2
Our client is a leading Multinational Pharmaceutical and Biotechnology Company with strong presence across the world. It is highly renowned for the production of affordable and world-class medicines. One of their key concerns was to address the technical limitations of the traditional firewall, which provided inadequate protection in the current threat landscape. To address this pain point, Hitachi Systems Micro Clinic recommended ‘Next Generation Threat Prevention’ unified solution that blocked advanced threats and malware attacks; thereby enabling the organisation to easily and confidently control access to millions of websites. BUSINESS REQUIREMENTS n Technical inability to address the current threat landscape from a single appliance. n Offered protection based on controlling specific protocols and ports & restricting traffic to and from specific IP addresses. n Often forced administrators to trade off security against performance. n The Security and Operation teams required additional tools to optimise the configuration of firewalls to ensure Security and Compliance. n Expensive to operate due to licensing cost of additional technologies. For each product, the system administrators had to be trained to master the intricacies of configuring hardware and software, setting rules, creating reports and monitoring events. TECHNICAL REQUIREMENTS n Limitation to inspect L2 and L4 layers due to incapacity to look into the packets for detecting Malware. n Inability to protect against Advanced Threat Landscape. n No approach of connecting network traffic with users. Suspicious traffic could not be associated with individual users, except through the laborious process of poring through log files. n Once a port was opened for Internet traffic, any traffic could come through disguised as legitimate traffic. n The existing solution was incapable of executing decryption and SSL traffic inspection. n It was unable to associate network traffic with specific applications as it was not ‘Application Aware’. SOLUTIONS Hitachi Systems Micro Clinic proposed ‘Next Generation Threat Prevention’ solution and Firewall Analyzer. The entire deployment were executed in 3 phases: Phase 1 - Planning Phase Phase 2 - Implementation Phase Phase 3 - Service Completion Phase n Planning Phase: determined roles and responsibilities for customers and Hitachi Systems Micro Clinic to finalise the implementation phase schedule. Comprehensive project plan and duly created and submitted. n Implementation Phase: deployed and configured policies for Next Generation Threat Prevention solution based on the agreed project plan. This phase was further sub-divided into six parts: (i) Initial Setup - from BOM verification to mounting to testing and verification (ii) Firewall configuration and installation on virtual environment. Next Generation Firewall Implementation Customer: Leading Indian Multinational Pharmaceutical & Biotechnology Company Business Requirements: Technically Inadequate & Limited Protection Trade-off of Security against Performance Entailed | | Expensive Additional Tools for Enhanced Security Technical Requirements: Limited to inspect L2 & L4 Layers Protection against Advanced Threat Landscape No approach | | of Connecting Network Traffic with Users Incapable of executing Decryption & SSL Traffic Inspection Not Application Aware | | Solution: Next Generation Threat Prevention Benefits: Threat Protection Real-time Security Intelligence Protection Unified Management, Monitoring & Reporting | | |

Next Generation Firewall Implementation - Hitachi …cdn.hitachi-systems-mc.com/assets/caseStudies/Next...Next Generation Firewall Implementation Customer: Leading Indian Multinational

  • Upload
    vukhanh

  • View
    229

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Next Generation Firewall Implementation - Hitachi …cdn.hitachi-systems-mc.com/assets/caseStudies/Next...Next Generation Firewall Implementation Customer: Leading Indian Multinational

Our client is a leading Multinational Pharmaceutical and Biotechnology Company with strong presence across the world. It is highly renowned for the production of affordable and world-class medicines.

One of their key concerns was to address the technical limitations of the traditional firewall, which provided inadequate protection in the current threat landscape. To address this pain point, Hitachi Systems Micro Clinic recommended ‘Next Generation Threat Prevention’ unified solution that blocked advanced threats and malware attacks; thereby enabling the organisation to easily and confidently control access to millions of websites.

BUSINESS REQUIREMENTSn Technical inability to address the current threat landscape from a single appliance.n Offered protection based on controlling specific protocols and ports & restricting traffic to and from specific IP

addresses.n Often forced administrators to trade off security against performance.n The Security and Operation teams required additional tools to optimise the configuration of firewalls to ensure

Security and Compliance. n Expensive to operate due to licensing cost of additional technologies. For each product, the system

administrators had to be trained to master the intricacies of configuring hardware and software, setting rules, creating reports and monitoring events.

TECHNICAL REQUIREMENTSn Limitation to inspect L2 and L4 layers due to incapacity to look into the packets for detecting Malware.n Inability to protect against Advanced Threat Landscape.n No approach of connecting network traffic with users. Suspicious traffic could not be associated with individual

users, except through the laborious process of poring through log files.n Once a port was opened for Internet traffic, any traffic could come through disguised as legitimate traffic.n The existing solution was incapable of executing decryption and SSL traffic inspection.n It was unable to associate network traffic with specific applications as it was not ‘Application Aware’.

SOLUTIONSHitachi Systems Micro Clinic proposed ‘Next Generation Threat Prevention’ solution and Firewall Analyzer. The entire deployment were executed in 3 phases:

Phase 1 - Planning Phase Phase 2 - Implementation Phase Phase 3 - Service Completion Phase

n Planning Phase: determined roles and responsibilities for customers and Hitachi Systems Micro Clinic to finalise the implementation phase schedule. Comprehensive project plan and duly created and submitted. n Implementation Phase: deployed and configured policies for Next Generation Threat Prevention solution based on the agreed project plan. This phase was further sub-divided into six parts: (i) Initial Setup - from BOM verification to mounting to testing and verification (ii) Firewall configuration and installation on virtual environment.

Next Generation Firewall Implementation

Customer: Leading Indian Multinational Pharmaceutical & Biotechnology Company

Business Requirements: Technically Inadequate & Limited Protection Trade-off of Security against Performance Entailed | |

Expensive Additional Tools for Enhanced Security

Technical Requirements: Limited to inspect L2 & L4 Layers Protection against Advanced Threat Landscape No approach | |

of Connecting Network Traffic with Users Incapable of executing Decryption & SSL Traffic Inspection Not Application Aware| |

Solution: Next Generation Threat Prevention

Benefits: Threat Protection Real-time Security Intelligence Protection Unified Management, Monitoring & Reporting| | |

Page 2: Next Generation Firewall Implementation - Hitachi …cdn.hitachi-systems-mc.com/assets/caseStudies/Next...Next Generation Firewall Implementation Customer: Leading Indian Multinational

(iii) Migration of Policies - Backup, Up-gradation, Restoring, Verification and UAT for policies. (iv) Advanced firewall configuration - Configuration of IPsec VPN Blade, Rules & Policies and Smart Workflow Blade (v) Firewall Analyzer Integration - Configuration, Policy Setting and Report Generation (vi) Go Live - Testing, Monitoring and Failover Testing (UAT)

������n�����Service Completion Phase: encompassed the activities revolving around closing the project and engagement. This phase was sub-divided into two parts: (i) Fine Tuning - monitoring logs and events & fine tuning the required policies. (ii) Knowledge Transfer - comprehensive handover of the implementation.

BENEFITS Our proposed solution delivered immediate protection and secured corporate resources by utilising the mostpowerful combination of security capabilities. Protections included stopping application-specific attacks, botnets,targeted attacks, APTs and zero-day threats. Other benefits included:

n Cost Reductionn Real-time Security Intelligence delivered from Threat Cloudn Comprehensive Threat Protection from one Appliancen Detected and Prevented both known and unknown attacks by leveraging IPS module.n Enforced appropriate usage of Social Media and Web 2.0 applicationsn Ensured that high priority business applications perform bettern Protection from Malicious Downloads and Applicationsn Maximized Protection through Unified Management, Monitoring and Reportingn Identified departments and individuals who engaged in risky or non-productive behaviourn Provided excellent network performance without compromising Securityn Application Aware – Instead of allowing all traffic coming in via typical Web Ports, it distinguished between

specific applications and accordingly applied policies

ABOUT HITACHI SYSTEMS MICRO CLINICHitachi Systems Micro Clinic is an end-to-end IT Services & Solutions provider that helps businesses upgrade to modern IT infrastructure by offering high end solutions in Information Infrastructure, Networking, Availability, Security and Services.

The company believes in providing the best possible turnaround time to its customers and thus operates through a massive network across the country.

Established in 1991, the company is headquartered in New Delhi and expands its reach across 16 major cities in India with 200+ marquee customers across verticals.

We provide customized solutions to organizations of all sizes thereby reducing cost, increasing business agility and freedom of choice. At Hitachi Systems Micro Clinic, we deliver innovations that answer society's challenges. With our talented team and proven experience in global markets, we can inspire the world.

DISCLAIMER“© 2015 Hitachi Systems Micro Clinic Pvt. Ltd. All rights reserved. All copyright and trademarks mentioned herein are owned by their respective owners. You may not MODIFY, COPY, REPRODUCE, REPUBLISH, UPLOAD, POST, TRANSMIT OR DISTRIBUTE, the above content IN ANY MANNER without prior written permission from Hitachi Systems Micro Clinic Pvt. Ltd.”

www.hitachi-systems-mc.com