Identify real security incidents cleanly

Managed SIEM for Oldenburgische Landesbank

 

Clearly identify real security incidents

Initial situation

The bank, which was created in 2018 through the merger of Oldenburgische Landesbank (OLB AG) and Bremer Kreditbank AG (BKB AG), worked with a log management tool that logged and stored all incidents of the devices, endpoints and applications connected to the network.

All the data was made available to Frank Feldmann, IT security and data protection officer at OLB, and his team in a simple PDF report comprising several thousand pages. This legacy system was not designed to correlate the collected data and precisely identify and prioritise security incidents.

SIEM implementation within one week

The SIEM was to be implemented in the shortest possible time. Within a week, ConSecur had the SIEM up and running, connecting 800 log sources such as firewalls, servers, switches and bank-specific applications and integrating them into the monitoring system.

However, the number of incidents (events) per second unexpectedly increased significantly as a result of these newly connected log sources, so ConSecur advised an adjustment to the licensing.

Conclusion - leading, target-orientated implementation

Oldenburgische Landesbank has a scalable SIEM solution that monitors security events within the critical infrastructure promptly and appropriately.

Following the piloting and rapid deployment of the SIEM, the analysts at ConSecur GmbH took over ongoing operations with Managed SIEM.

Proof of Concept (PoC)

SIEM piloting within 15 days

The requirements for the new SIEM to be designed were the rapid provision of an operational SIEM, the scalability of the solution as it grew with the bank, and operational operation by specialised experts. After analysing these requirements, ConSecur submitted a proposal to OLB to set up a SIEM with security monitoring as a pilot project and to test the performance of the SIEM.

and to demonstrate the SIEM's performance live during operation. IBM QRadar Security Information and Event Management (SIEM) supports security teams in the precise detection and prioritisation of security threats.

The market-leading tool reliably detects IT security incidents and thus minimises the risk of security threats to the corporate network.

"With the SIEM pilot, we were able to simulate in an environment customised to OLB how the SIEM will be set up and how security monitoring with our analysts will work in practice," says Jens Wübker, Head of Sales at ConSecur GmbH.

DOWNLOAD REFERENCE REPORT

Create appointment

Does this task sound familiar to you?
Arrange a consultation now.

ConSecur GmbH develops customised IT security concepts and solutions for detecting, defending against and analysing cyberattacks. This turns buzzwords such as artificial intelligence, Industry 4.0 and the Internet of Things (IOT) into added value for our customers. Let's talk about what we can do for you.

Make an appointment now

Further projects

Our customers trust us.

CDC Unterstützung
ConSecur GmbH has trained 50 IT security analysts for a client in the banking sector

In five months, ConSecur set up an internal cyber defense team - future-proof and efficient.

Read reference article
ISMS
Resilient and legally compliant IT infrastructure for a transmission system operator

ConSecur has been strengthening the IT security of a transmission system operator for years and ensuring compliance with the IT Security Act.

Read reference article
SIEM-Pilotierung in 15 Tagen
Managed SIEM for Oldenburgische Landesbank

One of the requirements was the rapid deployment and scalability of an operational SIEM.

Read reference article
CDC Unterstützung
Pioneering work for Hewlett-Packard

Establishment of a Cyber Defense Center in Palo Alto

Read reference article
Distinguishing authorized access from anomalies
SIEM for AIRBUS DEFENCE AND SPACE

Recognize security incidents and initiate countermeasures.

Read reference article
Landesbank Baden-Wüttemberg
Cyber attacks - IT security for LBBW

Use cases for the SIEM

Read reference article