This site uses cookies. By continuing to browse this site you are agreeing to our use of cookies. Find out more.X

The Share Centre opts for LogRhythm solution for compliance and network management capabilities

Share this article:

Retail stockbrokers The Share Centre has deployed a log management and security information and event management (SIEM) solution from LogRhythm.

The solution has been installed to ensure compliance with the PCI DSS regulations and for website, network management and security best practice.

IT infrastructure manager at The Share Centre Giles Roberts said that previously the company's IT team was required to manually review all log data in order to identify and scrutinise anomalies, as well as work out which data related to which security event.

This process had become increasingly time-consuming and the company needed an easier to use, automated solution capable of providing real-time monitoring, as well as a consolidated overview of all events.

Roberts said: “As a retail stockbroker, our reputation depends on our ability to handle confidential information safely and in compliance with our regulatory obligations; we cannot afford mishaps.”

Section ten of the PCI DSS requires the tracking and monitoring of all access to network resources and cardholder data. Roberts explained that data feeds into the LogRhythm console and access can be monitored. “We have a key machine where we hold our key cardholder data and if a login is attempted it is flagged up, the console put this rule in place,” he said.

“We have the LogRhythm console on display all of the time and it shows alerts up. We run our own website from here and if a customer puts in credit card data to put money into their account we have to make sure that the money goes back to the original source to keep within money laundering rules and the only way of doing that is to keep the card details that the money came from.

“It is not just a data store, it also has a rules engine and data mining capabilities and it takes lots of data sources. We have been running with this for three to four months so we are still working our way around this.”

Ross Brewer, vice president and managing director of international markets at LogRhythm, said: “With the latest version of PCI and PA DSS mandating centralised log management, the regulatory requirements for companies such as The Share Centre are becoming ever-more rigorous.

“By adopting a LogRhythm solution, The Share Centre hasn't just improved its security and compliance processes, it has gained powerful insight into the efficiency of its whole IT operations. The new solution will also help the company overcome future challenges, including achieving ISO 27001 compliance and meeting external IT audit criteria.”

Share this article:

SC webcasts on demand

This is how to secure data in the cloud

Exclusive video webcast & Q&A sponsored by Vormetric

As enterprises look to take advantage of the cloud, they need to understand the importance of safeguarding their confidential and sensitive data in cloud environments. With the appropriate security safeguards, such as fine-grained access policies, a move to the cloud is as, or more, secure than an on-premise data storage.

View the webcast here to find out more

More in News

Chinese hackers steal confidential documents on Israeli missile defence system

Chinese hackers steal confidential documents on Israeli missile ...

Chinese hackers comprised the computer systems of three Israeli defence contractors between 10 October 2011 and 13 August 2012 in order to steal hundreds on confidential documents on Israel's Iron ...

Security researcher finds exploitable flaws in 14 antivirus engines

Security researcher finds exploitable flaws in 14 antivirus ...

Joxean Koret, a security researcher at Singapore-based consultancy COSEINC, has found exploitable local and remote flaws in 14 of the 17 major antivirus (AV) engines used by most major AV ...

Russian government promises £60k bounty to Tor hackers

Russian government promises £60k bounty to Tor hackers

The Russian Ministry of Internal Affairs (MVD) is offering a 3.9 million ruble (approximately £64,600) reward to anyone who can find a way of identifying and tracking users of the ...