Nippon Steel Solutions Corporation (NSSOL) launched “NSSIRIUS” on the 20th, a service designed to minimize damage from security incidents caused by cyberattacks and ensure business continuity. NSSIRIUS is a service led by a team of security experts (SAMs: Security Account Managers) dedicated to each client company. It utilizes CrowdStrike’s “CrowdStrike Falcon Next-Gen SIEM,” which comprehensively manages multiple environments, including endpoints, servers, and networks, to minimize damage by implementing countermeasures in a timely manner.
NSSOL’s experience in system construction and operation as an SIer, combined with practical knowledge gained through actual incident response, allows for a deep understanding of each company’s business characteristics and system environment, resulting in the creation of optimal countermeasures for each company. In addition to utilizing a variety of security products, the service correlates logs from servers, networks, and other sources, providing a bird’s-eye view of the entire IT system for proactive response. We provide security professionals with advanced security certifications, such as CISSP and Information Security Specialist certifications, as standard as SAM, and provide comprehensive support for customers’ CSIRT operations from both proactive and reactive aspects. Proactive preparation involves conducting risk assessments and interviews about each customer’s unique IT environment to gain a deep understanding of their current security posture and promote preparations for potential incidents. Reactive response involves classifying the urgency of alerts when an incident occurs and taking initial action to prevent the spread of the issue, such as isolating the system.
We then use our XDR platform to consistently identify the cause, conduct detailed analysis, investigate the damage, recover, and plan measures to prevent recurrence. This helps customers quickly restore and rebuild their business. By purchasing annual credits in advance, this service becomes a “retainer” contract, which prioritizes incident response. This service can be used immediately, eliminating the time lost during quotes, orders, and personnel arrangements that often occur during incidents. In addition to incident response, NSSOL offers flexible hourly access to necessary services, including risk assessments and vulnerability diagnosis, even before an incident occurs. This allows for optimal use of services when needed, resulting in efficient and effective security operations. The service utilizes CrowdStrike’s log management and analysis platform, CrowdStrike Falcon Next-Gen SIEM, as its XDR platform.
こちらもお読みください: NRIセキュア、PCI DSS自己評価ツールの提供を開始
By collecting and storing a wide variety of security logs, including those from endpoints, and using advanced correlation analysis, including AI, to identify signs of increasingly sophisticated intrusion methods, NSSOL enables accurate cause investigation and accountability. Services range from routine response to initial response and investigation support. As a systems integrator, エヌエスソル has expertise in system recovery and reconstruction, and can provide additional support tailored to each customer’s situation.
ソース ヤフー

