21.01.2016 Views

The GSN 2015 Digital Yearbook

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

his team faced—from staffing to budget—ITA deployed a<br />

unique, cloud-based SIEM solution to enhance cybersecurity<br />

capabilities. In addition, Lee led the city’s Cyber<br />

Intrusion Command Center (CICC), a city-wide cybersecurity<br />

working group that leads cybersecurity preparation<br />

and response to security incidents, implemented<br />

the city’s first Integrated Security Operations Center<br />

(ISOC). This ISOC collects and correlates log data and<br />

security events from different security appliances across<br />

the city’s departments into a single database and a useable<br />

dashboard and actionable threat intelligence to<br />

enable a high-level security posture city-wide. Instead of<br />

going to each of the 40 plus departments, Lee and his<br />

team can now monitor everything from clickstreams and<br />

transactions, to security events and network activity, and<br />

analyze all the correlated data from a centralized, customized<br />

dashboard, 24x7 anytime, anywhere; turning<br />

machine-generated data into valuable intelligence that,<br />

in turn, drives good decisions. <strong>The</strong> SIEM solution takes<br />

the City of LA to another level of cybersecurity intelligence.<br />

With the data in one place, the City of LA and its<br />

FBI counterpart, FBI Cyberhood Watch, can quickly and<br />

efficiently gather information about threats, and identify<br />

strategies to prevent future intrusions. <strong>The</strong> solution<br />

has undoubtedly enhanced the city’s ability to manage<br />

and protect the city’s critical infrastructure and digital<br />

assets serving Angelenos. Lee states, “I can confidently<br />

say we have avoided a number of security breach situations<br />

because we implemented these proactive tools.<br />

We have blocked intrusion attempts, have been able to<br />

swiftly correlate data and share threat information to the<br />

stakeholders, and have been able to expedite the time it<br />

takes to close these security incident tickets.”<br />

Link to Web Page of Nominated Organization:<br />

––––––––––––––––––––––––––––––––––––––––<br />

http://ita.lacity.org/index.htm<br />

Name and organization of nominating<br />

contact for this entry, including name, title,<br />

organization:<br />

––––––––––––––––––––––––––––––––––––––––<br />

Caralyn Duke, Account Executive<br />

Qorvis MSLGROUP<br />

Nominating contact’s office telephone and cell<br />

phone:<br />

––––––––––––––––––––––––––––––––––––––––<br />

office: (202) 683-3203<br />

cell: (202) 658-9201<br />

Nominating contact’s email address:<br />

––––––––––––––––––––––––––––––––––––––––<br />

caralyn.duke@mslgroup.com<br />

Address of nominating contact’s organization:<br />

––––––––––––––––––––––––––––––––––––––––<br />

1201 Connecticut Ave, NW Suite 500<br />

Washington, DC 20036<br />

117

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!