The Situation

The bank was assessing possibly security threats and raising incident tickets for threat assessment and allocating resources to remediate potential vulnerabilities and any potential cyber attacks.  All processes relating to keep the bank safe from external and internal threats were manual.

The bank was looking to reduce time from when the threats were identified to them being remediated.  Very little engineering time allocated to looking at proactive management of security threats and remediation.

The Task

Define analytics tool proposed for implementation.

Agree the To-Be operating model.

Secure initial budget to design, and run a proof of concept.

Implement network and security hardware and software.

Identify processes and cultural changes that need to be made.

 

The Action / Approach

  •  Remove the blockers during the implementation of new analytics tools.
  • Identify and implemented  changes within cultural and business processes as a result implemented automated cyber tools.
  • The delivery help to reduce time in threat identification, assessment and remediation.
  • The work I performed helped to reduce risks to threats to any sensitive data within the bank

The Result

Typical areas where value is realised:

The delivery of a analytics platform and implementation of an operating model help the bank to make much more quicker decision based on speed of the data being presented to the threat modellers and Cyber Security support engineers.

The deployment of the project significantly helped protect their customers and provided greater agility to make key business decision in a much more informed way.

Pains typically relieved include:

I overcame the resistance to change as a result of implementing different working practices and change in how threats were assessed, analysed and responded to.

The traditional way of being reactive to threats rather than proactive was a key mindset change which I was a pivotal in instilling within the bank.

Focus In On: Responsible for Cyber Security / CISO

New Areas of Value:

Make more informed, data driven decisions

Enable Better Business Agility

Improvements around:

Inflexible Legacy Systems & Processes

Resistance to Change

Relevant Industries

Practice