实例探究 > Overcoming Challenges of IT Security in K-12 Environments

Overcoming Challenges of IT Security in K-12 Environments

公司规模
1,000+
地区
  • America
国家
  • United States
产品
  • OSSIM
  • AlienVault USM
技术栈
  • SIEM
  • Threat Intelligence
  • Intrusion Detection
实施规模
  • Enterprise-wide Deployment
影响指标
  • Cost Savings
  • Customer Satisfaction
  • Digital Expertise
  • Productivity Improvements
技术
  • 应用基础设施与中间件 - 数据交换与集成
  • 应用基础设施与中间件 - 数据可视化
  • 网络安全和隐私 - 入侵检测
  • 网络安全和隐私 - 安全合规
适用行业
  • 教育
适用功能
  • 商业运营
用例
  • 入侵检测系统
服务
  • 系统集成
  • 培训
关于客户
Council Rock School District is the 12th largest district in Pennsylvania. It includes 18 buildings, 5 municipalities, and 10 IT employees supporting over 13,000 users, including students and employees. For the security aspect of IT, Council Rock School District relies on a one-man team: Matthew J. Frederickson. Matthew is CISSP certified and has more than 25 years in IT. Being solely responsible for the security of over 13,000 users, Matthew has encountered many challenges and has had to adapt the way he approaches keeping Council Rock School District secure.
挑战
Since most K-12 IT teams are under budget and understaffed, Matthew originally tackled his job with open source tools. Soon he realized that he was using an unmanageable number of single point products for the different tasks he needed to accomplish. That’s when Matthew started browsing the Internet to find a better solution.
解决方案
OSSIM provides essential security capabilities like asset discovery, vulnerability assessment, intrusion detection, behavioral monitoring and SIEM built into one unified platform. Standing on the shoulders of the many proven open source security controls built into the platform, OSSIM is one of the fastest ways to make the first steps towards unified security visibility. AlienVault provides ongoing development for OSSIM so that anyone can have access to sophisticated security technologies; this includes the researchers who need a platform for experimentation, and the unsung heroes who can’t convince their organizations that security is a problem. Matthew used OSSIM for about 2 months and really liked what he saw. However, he realized he needed a fully supported product so he could get answers to his questions quickly rather than waiting for others in the community to help. The transition from OSSIM to USM was straightforward. Matthew worked on it a little each day over about 3-4 days, spending about 4-5 hours in total. He didn’t try to integrate any previous data, just started fresh. Through trial and error he was able to complete the migration without even having to contact support.
运营影响
  • Instead of having to research and write correlation directives for each new security threat that emerges, Matthew now relies on the threat intelligence provided to USM by AlienVault Labs.
  • AlienVault Labs is a team of world-class security experts that analyze, validate and curate global threat data collected by the Open Threat Exchange (OTX)—the world’s largest open source repository of threat data.
  • The AlienVault Labs team has become an extension of Matthew’s security monitoring program. They evaluate and translate threat data into integrated security intelligence that is updated weekly in USM via a coordinated set of advanced correlation rules—meaning Matthew can detect emerging threats without needing the expertise to research and write correlation directives himself.
  • Since migrating to USM, Matthew finds himself logging on at least once a day to look at machines that show alarms and rule out any false positives.
  • He also now shares his experience with OSSIM and USM with the IT staff from other school districts in knowledge sharing workshops.
数量效益
  • Council Rock School District supports over 13,000 users with a one-man security team.
  • Matthew worked on the transition from OSSIM to USM over about 3-4 days, spending about 4-5 hours in total.

Case Study missing?

Start adding your own!

Register with your work email and create a new case study profile for your business.

Add New Record

相关案例.

联系我们

欢迎与我们交流!
* Required
* Required
* Required
* Invalid email address
提交此表单,即表示您同意 IoT ONE 可以与您联系并分享洞察和营销信息。
不,谢谢,我不想收到来自 IoT ONE 的任何营销电子邮件。
提交

感谢您的信息!
我们会很快与你取得联系。