ITDMs Collaborate to Fight the Cyberattacks

Community-sourced HP Threat Central to help CSO to automate open sharing of security data

HP has come up with a community-sourced security intelligence platform called HP Threat Central to empower CSOs to collaborate on real time in an automated way to combat advanced cyber threats.

The sophistication of cyber attacks has grown substantially in recent years, as adversaries both specialize and share intelligence, tools and plans in order to improperly obtain data and disrupt critical enterprise functions. In isolation, organizations struggle to stay ahead of this new breed of collaborative attacks, placing themselves in constant risk of financial, competitive and reputation losses.

Currently being piloted with a qualified group of HP ArcSight customers, the platform will provide participants with real-time intelligence on the attack vectors, methods, motivations and specific adversaries behind the threats they face. For example, the banking industry often falls prey to a domino attack where one organization is hit with an attack that is later used against its peers until many have been breached. With HP Threat Central, once a threat is identified, authorized community members are alerted in real time, enabling them to look for similar indicators within their own organizations to get ahead of the adversary.

The HP Threat Central beta program is currently available to qualified HP ArcSight ESM customers.

Adversaries today organize around an underground marketplace for sharing resources and techniques to mount increasingly advanced attacks that cause extensive damage to organizations around the globe.To combat collaborative attackers, enterprises must join together by sharing targeted intelligence confidentially and in real time to create a unified industry defense, said Ranndeep Singh Chonker, country manager, HP Enterprise Security Products, India.

What can community members can do with it?

  • Community members can submit threat data, analysis and mitigations to which HP will add data and analysis from HP Security Research and partners
  • Vetted and correlated threat intelligence will then be communicated to members via an online portal that includes a forum for discussion and comments
  • As the community learns more about a specific attack, the adversary and mitigations, this information will also be shared.
  • Beyond the portal, HP ArcSight customers will be able to automatically leverage shared intelligence to take immediate action.
  • Research areas of focus include vulnerability, malware, threat actor and software security with a focus on the technologies, industries and geographies most relevant today.

Nike


Add new comment