Success story

IWIS consolidates cybersecurity with MDR service.

Quickly, deda tech was able to activate Managed Detection and Response services in 24×7 mode and then implement a Next Generation SIEM system.

IWIS is a “Thinking Holding,” that is, a group of companies guided by a common thought: to satisfy the supply chain by enabling its member companies to be more competitive in their markets.
Specializing in the building industry with 14 factories, 11 subsidiaries and distributors/resellers in 70 countries around the world, IWIS represents a global supply network of products to ensure energy savings and living comfort, while also developing solutions for major works.

Service centers
54 countries
R&D Divisions
12
Industrial patents
35
SCENARIO
Significantly improve the posture
of corporate security.
Since 1971 starts the activity of IWIS focused on the marketing of Canadian roofing tiles, the first plant of the group is created a few years later in 1977 and the activity begins to develop, over the years also internationally, creating plants in Spain, Turkey, Russia, Serbia, France, Hungary, and the United States.
In 2010 , the holding company IWIS was founded, and in particular since then they have been aiming to be a global supplier of products and systems for construction and large-scale works, investing on continuous research of more and more advanced products and systems.
In fact, at IWIS headquarters, a team of engineers, architects and qualified technicians devote themselves to multi-year research programs in the field of new materials and new products, also focusing on the study of the correctness of production processes.
Such an exponential development of IWIS is the result of quality strategic investments for the company not only in the core activities of the business, but also in everything that is peripheral to the business but fundamental to the development of a solid company.
IWIS needed to protect its digital transformation journey through a cybersecurity strategy adapted to evolving cyber threats.
The company had already invested in preventive services that allowed, however, to react following a blockade, the need now instead fell on a proactive and continuous monitoring service.
IWIS among the various providers turned to deda tech, which was able to understand the real needs of the client and together with them develop a service not off the shelf but tailored to their needs.

Together with the client IT manager, the engineers conducted a comprehensive analysis of the attack perimeter, preventive countermeasures, and pre-existing processes, preparing a multi-step action plan that enabled the company to replace the existing legacy anti-malware solutions that were unsuitable to protect the client’s IT from threats such as ransomware or fileless malware, with an Endpoint Detection and Response (EDR) product with sophisticated attack detection capabilities and behavioral process analysis.
Quickly, deda tech was able to activate Managed Detection and Response services in 24×7 mode and then implement a Next Generation SIEM system to increase visibility of the client’s IT perimeter and enable two advanced technology solutions: user behavioral analysis and deception technology. The use of advanced technologies and the establishment of structured processes in the event of a security incident (operational playbooks) significantly improved the company’s security posture and decreased the risk of a possible cyber attack having major consequences for IWIS’s business.
These aspects were key in convincing the client that deda tech was the right partner for the complete implementation of the project.

Proposal and solution

Delegating the complexity of managing new technologies to counter cyber threats.

 

The deda tech service that best met the customer’s needs was Managed Detection & Response, delivered by the deda tech Security Operation Center (SOC). This service is recommended for companies that not only want to delegate the complexity of managing new technologies to counter cyber threats, thereby increasing their preventive effectiveness, but also need constant and continuous 24×7 event monitoring and correlation, enabling them to identify and investigate, as quickly and accurately as possible, any anomalous user activity or compromise of business-critical assets. The technology component plays a key role in identifying threats or anomalies that trigger investigations and related responses, which is why the service is based on the use of cutting-edge technologies considered leaders in the cybersecurity market.
This key element was demonstrated by deda tech technicians, in a couple of hours, through a DEMO personally tested by the customer, simulating the solution later implemented at IWIS. The business scenario was recreated, and deda tech’s red team used realistic attack activities to demonstrate the responsiveness and response actions that the blue team (deda tech’s specialized defense team) can implement. IWIS was then able to test firsthand how 24×7 coverage can protect its business through:

  1. Constant monitoring of corporate assets;
  2. Proactive search for possible threats within the monitored infrastructure;
  3. Incident response divided into several stages: preparation, detection, analysis, containment, eradication, recovery;
  4. Forensic analysis with root cause reconstruction to highlight cues for improvement.
The MDR service is based on a cloud platform as an evolution and complement to traditional anti-malware technologies. The platform uses threat intelligence & machine learning and allows agents to be managed from a single point. Specifically, the service guarantees the customer of security event triage SLAs with rapid response times and containment of certain threats. Two were the winning elements:

  1. Transparency of relationships and the broad coverage of the perimeter to be defended;
  2. The expertise of technicians and the presence of a dedicated Service Account Manager.

The figure of the Service Account Manager and the availability of an ad hoc platform to dialogue when needed were the key elements that demonstrated the completeness and quality of the solution proposed by deda tech.
This made us feel listened to, followed and protected at all stages of project development and afterwards.

Diego Bozzetto
IT Manager - IWIS
Achievements
Fully delegate, speed up response and reception times, effectively govern a World Wide distributed device fleet.
Cybersecurity is now an increasingly strategic element of business, and maintaining an adequate level of security, while complying with both regulatory and technological compliance, requires expertise and ongoing training.
For this reason, the investment made by IWIS in cybersecurity has been fundamental to its business, because it allows the company to rely on specialists in the field who are able to respond promptly to unknown threats and ensure a 24-hour cybersecurity presence.
At the same time, it allows for optimization of resources, focusing them on core issues for the business, and scaling back costs, which are necessary in this field for upgrading and often costly.
Now IWIS has achieved its goals:

  • Fully delegate h24 manning to certified personnel for endpoint cybersecurity;
  • Speed up the response time and early receipt of possible threats;
  • Effectively governing, with a single web platform, a World Wide distributed device park.
deda tech demonstrated competence, quality, and clarity, the determination at the project stage of the management of requests combined with the presence of the Service Account Manager, conveyed to the client the availability of deda tech at all stages, even after the planning stages.
After a grace period, which is essential to define the rules of engagement and together structure the escalation matrix with priorities and relative time to contain the security incident, the customer has the service complete and active on its systems.
For the future, however, deda tech aims to evolve its Managed Detection and Response service by improving its capabilities to detect sophisticated attacks and decreasing response time through increasingly accurate playbooks and the use of technology automation.
All this is possible thanks to customers like IWIS who continue to choose deda tech by entrusting us with the protection of their business .

CONTACTS

We are ready to listen to you.

Write to us, we are at your disposal.