Natural Gas Transportation Company gains visibility into critical business processes while implementing a customized information security program.
Executive Summary
The natural gas transportation company, which also manages the gasification system where it operates, had a robust information security department. They required a data correlation technology to apply their security program effectively. Splunk was implemented to integrate all their perimeter security, following the required guidelines, and generating custom controls, monitoring, and alerting.
Challenges
Use Cases
Impacted Areas
Integrated data sources
Results and achievements
Solution
-
Integration with all company perimeter devices.
-
Execution of the security program from the ground up, using different market reference frameworks.
-
Generation of inventories of company assets.
-
Monitoring processes related to gas supply.
Integration of Custom Sources:
- Integration with the client’s proprietary custom technologies and perimeter security.
Process Monitoring:
-
Integration with SCADA systems and the current state of industrial processes.
-
Real-time monitoring of processes, with the ability to verify if any process is likely to experience delays and notify in advance.
-
Weekly/monthly reports with relevant statistics.
Information Security:
-
Custom developments to create controls based on different reference frameworks.
-
Generation of alerts for potential security incidents.
-
Data correlation to create security use cases, providing protection.
-
Business
-
Security
-
Production – process monitoring
Perimeter Security:
- Firewall
- Anti-Malware
- Vulnerability Detection
Operating System:
- Linux
- Windows
Internet of Things (IoT):
- SCADA
-
Real-time monitoring of industrial processes, leveraging statistics and predictive analysis to identify potential incidents before they occur.
-
Incident investigation platform, compliant with industry standards and applicable regulations.
-
Daily reports with the previous day’s management, providing visibility into incidents and areas for improvement.