Minggu, 28 Juni 2020

How modern SIEMs deliver value faster

How Modern SIEMs are designed to get you deployed in days
Neil Campbell, VP APAC for Rapid7, recently spoke with SAI Global's CISO; Peter Macarthur-King about managing security and risk across a globally dispersed organisation.

For a more detailed overview of the implementation, visit SAI Global Case Study

Neil Campbell: For those that don't know, briefly explain what SAI Global does and the security challenges you face.

Peter Macarthur-King: We handle and store highly sensitive and regulated data for clients. It's the kind of data that could be at risk of compromise by both financially motivated cyber-criminals, criminals seeking sensitive data about individuals, and potentially even nation state actors hunting for strategically important information on specific organisations. We have to keep such threats at bay, while continually enhancing the global organisation's IT resilience. What's more, we have the added complexity of ongoing cloud migration efforts, business-critical in-house applications to support employees spread across the globe.

Neil: What led you to consider Rapid7?

Peter: Our previous vulnerability management solution had become increasingly difficult for a small team to operate and to maintain coverage globally. So, upon the advice of a colleague, we looked at Rapid7 InsightIDR and InsightVM, running a proof-of-concept project across 300 servers globally. This proved to be very successful and as a result, we decided to scale up and deploy the agent to every PC and server in the organisation. Within a month, we'd gone from zero to the best part of 4,000 windows and linux assets. The process was quick, smooth and without fault.

Neil: What immediate improvements did you notice when using Rapid7 InsightVM?

Peter: The first thing we discovered with InsightVM was that we had broader visibility into our environment and the way the system identified and brought into clear focus risk was more effective than simply counting common vulnerabilities and exposures.

Neil: You have a globally dispersed workforce; and the recent pandemic outbreak would have forced pretty much all your staff to work from home. How do you manage this risk?

Peter: InsightIDR really helps reduce risk. We've been able to analyse the behaviour of users connecting via VPN and directly, providing transparency into Office 365 connections. The InsightIDR solution goes beyond traditional SIEMs to aggregate and analyse data sources across logs, users, endpoints, and networks, notifying us at the first sign of a change of behaviour which may indicate an attack.

Neil: You talk about the ability to democratise security across the organisation. What exactly do you mean by that?

Peter: Because of the insights we get through Rapid7, particularly things like the Top 25 Remediations Report, I have been able to distribute accountability and ownership for security across the entire business rather than limiting it to just my team. To do this we generate focused reports which provide relevant information directly to all our divisions, this means they now take greater responsibility to resolve challenges which deliver amazing benefits to us. The InfoSec team is only small, which means by divesting responsibility we can now focus on providing greater strategic value to the business.

 
 
 
©Rapid7
 

To manage preferences or unsubscribe, click here.

Senin, 22 Juni 2020

How to get more value out of your SIEM

Hi Syuam,

Yesterday's SIEMs were not built for today's hybrid, remote, and cloud environments. Setting up a traditional SIEM in your current tech stack can feel like navigating an endless maze of hardware, data sources, workarounds, and different interfaces. This complexity inherently contradicts what the actual goal of a SIEM should be: a focus on finding and eliminating threats.

We understand how important it is to have technology that you can actually deploy, that your team can actually use, and that will drive tangible ROI for your company and security program—especially when it comes to detecting and responding to threats.

In this guide we'll cover:

  • Common challenges with traditional SIEMs
  • The benefits of fast deployment and automated data configuration
  • Why cloud is no longer the future, it's right now

Download the guide today, experience faster deployment and value tomorrow.

Best,
Meg

MEAGHAN DONLON

Senior Product Marketing Manager

Rapid7 
RAPID7.COM

To manage preferences or unsubscribe, click here.

Minggu, 21 Juni 2020

How modern SIEMs deliver value faster

How Modern SIEMs are designed to get you deployed in days
Hi Syuam,

CPA Australia is one of the world's largest professional accounting bodies, serving over 164,000 members. With 19 offices across APAC and the UK, it operates modern cloud-hosted email and collaboration platforms. And, has also invested in a multi-cloud strategy for back-end cloud infrastructure in a hybrid cloud environment. 

Given the volume of lucrative and highly regulated personal, financial, and business data the organisation holds on members, cybersecurity strategy needs to strike a fine balance. It has to be an enabler, supporting governance, risk, and compliance requirements, without being a block on user productivity. 

Click here to find out how CPA Australia's Head of Information Security, Nigel Hedges, sought to automate many of his security functions with Rapid7. This helped to improve not only the organisation's security outcomes, but enhanced IT productivity, and further built his team's skills in threat and vulnerability analysis. 


 
 
 
©Rapid7
 

To manage preferences or unsubscribe, click here.

Rabu, 17 Juni 2020

The new Heal and Clone tools in Capture One 20

Click and it's gone. With new Heal and Clone tools in the latest Capture One update, you can automatically repair parts of your photo. Simply click on the element you want to cover up – and let the tool do the rest.
Capture One

There's never been a better time to switch

The newest Capture One 20 update includes an improved Lightroom Importer, a new Healing and Clone tools, before/after functionality, and much more.

Buy now

Try it free →

Click here to master the Heal Brush

Revolutionize your retouching with the Heal and Clone tools

Check out this simple tutorial to learn how to speed up your retouching process with the new Heal and Clone tools.

Watch now
Click here to get pro retouching tips

Why the new Capture One 20 update is every retoucher's dream

Discover why leading retoucher Pratik Naik loves the new Heal and Clone tools and how he uses them in his commercial work.

Read blog

Selasa, 16 Juni 2020

How modern SIEMs deliver value faster

How Modern SIEMs are designed to get you deployed in days
Hi Syuam,

Unlike traditional SIEMs, cloud native SIEMs are purposely built to show value early on and allow you to up-level your capabilities as your security posture matures.

To help you understand how a modern SIEM can meet your security needs, without significant overhead download our Quick Start Guide.

In this guide we'll cover:
  • Common challenges with the traditional SIEM approach
  • The benefits of fast deployment and automated data configuration
  • Why having a holistic view of your environment is critical to success
  • Why cloud is no longer the future, it's right now

Download the guide today, experience faster deployment and value tomorrow.


Sales: 866-7-Rapid7
Support: 866-390-8113
Incident Response: 844-RAPID-IR

120 Causeway Street
Suite 400
Boston, MA 02114-1313


©Rapid7         Legal | Privacy Policy | Disclosure Policy | Export Notice

To manage preferences or unsubscribe, click here.