Rescuing and Protecting Infrastructures
Financial Sector
Overview
A Quebec-based investment institution was the victim of a large-scale exfiltration attack and had to suspend their large scale operations. All levels of the organization were affected, and due to the scale of those issues, the case had to be made public.
Challenges
Following an exfiltration cyber attack of this magnitude, our client faced significant challenges in relation to both the personal, and sensitive financial data that was leaked.
While the company was addressing the loss of their customers’ confidence, ESI was brought on board to help put in place mechanisms to prevent the recurrence of any future damaging cyber attacks.
Our Work
Evaluation
Evaluation of exfiltration elements and damage assessment
Reconfiguration
Reconfiguration and rebuilding of certain infrastructures, networks and identities
Implementation
Implementation and maintenance of a vulnerability management program
Reporting
Monthly reporting committee on security posture.
The client’s integration into our cybersecurity monitoring center included:
- Analysis and alerts on the organization’s critical network flows
- Behavioral analysis and alerting on the organization’s critical activities
- Analysis and alerting of event and logging data
Services Provided
Cybersecurity
Cyber defense and cybersecurity consultants
SOC
Security surveillance consultant
IT & Cloud Modernization
Installation team
Results
The client was able to resume its activities, and the transparency of the processes put in place by ESI restored the organization’s confidence in the quality of its IT. ESI has since blocked and contained several cyberattack attempts for this client.