The bank conducted an extensive process to identify and evaluate potential solutions. It selected the IBM QRadar Security Information and Event Management (SIEM) solution for comprehensive security monitoring, threat detection and actionable insight, along with QRadar Advisor with Watson, the first security solution that takes advantage of IBM Watson® AI capabilities to facilitate the rapid investigation and classification of potential security incidents.
“We always understood that traditional approaches to cyber security would not be effective. The banking industry has tended to rely on post-event diagnosis and response,” Rohan Muttiah says, noting the difficulty banks face in maintaining 24x7 capabilities, the lack of experienced and qualified personnel, and the volume of potential incidents overwhelming human capacity.
IBM QRadar Advisor with Watson, part of the IBM QRadar Security Intelligence Platform, brings cognitive capabilities to aid security analysts in their investigations and response processes. Combined with threat intelligence and security event data from QRadar, the solution helps analysts investigate potential threats by leveraging Watson's natural language processing capabilities across security blogs, websites, research papers and other sources to help shorten cyber security investigations from weeks or days to minutes or hours.
“The increasing frequency of cyber attacks also brings up an overwhelming volume of related data which is near impossible to comprehend quickly,” says Manori Unambuwe, Head-Software Sales – Sri Lanka & Maldives, IBM. “Watson has been trained in the language of cyber security and has ‘read’ more than two million cyber security documents, making available information from research reports not previously accessible to modern security tools.”
IBM QRadar SIEM detects anomalies, uncovers advanced threats and removes false positives. It consolidates log events and network flow data from thousands of devices, endpoints and applications distributed throughout a network. It then uses an advanced security analytics engine to normalize and correlate this data and identifies security offenses requiring investigation.
“Cargills Bank was able to leapfrog these limitations by using IBM QRadar SIEM and QRadar Advisor with Watson to receive real-time, prioritized alerts. IBM’s best-in-class cognitive security portfolio will help us pre-empt threats and mitigate risk, thereby supporting our position as a leading digital bank,” adds Rohan Muttiah.