You are on page 1of 15

Evolving Security Architecture in Banks

Appnomic Managed Security Services


P Rangarajan (Ranga), Appnomic Systems
April, 2010
1

DELETE COMPUTE

PRINT

Copyright 2009 Appnomic Systems Pvt. Ltd. I Confidential | www.appnomic.com

Evolving Security trends

Four main pillars of most organizations: Firewall; Network Intrusion Prevention Anti-Virus Web Gateway Security Devices

New Threats; New requirements Malware protection Control of Privileged users Data Leak Prevention

Copyright 2009 Appnomic Systems Pvt. Ltd. I Confidential | www.appnomic.com

Appnomics Managed Security Services

Appnomic Managed Security


Malware & Botnet Protection

Copyright 2009 Appnomic Systems Pvt. Ltd. I Confidential | www.appnomic.com

Malware Protection

Malware Protection Systemwhy is it important?


Antivirus, URL filters, intrusion prevention have all been circumvented by todays threats

Microsoft Security Advisory (979352) http://www.microsoft.com/technet/security/advisory/979352.mspx Vulnerability in Internet Explorer Could Allow Remote Code Execution Published: January 14, 2010 | Updated: January 21, 2010

Sophisticated and Targeted Zero-day attack

'Operation Aurora' was able to breach dozens of major corporate networks using sophisticated techniques, such as code obfuscation and a zeroday application vulnerability
Jan. 20, 2009 Heartland finds malware in bank Card payment system Mar. 28, 2008 Hannaford says malware on its servers stole card data
6

Copyright 2009 Appnomic Systems Pvt. Ltd. I Confidential | www.appnomic.com

Malware Protection SystemReal Time solution

Protects data against theft, exploitation and abuse


Zero-day, stealth malware detection Extreme accuracy Inbound malware forensics Outbound callback fingerprinting MAX Network ready Out-of-band, sideline deployment

Enables infection analysis & remediation Identification of previously infected PCs calling out to malicious parties Global malware intelligence for more efficient analysis

Copyright 2009 Appnomic Systems Pvt. Ltd. I Confidential | www.appnomic.com

Privileged Password & Secure Access Management

Privileged UsersSecurity Issues?

PRIVILEGE RISK - ACCESS LOW MEDIUM HIGH Local Admin Accounts Desktop, Laptop, Embedded User Accounts

Unlike Basic User accounts, Privileged users have no individual association Privileged Accounts have extensive ACCESS and CONTROL

Hard coded accounts and passwords

Application/Service Accounts Windows Service Accounts, Schedule Tasks, Application IDs, Batch Jobs, Scripts, etc. Administrative Accounts Unix Root, Windows Admin, DBA Accounts, Cisco Enable, Windows Domain, etc.

Audit & Compliance requirements related to privilege accounts

Copyright 2009 Appnomic Systems Pvt. Ltd. I Confidential | www.appnomic.com

Privileged Password & Secure Access Management

One-point management of privileged access (ability to control, monitor and record user sessions of privileged accounts) Enhanced security - elimination of hard-coded passwords Full session capture, every mouse movement, keystroke, recorded - VCR-like session log reply Audit of all activities and actions compliance to SOX, PCI, HIPAA, Basel II
Copyright 2009 Appnomic Systems Pvt. Ltd. I Confidential | www.appnomic.com

10

User Behavior Monitoring & Data Leak Prevention

11

User Behavior Monitoring & Data Leak Prevention

Is your business critical data safe ?

Copyright 2009 Appnomic Systems Pvt. Ltd. I Confidential | www.appnomic.com

12

User Behavior Monitoring & Data Leak Prevention


Pawaa Security Framework
Scan Encrypt

Policy Enforce ment

Alert

Track Monitor Block

Endpoint Pawaa Agent

Storage Email Device Web mail Applications Screen HTTPS Shots Print CD/DVD

IM
FTP WEB USB

Prevent accidental or malicious loss of business critical data by insiders or hackers Real time monitoring of data transmission as per company policies Compliance with legal and regulatory rules Reduced cost of investigating data loss and the cost of rebuilding organization's reputation
Copyright 2009 Appnomic Systems Pvt. Ltd. I Confidential | www.appnomic.com

13

Appnomic Systems Simplifying & Automating IT Management


A specialist IT Infrastructure Management and Application Performance Services Provider

Certifications ISO 9001, ISO 20000-1 and ISO 27001; follow ITIL processes

400 people strong with Core leadership team & top executives from Tier-1 Global IT service providers

Financially strong; backed by Norwest Venture Partners, a leading VC firm from the Bay area, CA

Copyright 2009 Appnomic Systems Pvt. Ltd. I Confidential | www.appnomic.com

14

Thank You

Contact us at managedsecurity@appnomic.com www.appnomic.com

15

You might also like