Success Story / Government

How Ogden City Extended their Security Operations to 24×7 with Adlumin’s Managed Detection and Response platform plus extended risk management and security tools.

Challenges

  • Seeking an extended security team to monitor 24×7 with alerting capabilities.  
  • Looking for a platform with higher security to protect against the rising ransomware attacks within its industry.  
  • Seeking a cloud-native solution to fit their security plan and strategy better.  

Results

  • Signed with Adlumin for the next five years and deployed the MDR platform with extended risk management and security tools. 
  • Out-of-the-box cloud-native setup in 30 minutes, providing full-time visibility for Ogden City’s network team. 
  • 100% Extended Detection and Response (XDR) capabilities and modules available to shed light on Ogden City’s security journey.  
  • External view added to security program with 24×7 darknet monitoring and automatic alerts to affected users or those responsible. 

Ogden City Secures 1,000 Endpoints

Ogden City is a local government entity headquartered in Ogden City, Utah housing 700-1,000 employees, depending on seasonal hires. Ogden City’s network team is responsible for securing civilians’ data and every internal department, including engineering, accounting, law enforcement, and beyond. The organization primarily works as gatekeepers for highly personal and sensitive data. Its main goal is to secure all data from a technical standpoint while making it easily accessible for users. Additionally, they are tasked with maintaining regulatory compliance by providing a level of transparency that government entities require.

The Search for Consistent Alerts Lead to a 5-Year Contract

Before Adlumin, Ogden City worked with a Security Information and Event Management (SIEM) platform for several years. They soon discovered that they were looking for a platform and service to build the foundation of a Security Operations Center (SOC). Specifically, a platform that streamlines data ingestion, analysis, and compliance workflows throughout their enterprise. Their previous solution was bare bones and did not include all the features and products they have now, including their SOC backed by experts and trained professionals, Snapshot 365, and SIEM platform.

As cyber threats change daily, Ogden City knew it had to get ahead of protecting its organization around the clock. Previously, Ogden City conducted an internal study to evaluate its security posture and noticed quite a bit missing. They looked to Adlumin to take their knowledge regarding their network environment and expand on it, providing its team with expert advice. After experiencing a demo and a 14-day free trial, they signed a 5-year contract with Adlumin.

MDR++ Deployed in 30 Minutes: A Cloud Vision Brought to Life

Ogden City describes its network as a hybrid with a cloud-native vision. The organization has over 1,000 devices and needed a solution that could start collecting data immediately and ingest environmental telemetry in real-time. When looking for an MDR++ platform, they highly considered moving onto a full-time cloud environment, as this is a significant factor when choosing any type of vendor. Adlumin offers a cloud-native and serverless solution that deploys in minutes, no matter the architecture or technology, without relying on hardware or software integrations.

Adlumin’s MDR platform is like no other. Everything is in one place, and an external view of their security landscape is within reach. The platform’s One-Touch Compliance Reporting was a critical feature for Ogden City due to the standards and government regulations they are responsible for upholding. The module provides Ogden City’s network team with compliance reporting based on live, accurate, and contextualized data. This allows them to instantly know where there are deviations from policy or misconfigurations that threaten their security posture.

— Brian Martinson, Networking, Operations Manager, Ogden City

Something that stood out with Adlumin was how easy it was to implement and grab logs, whether it was on-prem or in the cloud, and then on everybody’s desktops. We knew that it was going to be a chore or task, and it turned out that it wasn’t. And that was a huge feature for us. It was set up in 30 minutes.”

Employees are 9-5, and Cybercriminals are not: A Security Team Extension 

Municipalities must think from a proactive security mindset, especially when ransomware threats are growing. Cybercriminals do not work the regular 9-5; they are searching for the perfect entry point around the clock. Subsequently, Ogden City was looking for a security operations center that would be an extension of their network team. This was essential for Ogden City because they needed support outside regular work hours. Adlumin’s SOC team monitors, anticipates, detects, and reports threats for them.   

From a security standpoint, Ogden City’s network team is in a much safer position. Adlumin’s SOC offers 24×7 darknet exposure monitoring extending from internal to external, seeing the entire threat landscape. With automatic alerting included, exposed credentials are quickly identified and cleaned up with notifications to affected users or those responsible. This eliminates the need for Ogden City’s team to darknet monitor and allows Adlumin to act as a proxy, empowering them to operate securely.  

“We have dedicated full-time employees, but we are not 24/7, and our network is. So, that was a driving factor. Cybersecurity experience is great, and we welcome any that we can get. We feel we have a good handle on that, but we always love talking to the pros [Adlumin].”

– Brian Martinson, Networking/Operations Manager at Ogden City

Visibility in Action: Out of Country Logon Alerts

Adlumin’s features changed how Ogden City’s network team tackles incidents by bringing threats to light through its customizable alerts. Ogden City trusts that Adlumin will discover threats and alert them on and off working hours. When the network team comes to work, they have much more visibility into what is happening inside and outside their IT landscape.

For example, after Adlumin’s MDR platform was deployed within Ogden City’s network, the network team experienced an incident where there was a logon from outside the United States. Individuals within the network team were immediately alerted by Adlumin’s team to block the out-of-country logon. All source information and transparent insights were provided so the team could act quickly and confidently.

 “It’s not just alerting us. There is a team investigating behind it as well. It is accurate, and there are trained professionals that know what they are doing and are knowledgeable on cybersecurity and keep up in the field. Those were huge wins for us.” 

– Brian Martinson, Networking/Operations Manager at Ogden City

Eliminate Risks. Exceed Expectations.

Municipalities should consider an MDR platform that offers a 24×7 first-response team in addition to 360-degree visibility bringing maximum illumination to security operations. Anti-virus programs or SIEMs are not enough to protect organizations when constant monitoring is necessary. Regardless of size or location, government cybersecurity is essential to mitigate the level of destruction ransomware and other cyberthreats can cause.

Ogden City’s network team enhanced its IT environment and implemented a proactive security strategy. They found a platform tailored to combat threats within their industry. Specifically, they found a solution with advanced alerting that allowed them to command more visibility, authority, and options with Adlumin to stay informed about what was happening on their network.  

Austin Knudsen, Network Admin at Ogden City, says, “We have more visibility into more aspects of our network than before. We are receiving alerts for Office 365 events, failed login attempts, and many others we never had. Adlumin has given us a better idea of what is happening behind the scenes and insight into what we need to start controlling and changing.” Ogden City took control of its network and IT landscape by trusting Adlumin as its extended security team.

Adlumin_SOC_Graph
About Adlumin 

What you can’t see poses the greatest risk to your organization. Your exposures lurk in the cloud, hybrid environments, and the darknet. There are countless gaps where threats can hide before they lead to business disrupting events like ransomware shutdowns or massive data breaches.   

Adlumin Inc. is a patented, cloud-native Managed Detection and Response (MDR) platform plus extended risk management and security services. The platform focuses on advanced cyber threats, system vulnerabilities, and sprawling IT operations to command greater visibility, stop threats, reduce your business risk, and automate compliance. The command center for security operations, Adlumin leverages powerful machine learning, identifies critical threats, automates remediation rules and systems updates, and provides live continuous compliance reporting. Don’t let your IT organization be caught in the dark.    

Illuminate Threats, Eliminate Risks, and Command Authority with Adlumin. 

Ready to demo?

Schedule a briefing and live demo of Adlumin’s SIEM platform and learn more about key features designed for security and compliance.