About Us

Citrus Consulting Services is the Consulting and the Transformation Services arm of Redington Gulf.

Sunday – Thursday: 9:00AM–6:00PM (Sales), Sunday – Saturday: 24×7 / 365 (Support) E.O#3, Ground Floor, Building 01 Dubai Internet City, P.O Box 501 761 Dubai, UAE (+971) 04 516 1500
(+966) 11 462 5323
info@citrusconsulting.com
Image Alt

Effective Monitoring and Securing Sensitive IT Resources Using Splunk Enterprise Security

Customer Introduction

A leading independent oil and gas producer in Nigeria. The company is listed on the Nigerian Stock Exchange and London Stock Exchange and supplies almost a third of the natural gas Nigeria uses to generate power.

Citrus Consulting Services Enables Effective Monitoring and Securing Sensitive IT Resources Using Splunk Enterprise Security for Oil and Gas Producer in Nigeria.

Challenge Overview

  • Required a monitoring solution for application which could be designed, engineered operationalize as per PCI compliance.
  • Required central logging system.
  • Required application security monitoring.
  • Accurate event triggering and minimum false positive alerts

Solution Overview

  • Built SIEM monitoring to comply with Level 1 PCI requirements. Engagement activities included SIEM requirements gathering, design, and deployment.
  • Performed SIEM content tuning to reduce false positive events and alerts and provide more actionable data to Level 1 responders.
  • Developed solution to monitor for gift card fraud and track value of loss prevention.
  • Worked with HR to build use cases that would detect unauthorized changes to benefits records and “ghost” recipients.
  • Institutionalized a risk review committee and developed security reporting to track progress against specific risk management and efficiency objectives.

Benefits Delivered to Customer

  • Centralized Logging Solution in compliance with PCI standards.
  • Logs collected are evaluated against number of Indicators of compromise (IOCs)
  • Real time threat analysis for consuming and managing threat feeds, detecting threats, and alerting
  • Real time Dashboard for Application teams
  • Customized Alerts as per business requirement and fine tuning to avoid false positives.

Project Info