Customers: JSC Transneft Product: Complex projects on information security Project date: 2014/01
|
In 2014 Transneft for the purpose of increase in information security is going to create a control system of access to unstructured data. The company calculates that it will allow to perform the operational notification about abnormal activity of users and will provide the additional tool for rapid response to such incidents and conducting investigations.
In the project documentation published in January, 2014 it is explained that information exchange between users of corporate network is performed mainly through the shared folders containing unstructured data.
Access control to these data is exercised according to the traditional scheme when the owner of Inforesource sends the request for providing access rights to IT service. Differentiation of the rights at the same time is made manually, using Microsoft Active Directory. The implemented system should automate this process and allow to conduct multistage monitoring of access rights to data within all company.
Among functions of a system – implementation of classification of unstructured data, control of execution of transactions over data, registration, accumulation and data storage of control and monitoring, providing reports on use of the set access rights and their operational change up to the termination.
A system will perform collecting and data storage about transactions of the user with unstructured data in such systems as file servers of Windows, network storages EMC,the Microsoft SharePoint portals,the Microsoft Exchange servers and also directories of users of Microsoft Active Directory.
In requirements to a system it is specified that it should service not less than 1000 users and provide a possibility of approval of access rights via the web interface.
In the same place it is specified that the subsystem of registration and accounting which is composition will be integrated with a subsystem of monitoring of the events of information security which are available or implemented in network of Transneft.