SlideShare a Scribd company logo
Overcoming compliance burdens
while maximizing 24/7 security
From investment management to custodial holdings, Orbis
Financial is directly responsible for the safety of assets and
securities worth hundreds of millions of dollars since 2005. They
utilize and employ innovative technology and “zero-conflict”
practices for a variety of India-based and foreign concerns
wishing to grow and safeguard their investments in India. Orbis is
a registered member of the Securities and Exchange Board of
India (SEBI). Though their primary headquarters is located in
Gurgaon, Haryana India, they also maintain a significant
European presence in Switzerland. Orbis Financial earned
multiple ISO certifications that cover business practices and
technological standards. These include ISO 9001:2008, ISO
27001:2005, ISO/IEC 27001:2013 and ISO 22301:2012 . They are
one of the few custodial financial management organizations
recognized with these certifications.
The Challenge
• The continuous pressure on financial organizations like Orbis Financial to effectively secure its
network extends beyond preventing intrusion from outside attacks. There are as many internal
threats, exponential ATPs, identity thefts, frauds and other complex means to compromise both
corporate and client information and financial assets. To that end, organizations like Orbis are
subject to rigorous oversight by regulatory agencies to ensure compliance with best security
practices. In fact, Orbis is subject to more than 36 audits per year. Each of these audits are
comprehensive which strains the bandwidth of the personnel responsible for maintaining the
requirements. A considerable part of the issue was the disparate silos of security information
required to be analyzed in advance of these audits.
• According to Mani Kant Singh, Orbis’ Head – IT & CISO, “We had to maintain so many logs, which
get generated from many devices; store them, back them up and restore them for the audit
requirement. It was not only cumbersome, but deflected focus away from our core business.”
• Additionally, in accordance with its fiduciary commitment to clients and shareholders, Orbis was
committed to providing elite security and risk mitigation services. Towards that goal, Orbis also
needed to minimize the CapEx impact and expenses of a lingering phased deployment that
traditional security solutions often incur.
The Solution
• After analyzing several alternatives, Orbis Financial chose Leo
TechnoSoft’s Intelligence Driven Security Operation Center SIEM i.e
CloudAccess to serve as the cornerstone of its security
management initiative. Apart from the enterprise-comparative
feature set, Orbis was intrigued by Leo TechnoSoft’s unique hybrid
SOC approach that reduced their capital expenditures towards the
project to virtually nil. The data remains safely behind existing
secure firewalls and on-premise, and local sensors collect all the
logs and send them encrypted (via VPN) to the powerful, cloud-
based correlation engine. Leo TechnoSoft’s Intelligence Driven SOC
SIEM was able to analyze all the logs in real time and provide the
necessary visibility to find usage anomalies and other potential
alerts requiring actionable intelligence.
• Leo TechnoSoft’s Intelligence Driven SOC SIEM provided Orbis enhanced
capabilities to better manage event, application, vulnerability and
machine data in order to identify and prevent compliance policy violations
found on the network or host based systems. This meant a new, improved
visibility and capability to deal with various threats, frauds and apply
behavior analysis; all without adding any hardware or capital expenses.
This also created a new policy flexibility which gave analysts complete
visibility into the granular reporting necessary to satisfy all the compliance
audits. In fact, since Leo TechnoSoft’s Intelligence Driven SOC has been in
service, Orbis has not failed a single audit, nor incurred any compliance
fines.
• Orbis used Leo Technosoft’s Intelligence Driven SOC SIEM centralized
dashboard to “make the right decisions at the appropriate time” and
augmented its staff with additional security-as-a-service analysts
(maintained as a value add service from Leo TechnoSoft) to keep up with
the 24/7/365 monitoring demand.
The Result
• Orbis gives Leo Technosoft’s Intelligence
Driven SOC SIEM high marks across the board.
Not only has Orbis been able to continuously
meet the requirements of the multiple
compliance agencies, but they have also noted
definitive improvements in 5 mission critical
areas:
Operational:
• Increased visibility has obviously produced comprehensive ability to
detect advanced threats, apply 24/7/365 monitoring across the
enterprise (including privileged accounts), and provide actionable
intelligence, vulnerability scans and risk routing, but more
specifically:
• Achieved faster log data analysis and forensic investigation when
incidents arose
• Achieved unprecedented visibility into everything happening on the
network, including insider activity and external cyber threats.
• Accelerated response to security threats from days to minutes
• Significantly reduced the number of false positives and redundant
events.
Financial:
• In terms of the “bottom line,” Orbis was not
required to spend any capital expenditure budget
and was able to scale to the existing deployment
in less than 90 days.
• Orbis reduced associated security costs by 35%.
• Orbis saved an additional $12,000 USD because
no hardware or licenses were required.
• OPEX model allowed for strategic modular
deployment which promoted budget-friendly
right-sizing: paying only for the IT services it
needs, when it needs it.
Productivity:
• In all, IT regained more than 30% of its time back
which has been reassigned to core business
concerns and revenue generating activities
• Gained ability to handle massive amount of
security events with a small team
• Expanded virtual headcount through security-as-
a-service analyst augmentation at no additional
cost.
• Reduced auditing and compliance costs through
continuous monitoring
• Reduced the time required to ensure compliance
Customer Service:
• Leo TechnoSoft’s Intelligence Driven SOC facilitated maximum
uptime of the enterprise including secure access to key
applications. This translated into a 50% improvement in customer
service based on reduced service calls and end-user survey
responses.
• Improved market share:
• Since the deployment of Leo TechnoSoft’s Intelligence Driven SOC
SIEM, Orbis’ market share as a financial custodian increased by
15%. This is directly attributed to the smoother operation of
applications services, the nimbleness to move quicker on customer
issues (because IT is not otherwise occupied), and word of mouth
that Orbis is a secure and trustworthysteward of personal and
financial information.
•
ABOUT LEO TECHNOSOFT’S
Intelligence Driven SOC:
• Leo TechnoSoft’s Intelligence Driven SOC is an integrated
Stack of Security Solutions – Security Incident and Event
Management (SIEM), Identity and Access Management
(IDM), Privilege Identity Management (PIM) and Cloud
Access Security Broker (CASB), which is built on Security Big
Data. Leo TechnoSoft’s Intelligence Driven SOC is the only
SOC, which can correlate Device Events, Identity, Access
and Context together to predict advance risks and threats
across all IT layers. Leo TechnoSoft’s Intelligence Driven
SOC has inbuilt capability of Security Analytics, which
collects events from all integrated security solutions to
conduct analytics on User Behaviors, activities, security
events & threats and Identities.

More Related Content

PDF
Ooredoo%20Security%20Managed%20Services
PPT
Meletis BelsisManaging and enforcing information security
PPTX
BalaBit 2015: Control Your IT Staff
PPTX
Company Profile
PPTX
SIEM Vendor Neutrality
PDF
Governance of security operation centers
PPTX
Manoj purandare - Stratergy towards an Effective Security Operations Centre -...
Ooredoo%20Security%20Managed%20Services
Meletis BelsisManaging and enforcing information security
BalaBit 2015: Control Your IT Staff
Company Profile
SIEM Vendor Neutrality
Governance of security operation centers
Manoj purandare - Stratergy towards an Effective Security Operations Centre -...

What's hot (19)

PDF
Building an Intelligence-Driven Security Operations Center
 
PPTX
PCI DSS Business as Usual
PPTX
The Secure laptop - intro BXL
PDF
Accelerating OT - A Case Study
PPTX
Design and Evaluation of [vSoC]: Virtualised Security Operations Centre
PDF
Deliver solutions cv_vebtech
PPTX
PCI DSS Business as Usual (BAU)
PPTX
Vendor Management for PCI DSS, HIPAA, and FFIEC
PPTX
Integrated Compliance – Collect Evidence Once, Certify to Many
PDF
Presentazione CHECKPOINT Evento CloudGarage 5-11 giugno 2013
PPT
Intellinx.z watch
PDF
Why Check Point - Top 4
PDF
SIEM brochure A4 8pp FINAL WEB
PPTX
Ekran 4.1
PPTX
Performing PCI DSS Assessments Using Zero Trust Principles
PPTX
PCI DSS Compliance in the Cloud
PDF
Why check point win top 4 facts
PPTX
Continuous Compliance Monitoring
PPTX
The RIPE Experience
Building an Intelligence-Driven Security Operations Center
 
PCI DSS Business as Usual
The Secure laptop - intro BXL
Accelerating OT - A Case Study
Design and Evaluation of [vSoC]: Virtualised Security Operations Centre
Deliver solutions cv_vebtech
PCI DSS Business as Usual (BAU)
Vendor Management for PCI DSS, HIPAA, and FFIEC
Integrated Compliance – Collect Evidence Once, Certify to Many
Presentazione CHECKPOINT Evento CloudGarage 5-11 giugno 2013
Intellinx.z watch
Why Check Point - Top 4
SIEM brochure A4 8pp FINAL WEB
Ekran 4.1
Performing PCI DSS Assessments Using Zero Trust Principles
PCI DSS Compliance in the Cloud
Why check point win top 4 facts
Continuous Compliance Monitoring
The RIPE Experience
Ad

Similar to Security information-and-event-management.ppt (20)

PPTX
Leo TechnoSoft’s Intelligence Driven SOC is integrated Context-aware Security...
PDF
Tampa BSides - The No BS SOC (slides from April 6, 2024 talk)
PDF
LTS Secure intelligence driven security operation center
PDF
What is a Security Operation Center(SOC)?
PPT
SOC presentation- Building a Security Operations Center
PPTX
Optimizing Security Operations: 5 Keys to Success
PPTX
SAL-DR-01-ELC 10 Understanding the SOC Audience.pptx
PPTX
Cybersecurity Operations: Examining the State of the SOC
PPTX
Securaa - November 2023.pptx
PDF
Advanced IT and Cyber Security for Your Business
PDF
Next-Gen Security Operations Centre Software: Real-Time Threat Detection & Re...
PPTX
How Threat Intelligence Fuels a Modern SOC
PDF
The future of cyber security
PDF
Security (Ignorance) Isn't Bliss: 5 Ways to Advance Security Decisions with T...
PDF
Rothke secure360 building a security operations center (soc)
PDF
security operations center by Manage Engigne
PPT
Ca world 2007 SOC integration
PPTX
Как автоматизировать, то что находит аналитик SOC
PDF
Building Security Operation Center
PPTX
SOC Analysis
Leo TechnoSoft’s Intelligence Driven SOC is integrated Context-aware Security...
Tampa BSides - The No BS SOC (slides from April 6, 2024 talk)
LTS Secure intelligence driven security operation center
What is a Security Operation Center(SOC)?
SOC presentation- Building a Security Operations Center
Optimizing Security Operations: 5 Keys to Success
SAL-DR-01-ELC 10 Understanding the SOC Audience.pptx
Cybersecurity Operations: Examining the State of the SOC
Securaa - November 2023.pptx
Advanced IT and Cyber Security for Your Business
Next-Gen Security Operations Centre Software: Real-Time Threat Detection & Re...
How Threat Intelligence Fuels a Modern SOC
The future of cyber security
Security (Ignorance) Isn't Bliss: 5 Ways to Advance Security Decisions with T...
Rothke secure360 building a security operations center (soc)
security operations center by Manage Engigne
Ca world 2007 SOC integration
Как автоматизировать, то что находит аналитик SOC
Building Security Operation Center
SOC Analysis
Ad

Recently uploaded (20)

PDF
Practical Manual AGRO-233 Principles and Practices of Natural Farming
PDF
Weekly quiz Compilation Jan -July 25.pdf
PPTX
Microbial diseases, their pathogenesis and prophylaxis
PDF
What if we spent less time fighting change, and more time building what’s rig...
PDF
Trump Administration's workforce development strategy
PDF
Anesthesia in Laparoscopic Surgery in India
PDF
ChatGPT for Dummies - Pam Baker Ccesa007.pdf
PDF
Yogi Goddess Pres Conference Studio Updates
PDF
GENETICS IN BIOLOGY IN SECONDARY LEVEL FORM 3
PPTX
Radiologic_Anatomy_of_the_Brachial_plexus [final].pptx
PDF
Chinmaya Tiranga quiz Grand Finale.pdf
PPTX
school management -TNTEU- B.Ed., Semester II Unit 1.pptx
PPTX
Tissue processing ( HISTOPATHOLOGICAL TECHNIQUE
PPTX
Final Presentation General Medicine 03-08-2024.pptx
PDF
A GUIDE TO GENETICS FOR UNDERGRADUATE MEDICAL STUDENTS
PDF
Updated Idioms and Phrasal Verbs in English subject
PPTX
Lesson notes of climatology university.
PPTX
UNIT III MENTAL HEALTH NURSING ASSESSMENT
PDF
2.FourierTransform-ShortQuestionswithAnswers.pdf
PDF
Supply Chain Operations Speaking Notes -ICLT Program
Practical Manual AGRO-233 Principles and Practices of Natural Farming
Weekly quiz Compilation Jan -July 25.pdf
Microbial diseases, their pathogenesis and prophylaxis
What if we spent less time fighting change, and more time building what’s rig...
Trump Administration's workforce development strategy
Anesthesia in Laparoscopic Surgery in India
ChatGPT for Dummies - Pam Baker Ccesa007.pdf
Yogi Goddess Pres Conference Studio Updates
GENETICS IN BIOLOGY IN SECONDARY LEVEL FORM 3
Radiologic_Anatomy_of_the_Brachial_plexus [final].pptx
Chinmaya Tiranga quiz Grand Finale.pdf
school management -TNTEU- B.Ed., Semester II Unit 1.pptx
Tissue processing ( HISTOPATHOLOGICAL TECHNIQUE
Final Presentation General Medicine 03-08-2024.pptx
A GUIDE TO GENETICS FOR UNDERGRADUATE MEDICAL STUDENTS
Updated Idioms and Phrasal Verbs in English subject
Lesson notes of climatology university.
UNIT III MENTAL HEALTH NURSING ASSESSMENT
2.FourierTransform-ShortQuestionswithAnswers.pdf
Supply Chain Operations Speaking Notes -ICLT Program

Security information-and-event-management.ppt

  • 1. Overcoming compliance burdens while maximizing 24/7 security From investment management to custodial holdings, Orbis Financial is directly responsible for the safety of assets and securities worth hundreds of millions of dollars since 2005. They utilize and employ innovative technology and “zero-conflict” practices for a variety of India-based and foreign concerns wishing to grow and safeguard their investments in India. Orbis is a registered member of the Securities and Exchange Board of India (SEBI). Though their primary headquarters is located in Gurgaon, Haryana India, they also maintain a significant European presence in Switzerland. Orbis Financial earned multiple ISO certifications that cover business practices and technological standards. These include ISO 9001:2008, ISO 27001:2005, ISO/IEC 27001:2013 and ISO 22301:2012 . They are one of the few custodial financial management organizations recognized with these certifications.
  • 2. The Challenge • The continuous pressure on financial organizations like Orbis Financial to effectively secure its network extends beyond preventing intrusion from outside attacks. There are as many internal threats, exponential ATPs, identity thefts, frauds and other complex means to compromise both corporate and client information and financial assets. To that end, organizations like Orbis are subject to rigorous oversight by regulatory agencies to ensure compliance with best security practices. In fact, Orbis is subject to more than 36 audits per year. Each of these audits are comprehensive which strains the bandwidth of the personnel responsible for maintaining the requirements. A considerable part of the issue was the disparate silos of security information required to be analyzed in advance of these audits. • According to Mani Kant Singh, Orbis’ Head – IT & CISO, “We had to maintain so many logs, which get generated from many devices; store them, back them up and restore them for the audit requirement. It was not only cumbersome, but deflected focus away from our core business.” • Additionally, in accordance with its fiduciary commitment to clients and shareholders, Orbis was committed to providing elite security and risk mitigation services. Towards that goal, Orbis also needed to minimize the CapEx impact and expenses of a lingering phased deployment that traditional security solutions often incur.
  • 3. The Solution • After analyzing several alternatives, Orbis Financial chose Leo TechnoSoft’s Intelligence Driven Security Operation Center SIEM i.e CloudAccess to serve as the cornerstone of its security management initiative. Apart from the enterprise-comparative feature set, Orbis was intrigued by Leo TechnoSoft’s unique hybrid SOC approach that reduced their capital expenditures towards the project to virtually nil. The data remains safely behind existing secure firewalls and on-premise, and local sensors collect all the logs and send them encrypted (via VPN) to the powerful, cloud- based correlation engine. Leo TechnoSoft’s Intelligence Driven SOC SIEM was able to analyze all the logs in real time and provide the necessary visibility to find usage anomalies and other potential alerts requiring actionable intelligence.
  • 4. • Leo TechnoSoft’s Intelligence Driven SOC SIEM provided Orbis enhanced capabilities to better manage event, application, vulnerability and machine data in order to identify and prevent compliance policy violations found on the network or host based systems. This meant a new, improved visibility and capability to deal with various threats, frauds and apply behavior analysis; all without adding any hardware or capital expenses. This also created a new policy flexibility which gave analysts complete visibility into the granular reporting necessary to satisfy all the compliance audits. In fact, since Leo TechnoSoft’s Intelligence Driven SOC has been in service, Orbis has not failed a single audit, nor incurred any compliance fines. • Orbis used Leo Technosoft’s Intelligence Driven SOC SIEM centralized dashboard to “make the right decisions at the appropriate time” and augmented its staff with additional security-as-a-service analysts (maintained as a value add service from Leo TechnoSoft) to keep up with the 24/7/365 monitoring demand.
  • 5. The Result • Orbis gives Leo Technosoft’s Intelligence Driven SOC SIEM high marks across the board. Not only has Orbis been able to continuously meet the requirements of the multiple compliance agencies, but they have also noted definitive improvements in 5 mission critical areas:
  • 6. Operational: • Increased visibility has obviously produced comprehensive ability to detect advanced threats, apply 24/7/365 monitoring across the enterprise (including privileged accounts), and provide actionable intelligence, vulnerability scans and risk routing, but more specifically: • Achieved faster log data analysis and forensic investigation when incidents arose • Achieved unprecedented visibility into everything happening on the network, including insider activity and external cyber threats. • Accelerated response to security threats from days to minutes • Significantly reduced the number of false positives and redundant events.
  • 7. Financial: • In terms of the “bottom line,” Orbis was not required to spend any capital expenditure budget and was able to scale to the existing deployment in less than 90 days. • Orbis reduced associated security costs by 35%. • Orbis saved an additional $12,000 USD because no hardware or licenses were required. • OPEX model allowed for strategic modular deployment which promoted budget-friendly right-sizing: paying only for the IT services it needs, when it needs it.
  • 8. Productivity: • In all, IT regained more than 30% of its time back which has been reassigned to core business concerns and revenue generating activities • Gained ability to handle massive amount of security events with a small team • Expanded virtual headcount through security-as- a-service analyst augmentation at no additional cost. • Reduced auditing and compliance costs through continuous monitoring • Reduced the time required to ensure compliance
  • 9. Customer Service: • Leo TechnoSoft’s Intelligence Driven SOC facilitated maximum uptime of the enterprise including secure access to key applications. This translated into a 50% improvement in customer service based on reduced service calls and end-user survey responses. • Improved market share: • Since the deployment of Leo TechnoSoft’s Intelligence Driven SOC SIEM, Orbis’ market share as a financial custodian increased by 15%. This is directly attributed to the smoother operation of applications services, the nimbleness to move quicker on customer issues (because IT is not otherwise occupied), and word of mouth that Orbis is a secure and trustworthysteward of personal and financial information. •
  • 10. ABOUT LEO TECHNOSOFT’S Intelligence Driven SOC: • Leo TechnoSoft’s Intelligence Driven SOC is an integrated Stack of Security Solutions – Security Incident and Event Management (SIEM), Identity and Access Management (IDM), Privilege Identity Management (PIM) and Cloud Access Security Broker (CASB), which is built on Security Big Data. Leo TechnoSoft’s Intelligence Driven SOC is the only SOC, which can correlate Device Events, Identity, Access and Context together to predict advance risks and threats across all IT layers. Leo TechnoSoft’s Intelligence Driven SOC has inbuilt capability of Security Analytics, which collects events from all integrated security solutions to conduct analytics on User Behaviors, activities, security events & threats and Identities.