIEM from major vendor
技术栈
  • Robotic Decision Automation
  • Security Information and Event Management (SIEM)
  • Network Intrusion Detection System (NIDS)
实施规模
  • Enterprise-wide Deployment
影响指标
  • Cost Savings
  • Productivity Improvements
  • Customer Satisfaction
技术
  • 分析与建模 - 预测分析
  • 网络安全和隐私 - 安全合规
  • 网络安全和隐私 - 网络安全
适用功能
  • 商业运营
  • 质量保证
用例
  • 入侵检测系统
  • 监管合规监控
服务
  • 系统集成
  • 软件设计与工程服务
关于客户
The customer is the mortgage and title division of a Fortune 500 home building firm. This division processes high-value transactions and interacts directly with consumers, making it an attractive target for cyber threats. Despite its small size, the company handles significant volumes of consumer financial data, necessitating robust security measures. The security team consists of only four full-time employees, which presents a challenge in maintaining enterprise-grade information security. The company had previously deployed a traditional Security Information and Event Management (SIEM) platform to meet regulatory compliance requirements and aggregate log data from security sensors across their environment. However, they needed to enhance their security posture and increase coverage and visibility within their environment.
挑战
Smaller or mid-sized financial services companies face the same security challenges as large banks and major investment firms. No matter its size, any company that processes or stores consumer financial data needs to ensure that information is well protected. This is especially important for organizations that process large volumes of high-value transactions. Our customer, the mortgage and title division of a Fortune 500 home building firm, needed to protect the data of its thousands of customers with a security team of only four full-time employees. To achieve this goal, the team deployed the Respond Analyst side-by-side with their traditional SIEM solution. Comparing the results over the course of a year in which both solutions ingested the same data, they are highly confident that the intelligence and reliability of Robotic Decision Automation has made it possible for them to build a more efficient and cost-effective security program with no loss of detection accuracy.
解决方案
The organization decided to deploy the Respond Analyst to increase coverage and visibility within its environment. The team aimed to enhance their security posture by introducing east-west traffic monitoring to detect lateral movement across the network, which client-to-server monitoring might have missed. They knew that installing additional detection devices would increase the number of alerts, but with the Respond Analyst, they could handle the expansion cost-effectively. The benefits seen since deploying the Respond Analyst include time savings, cost savings, and continuous improvement of their security program. The security team spends less time tuning the SIEM and can exclude more alerts, knowing that the Respond Analyst will catch anything the SIEM misses. The Respond Analyst essentially added an additional analyst to the team, reviewing the full set of raw log data and not being limited by SIEM rules. This allows human security team members to focus on higher-value tasks, such as threat hunting and investigating potential vulnerabilities. The company plans to continue working with Respond Software to develop additional capabilities within the Respond Analyst and improve the maturity of their security program.
运营影响
  • The security team is spending less time tuning the SIEM, allowing them to focus on higher-value tasks.
  • The Respond Analyst has effectively added an additional analyst to the team, enhancing their capacity.
  • The team is now more proactive in threat hunting and investigating potential vulnerabilities.
  • The company has seen continuous improvement in their security program, leading to better defenses.
  • The collaboration with Respond Software is expected to further develop the capabilities of the Respond Analyst.
数量效益
  • 160 incidents escalated out of 272M events monitored with 100% accuracy.
  • 20% increase in security team capability.
  • 24/7 extended coverage.
  • Hundreds of hours saved tuning SIEM.
  • 95% alert noise reduction.

Case Study missing?

Start adding your own!

Register with your work email and create a new case study profile for your business.

Add New Record

相关案例.

联系我们

欢迎与我们交流!
* Required
* Required
* Required
* Invalid email address
提交此表单,即表示您同意 IoT ONE 可以与您联系并分享洞察和营销信息。
不,谢谢,我不想收到来自 IoT ONE 的任何营销电子邮件。
提交

感谢您的信息!
我们会很快与你取得联系。