140 likes | 285 Views
Solidcore Harness the Power of Change. Case Study:. John Sebes CTO Solidcore Systems, Inc. What Solidcore Does. Situation Operations and Security are at a cross roads Business Drivers Frequent change is affecting IT service levels – including unknown and possibly malicious change
E N D
SolidcoreHarness the Power of Change Case Study: John Sebes CTO Solidcore Systems, Inc.
What Solidcore Does • Situation • Operations and Security are at a cross roads • Business Drivers • Frequent change is affecting IT service levels – including unknown and possibly malicious change • Compliance initiatives stress IT/business linkage • Key Insight • Change drives complexity & cost! • Frequency of changes • Changes outside process • Multi-org. change coordination • The Solidcore Value • Provides complete and proactive control of change in the production environment • Works at the device-level and ties infrastructure change to IT processes and policies • Augments existing configuration management and IT workflow systems
Customer: PACE • Profile: Pace Suburban Bus Service • Pace Suburban Bus Service - 14th largest bus service in the U.S. - 1,500 employees - 600 buses • Pace provides bus and van service for six Chicago-area counties • MIS department has a centralized data center with limited support staff - performs large amounts of data analysis - responsible for software requests and communications - datacenter system maintenance
Customer: PACE • The Problem • Servers needed patching every other day to try to stay one step ahead of all the security threats • Need to provide 24x7 service availability - aren’t staffed for 24x7 • Patching alone was stressing ability to maintain SLAs
What are Pace’s Technical Requirements? • Low on-going operational costs • Scale deployments at fixed and predictable cost • No policies or rules to setup • No policies to update on an ongoing basis • Reduce security related patch cycles • Low performance overhead • Minimize security risk • Protection from malicious code execution • Zero Day attacks, mass attacks worms, viruses, Trojans, etc • Prevent internal threat • Control what can be installed and run on remote systems.
Why is Securing Pace’s Environment so Hard? • Operational Effectiveness • Current security products are operationally intensive, making scaling to large deployments expensive • Performance overhead can be significantly high • Operationally intensive “Patching” is becoming the solution of choice • Risk Minimization • Understanding prevalent level of risk for current investment • Implemented policies do not keep pace with IT growth or Zero-day attacks, especially for remote/distributed systems • Level of protection erodes over time. • Internal threat is not accounted for
Protecting Pace: What’s being Optimized? Degree of Prevention/Detection HIPS AV Enterprise Eval Pilot Department Deployment Scope with fixed ops cost (customization, tweaking, maintenance etc) per machine
Introducing S3 Security™ Solidcore S3| security Operations-centric security based on change control • Deploy & Forget Security • No requirements for initial or on-going configuration, rules, signatures or learning • Minimal Performance Overhead • Installs easily with minimal system overhead • Unauthorized Code Cannot Run • Categorical protection from external threats including zero day attacks, mass attacks worms, viruses, and Trojans regardless of vector of attack • Internal Threat Protection • Maintains administrative flexibility while protecting authorized software configuration
Protecting Pace: Protection with Fixed Ops Cost S3 Security Degree of Prevention/Detection HIPS AV Enterprise Eval Pilot Department Deployment Scope with fixed ops cost (customization, tweaking, maintenance etc) per machine
0 Identify Disk Image Current, Gold or Audited Image 1 2 Solidified Production Mode Control Assured Initial Solidification Initial System Inventory Created 3 Solidified Production Update Mode Updated System Inventory 4 Updated Solidified Production Mode Control Assured Solidcore’s Innovation: Solidification™ Production State Deployment State Enable Update Mode Disable Update Mode
S3 Security is Practical Solidification™ “Deploy and Forget Protection” No initial and on-going configuration No false positives or negatives Practically no performance overhead Very small footprint
Customer: PACE • The Solidcore Value • "Solidcore is a godsend.” Bob Lescaleet, MIS department manager at Pace Suburban Bus Service • With Solidcore, if patching is needed, it can be done on Pace’s schedule. • Solidcore’s installation was a breeze and, once running, is transparent to operators.