Customer Company Size
Large Corporate
Region
- America
Country
- United States
Product
- Vectra Cognito
- AWS Security Hub
- AWS Virtual Private Clouds (VPCs)
Tech Stack
- AI-driven threat detection
- Cloud-based data storage
- Traffic mirroring
Implementation Scale
- Enterprise-wide Deployment
Impact Metrics
- Customer Satisfaction
Technology Category
- Infrastructure as a Service (IaaS) - Cloud Computing
Applicable Industries
- Software
Applicable Functions
- Business Operation
Use Cases
- Cybersecurity
Services
- Cloud Planning, Design & Implementation Services
- Cybersecurity Services
About The Customer
The customer is a popular online gaming operator based in North America with operations in more than a dozen locations around the globe. The company runs many of the most beloved sites and collections of brands in its sector. Due to its large audience, cybersecurity is paramount for the gaming community as cybercriminals view these sites as prime attack targets for their new wave of threats. The company is publicly traded and is required to meet a wide range of regulatory and compliance mandates, including PCI-DSS and GDPR. The company's priorities include delivering the best experience for gamers, guarding its operations against attacks, and protecting its brands and intellectual property.
The Challenge
The online gaming company, with operations in more than a dozen locations worldwide, was facing a rapidly changing threat landscape. Gaming companies are lucrative targets for cybercriminals, who range from solo actors to organized crime rings. An outage or data breach can cause material damage to the firm’s income, customer retention and longterm value. As a publicly traded company, it is required to meet a wide range of regulatory and compliance mandates, including PCI-DSS and GDPR. The gaming firm needs to be able to detect threats and attacks, which means having the ability to hunt for malicious activity around the clock without requiring security teams to be on site 24/7. At the same time, security analysts were overwhelmed by the volume of alerts from their security tools, such as SIEMs, firewalls and other defenses. Before selecting Vectra’s AI-driven platform, the company experienced limited visibility into threat behaviors inside its networks, which did not support the company’s priorities to deliver the best experience for gamers, guard its operations against attacks, and protect its brands and intellectual property.
The Solution
The online gaming firm selected the Cognito® threat detection and response platform from Vectra® to detect complex, multistage attacks across cloud, data center, IoT, and enterprise networks. The Cognito platform from Vectra automatically identifies hidden cyberattacks and stops data breaches in hybrid and cloud deployments. With 360-degree visibility, the Cognito delivers a single view of all threat behaviors—across cloud, data center, IoT and enterprise networks, while providing invaluable security insights and context about attacks. The company relies on AWS for flexible, scalable workloads and any disruptions could seriously damage the online gaming firm’s reputation. Cognito automatically detects and responds to hidden cyberattack behaviors across the entire network. Cognito captures all network metadata at scale and enriches it with machine learning-derived security context, and reliably stores it in AWS for proactive threat hunting and conclusive incident investigations. Deep integration between Cognito and AWS allows the company to deploy Vectra sensors in AWS virtual private clouds (VPCs), which use traffic mirroring to extend AI-driven cyberattacker detection and response to AWS workloads. Integration with AWS Security Hub ensures that Cognito definitions are published as findings in Security Hub, where they can be correlated with other data sources for faster threat hunting and incident investigations in the cloud.
Operational Impact
Case Study missing?
Start adding your own!
Register with your work email and create a new case study profile for your business.
Related Case Studies.
Case Study
Infosys achieves a 5–7 percent effort reduction across projects
Infosys, a global leader in consulting, technology, and outsourcing solutions, was facing significant challenges in application development and maintenance due to its distributed teams, changing business priorities and the need to stay in alignment with customer needs. The company used a mix of open source, home-grown and third-party applications to support application development projects. However, challenges resulting from distributed teams using manual processes increased as the company grew. It became more and more important for Infosys to execute its projects efficiently, so they could improve quality, reduce defects and minimize delays.
Case Study
Arctic Wolf Envelops Teamworks with 24x7 Cybersecurity Protection and Comprehensive Visibility
Teamworks, a leading athlete engagement platform, faced rising cyberthreats and needed enhanced visibility into its network, servers, and laptops. With software developers connecting from all over the world, the company sought to improve its security posture and position itself for future growth. The company had a secure platform but recognized the need for a more proactive solution to identify gaps within its technology infrastructure. Data exfiltration and malicious access were top concerns, prompting the need for a comprehensive security upgrade.
Case Study
Sawback IT and Datto Save Client From a Costly Mistake
Ballistic Echo, a software development house, faced a critical challenge when human error led to the deletion of thousands of lines of unique code. This incident occurred before the code was pushed to source control, resulting in significant loss of time, revenue, and work. The previous file-level backup solution they used was slow and inefficient, making it nearly impossible to manually recreate the lost work. The need for a more reliable and efficient business continuity solution became evident to avoid such disasters in the future.
Case Study
Opal Helps Customers Shine Thanks to Datto
SP Flooring & Design Center faced a ransomware attack that encrypted and locked their files. The attack was initiated through a compromised service account set up by an outside vendor. The ransomware infection was isolated quickly, but there was a concern about the extent of the data at risk. The company had backups in place but was unsure of how much information was compromised. The situation required immediate action to prevent further damage and restore the affected data.
Case Study
Zapier Aggregates Multiple Analytics in a Single Dashboard with the New Relic Platform
Zapier, a company that enables non-technical users to push data between hundreds of web applications, was facing a challenge in automating and provisioning servers for optimal performance. The company's environment consisted of 50 Linux servers on the Amazon Elastic Compute Cloud (EC2), a Django application split across several servers, and a backend consisting of a dynamic number of celery task workers fed by messages published to a RabbitMQ cluster. They also maintained a number of internal web services on nginx in front of Gunicorn and Node.js processes. Redis handled simple key and value stores, with logging handled by Graylog2 and ElasticSearch. However, they realized that no level of automation would be sufficient without an effective monitoring solution in place. They needed a tool that could provide immediate alerts when something was breaking and could be easily implemented into their environment.
Case Study
Pipeline Insight Case Study: YARCDATA
YarcData faced challenges in determining the conversion rates of prospects into customers through various marketing efforts and identifying the source of its leads. They wanted to know the percentage of opportunities in the sales pipeline that came from different marketing events, web downloads, or self-sourced sales opportunities. Additionally, they needed the ability to drill down into the data to guide where to allocate more marketing dollars based on the success of previous efforts. Previously, YarcData relied heavily on spreadsheets and Salesforce.com reports, which made it difficult to extract the exact information they needed. This reliance on spreadsheets represented about 70% of their data presentation.