Customers: Baikalwestcom Irkutsk; Telecommunication and communication Contractors: IT Product: Projects of external audit of IT and security (in tch PCI DSS and SUIB)Project date: 2012/09 - 2013/07
|
Content |
The IT company created the system of personal data protection and implemented an end-to-end system of monitoring and information security management in Baikalwestcom company, the pres-service of integrator reported on July 9, 2013.
Background
For ensuring data protection about subscribers and a compliance with regulatory requirements according to 152-FZ "About personal data", the company management initiated the project of creation and the subsequent replication of an information system of personal data protection at more than 40 offices and branches of Baikalwestcom located in Irkutsk and the Irkutsk region. Project implementation the customer entrusted IT company.
Start
Before works specialists of IT booked compliance audit of an information system of Baikalwestcom to requirements of the legislation. Then developed the engineering design and the organizational leading documentation. Preserving of unification of the equipment which is operated in the company was the main criterion by search of technical solution. As telecommunication infrastructure of the telecom operator is constructed on the Cisco platform, as a principal component of a system of personal information protection the solution of C-Terra company is selected.
Job
ZPDN system implementation in most branches passed in the remote mode because of territorial dispersion of offices some of which are located in hard-to-reach spots.
Result
The created system of personal data protection uses different information security tools: gateways VPN, anti-virus software, sensors of the attacks, firewalls and systems of protection against leak of confidential information. It covers network infrastructure and all information systems installed in the companies, including a billing system based on the CBOSS software product.
Trial operation of the ready-made solution continued about 9 months. On the basis of collected data necessary completions are entered into the ZPDN system of Baikalwestcom, then certification - conformity assessment to the existing regulatory base regarding personal data protection is carried out it.
A system ensures safe functioning of 900 users with the information systems containing personal data and also effectively protects more than 2 million records of subscribers of Baikalwestcom.
Information security management within all company is exercised of an end-to-end system of Security Vision.