Customers: Moscow Industrial Bank (Minbank)
Contractors: NVision Group Product: HPE ArcSight ESM (Security Information and Event Management, SIEM)Project date: 2012/01 - 2012/07
|
The Nvision Group company completed creation of command center information security (Security Operation Center, SOC) for corporate network of Moscow Industrial Bank on a software platform of ArcSight.
Solution
The cybersecurity command center constructed based on the solution of ArcSight company provides permanent condition monitoring of security of the applied systems and services. With its help administrators collect data on a status of information security of all elements of a corporate system: network equipment, firewalls, intrusion prevention systems, means of protecting of Internet access, antivirus software, etc. Besides, at emergence of incidents of security the warning system sends to the staff of service cybersecurity of the notification (in the form of the SMS and electronic messages).
Result
The customer had an opportunity to estimate a condition of information security in real time, to react quickly to cybersecurity incidents, to keep their internal accounting and to make the reporting under them according to requirements of the Bank of Russia and regulatory organizations.
Opinion
"Our main task – to provide high quality of customer service, and one of means of its accomplishment is the created command center information security. It allows bank to localize and eliminate quickly cybersecurity incidents, to minimize threats of failures in network functioning and data loss. For us it means decrease in unforeseen costs, and for clients – the greatest possible reliability of all necessary resources", – Alexey Matryoshin, the vice president of Moscow Industrial Bank noted.
"Implementation of SOC allows to concentrate information security management and it is easy to unify processes on neutralization of the arising threats of cybersecurity. Now our client timely receives complete and authentic information on events of cybersecurity of all corporate information system, can perform complex actions for providing Information Security and analysis of incidents. Such systems are necessary for the large companies which work with the broad customer base and need reliable and smooth operation of information systems", – Dmitry Sobolev, the director of the department of information security of NVision Group emphasized.