{"id":64943,"date":"2021-09-21T15:21:01","date_gmt":"2021-09-21T14:21:01","guid":{"rendered":"https:\/\/www.intelligentcio.com\/me\/2021\/09\/21\/secureworks-helps-iffco-to-align-its-security-priorities-with-those-of-the-wider-business\/"},"modified":"2021-09-23T15:21:06","modified_gmt":"2021-09-23T14:21:06","slug":"secureworks-helps-iffco-to-align-its-security-priorities-with-those-of-the-wider-business","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/me\/2021\/09\/21\/secureworks-helps-iffco-to-align-its-security-priorities-with-those-of-the-wider-business\/","title":{"rendered":"Secureworks helps IFFCO to align its security priorities with those of the wider business"},"content":{"rendered":"\n<p><em>Goutam Pudota, CISO and Group Head of Information Security at IFFCO<\/em> <em>discusses how it &#8211; a leading manufacturer in the food and beverages industry based in the United Arab Emirates &#8211; worked with Secureworks to securely simplify and streamline its operations. Pudota<\/em> <em>explains how the company leverages Secureworks&#8217;<\/em> <em>XDR and VDR platforms<\/em> <em>to support cybersecurity across its cloud and IT infrastructure. <\/em><\/p>\n\n\n\n<p>Secureworks has been working with IFFCO since the beginning of this year. IFFCO selected Secureworks based on its ability to provide a managed service that complements IFFCO\u2019s in-house capabilities. Secureworks\u2019 Taegis XDR platform and MDR services went live in February. It has bolstered IFFCO\u2019s defensive posture, provided it with proactive cybersecurity capabilities and given it a unified view of its cloud and IT infrastructure. Secureworks provides IFFCO with monitoring capabilities, risk analysis and contextualised guidance to mitigate threat alerts. Should the need arise, Secureworks is always on hand to provide IFFCO with a deeper level of investigation through its incident response capabilities. IFFCO has a dedicated customer success manager that maintains a regular dialogue with the CISO\u2019s office to discuss the latest threat intelligence and help IFFCO to constantly improve its cybersecurity infrastructure.<\/p>\n\n\n\n<p><strong>What does a typical working day look like for you and what\u2019s the scope of your responsibility at IFFCO?<\/strong><\/p>\n\n\n\n<p>I head the entire information security department as a CISO for IFFCO. My remit includes global operations which spans the 17 different countries we operate in, across 33 different plants.<\/p>\n\n\n\n<p>My typical working day begins by looking at the latest threat intelligence reports, which provides me with an update of what\u2019s happening across the security industry. Then I review our internal logs and SOC reports to see if there are any incidents or actions that require my attention. This is all extremely useful because it gives me a balanced view on what&#8217;s happening inside and outside the organisation.<\/p>\n\n\n\n<p>Typically, this would be followed by meetings with various business stakeholders. We\u2019re a multinational business, which means we have different management teams in each country and it\u2019s important that I\u2019m able to talk with them on a regular basis to discuss their latest business initiatives and how we can best align our security efforts to support them. This could involve anything from third-party risk assessment, to helping them to drive security awareness across their business units.<\/p>\n\n\n\n<p>In addition, I review and manage our ongoing security awareness campaign to ensure that everything is in line for the coming weeks and months, and that internal comms can go out as planned. I also make sure I\u2019m available to help my technical teams architect security solutions and provide them with any other support and guidance they need.<\/p>\n\n\n\n<p>Finally, I regularly meet with vendors to understand what new solutions and innovations are available on the market and the potential impact they could have on strategy and future roadmaps.<\/p>\n\n\n\n<p>I feel it\u2019s important to emphasise our ongoing partnership with Secureworks. We consult with it and it works closely with us to ensure that we have the right solutions in place. Secureworks is a primary vendor because its managed services solution integrates all our security log sources in one place, which takes away the need to manage them all individually.<\/p>\n\n\n\n<p><strong>Can you tell us about IFFCO\u2019s work with Secureworks and why you selected it as the technology provider?<\/strong><\/p>\n\n\n\n<p>One of the key issues we had was the fact that we have a range of different devices, application systems, ERP systems and database systems &#8211; both in the cloud and on-premises &#8211; all logging different security information. There was a lot of complexity and trying to find the right information was like looking for a needle in a haystack. So, we looked for a partner that could solve that problem for us.<\/p>\n\n\n\n<p>We needed a tool that could provide us with the contextual information about these logs that used techniques like AI and automation. This level of enrichment and context is typically beyond a traditional SIEM system. However, our criteria wasn&#8217;t based on tools alone, we wanted to work with a managed service partner. This was because we realised that we needed SOC expertise and one of the practical challenges we faced was recruiting and retaining some of the best talent for those roles, particularly in the manufacturing space. Secureworks fit the bill, because it showed it could help to assure us, provide more reliability and high levels of service. Now that we have a managed service partner in place, my team can focus on the real issues and our internal resource focus has shifted. Secureworks checks in with us every two weeks to review our goals and track progress.<\/p>\n\n\n\n<p><strong>How do Secureworks\u2019 Taegis XDR and VDR platforms support cybersecurity across IFFCO\u2019s cloud and IT infrastructure?<\/strong><\/p>\n\n\n\n<p>The one question I get asked every day as a CISO is \u2018How secure are we?&#8217;<\/p>\n\n\n\n<p>Taegis correlates all of our logs in near real time and captures the relevant information on a single dashboard that I can refer to at any moment to check our security status. It\u2019s thanks to this highly accurate tool and the managed service behind it that I\u2019m able to say, \u2018this is where we currently stand&#8217;. What\u2019s more, Taegis provides a contextual view of the logs and our security posture, which allows us to make more informed decisions about how to respond, or how to manage specific events, based on their severity.<\/p>\n\n\n\n<p>We\u2019re able to leverage both XDR and VDR platforms to detect unusual activity, while also constantly scanning different IT tools and applications across the cloud and IT stack to check for updates, patches and potential vulnerabilities.<\/p>\n\n\n\n<p>In addition, Secureworks runs different playbooks every month to help us practically identify any known threats. It helps us to assure our infrastructure and prioritise what measures we want to deploy that month depending on what activity we see across the cybersecurity space.<\/p>\n\n\n\n<p>Taegis is constantly being improved. Customer feedback is taken seriously.&nbsp;We\u2019ve seen lots of changes over the last six months alone and new implementations being delivered. We\u2019re looking forward to receiving the latest version of the Taegis agent, when it\u2019s released.<\/p>\n\n\n\n<p><strong>As one of the largest producers of processed food and agricultural commodities in the Middle East, what are some of the common cyberthreats you face?<\/strong><\/p>\n\n\n\n<p>Phishing and credential harvesting are among the biggest challenges we face right now. Our integrations with Office 365 and Secureworks help us to spot any issues. Like many organisations, we\u2019re expanding our digital footprint right now. We are mindful that as we grow and embrace new business opportunities, we risk exposure to new malware and even supply chain threats. That\u2019s where it becomes increasingly important to maintain high levels of third-party management of vendors to ensure there are no inherent vulnerabilities that can be exploited. Fortunately, Secureworks provides us with total visibility to the threats we constantly face and recommends what preventive and corrective actions we can take to mitigate those threats.<\/p>\n\n\n\n<p><strong>How important is having a Disaster Recovery plan in place when managing the security of a major Middle East enterprise?<\/strong><\/p>\n\n\n\n<p>Extremely important. There\u2019s an old saying in security, \u2018it\u2019s not a question of <em>if<\/em>, but <em>when&#8217;<\/em>. So, it\u2019s necessary that we\u2019re able to identify and protect our critical assets and prepare for any eventuality. This is achieved by conducting business impact analysis and having agreements in place with business stakeholders about recovery time and point objectives. Any recovery strategy requires the support of the wider business &#8211; they need to be involved in the process.<\/p>\n\n\n\n<p>It\u2019s reached the point that even cyber insurers are looking for Disaster Recovery plans to demonstrate how resilient your organisation is against threats, particularly considering the rise in ransomware threats.<\/p>\n\n\n\n<p><strong>How do you ensure you equally and successfully manage the cybersecurity of IFFCO\u2019s various global locations?<\/strong><\/p>\n\n\n\n<p>A key priority for me is to ensure that security priorities are aligned with business priorities. Security should no longer be treated as an IT issue, it\u2019s a business issue. That\u2019s why I invest time talking to the business about security to help them understand that it\u2019s a benefit, not a burden. Technology alone cannot solve the problem. You need the people and process to go along with it. I can bring in the likes of Secureworks to bolster our security posture but a change in culture is equally important. That&#8217;s when the experience of running a global enterprise comes into play.<\/p>\n\n\n\n<p>Finding the right governance model and risk security approach are also key when it comes to managing security equally across so many different countries. We\u2019re a large manufacturing organisation and the dissemination of security comms is vital. When it comes to management issues, we converse in English, but we also provide comms in Hindi and Arabic for workers on the shop floor.<\/p>\n\n\n\n<p><strong>What are some of the cybersecurity trends taking place across the Middle East and how are you adapting and evolving alongside them?<\/strong><\/p>\n\n\n\n<p>Key trends include data digitalisation, data privacy and consumer protection. The processing of personal data and the importance of securing data is a top government priority and we\u2019re seeing the introduction of new regulations to address this. This year, we\u2019ve seen a significant increase in phishing attacks across the region. This is, in part, due to so many people working remotely because of the pandemic. The shift to remote working placed a lot of emphasis on security awareness. Employees are in a more relaxed environment and more prone to clicking on links and downloading attachments. It\u2019s important we address this as an industry.<\/p>\n\n\n\n<p><strong>What would you say is the silver bullet to success when managing the security of a Middle Eastern organisation?&nbsp;&nbsp;<\/strong><\/p>\n\n\n\n<p>There is no \u2018silver bullet\u2019 as such when it comes to security. A successful cybersecurity programme is based on a combination of technologies, people and policies, all working in harmony together. However, a step in the right direction is helping to move away from a mindset of security monitoring to cyber-risk monitoring. That\u2019s because looking at security events individually without understanding the&nbsp;business impact&nbsp;isn\u2019t viable anymore. For example, you shouldn\u2019t ignore a security alert on your website log without realising the potential impact it can cause in your loyalty programmes. The business impact of security events should be considered and dealt with accordingly. Security is so embedded into business these days that the responsibility can\u2019t be left solely on the shoulders of the IT department. It\u2019s a collective responsibility. The business needs to move forward together to define the risks and drive the security agenda.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Goutam Pudota, CISO and Group Head of Information Security at IFFCO discusses how it &#8211; a leading manufacturer in the food and beverages industry based in the United Arab Emirates &#8211; worked with Secureworks to securely simplify and streamline its operations. Pudota explains how the company leverages Secureworks&#8217; XDR and VDR platforms to support cybersecurity [&hellip;]<\/p>\n","protected":false},"author":21,"featured_media":64946,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[34,3624,331,5,1173,4320,13,79],"tags":[14020,58,14021,14022,587,4187,2264,14023,14024,707,14025],"class_list":["post-64943","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-case-studies","category-case-study-newsletter","category-cloud","category-enterprise-security","category-manufacturing","category-retail","category-top-stories","category-used","tag-cybersecurity-infrastructure","tag-disaster-recovery","tag-iffco","tag-managed-services-solution","tag-phishing","tag-secureworks","tag-soc","tag-taegis-xdr","tag-threat-alerts","tag-threat-intelligence","tag-vdr"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/64943","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/users\/21"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/comments?post=64943"}],"version-history":[{"count":4,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/64943\/revisions"}],"predecessor-version":[{"id":65008,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/64943\/revisions\/65008"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media\/64946"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media?parent=64943"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/categories?post=64943"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/tags?post=64943"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}