SEARCH
How to reach us: 800.507.4517 info@hotskills-inc.com

 

HotSkills launches Orange Parachute!
Orange Parachute specializes in ISO 27001 certification and information security program evaluation, design and implementation.
click here for more details

Security Operations Management and Processes

Financial Services Organization - Credit Card, Banking, Travel

Background

Client is a Tier One financial services firm with data center/technology operations located in the Southwest. Client is known as an industry leader in several major business verticals including Travel Related Services, Credit Card Services and Financial Services.

HotSkills security resources worked with this client to build a strategic framework to manage their network security operations.

The Engagement

Client needed to better define their security operation to meet the requirements of their Sarbanes-Oxley and FFIEC audit teams. Our consultants worked with Client management to build a strategic view into the operational aspects of their Network Security team. This provided management with a communications vehicle for audit compliance and a framework to further build-out their operation.

The Approach

HotSkills consultants worked with Client management to define an operational framework. Security processes and procedures were documented, which enabled Client to better communicate the who, what, when, where and why, as it relates to security operations.

HotSkills security operations specialists worked along side Client operational staff to implement and refine security procedures. Our consultants were responsible for maturing the operational components (people, processes and technology) used within the Network Security Operation Center. Effectiveness metrics were defined and monthly reporting enabled the NSOC team to communicate the effectiveness of the operation.

The Result

Deliverables from this engagement helped Client to facilitate and move toward its requirement to comply with their Sarbanes-Oxley and FFIEC requirements. In addition, Client security management and personnel were able to utilize these deliverables across their enterprise moving forward. The Network Security team matured from an informal operation to a well defined, continually improving operation.