Chronicle Solutions

Information Security & Risk Management

THE CHALLENGE:
IT SECURITY, RISK AND INTELLECTUAL PROPERTY PROTECTION

Today’s reality is that a significant amount of critical, confidential and proprietary data not only resides on servers perceived as secure, but is also actually traversing networks as part of a daily routine of doing business.  In addition, while advances in IT technologies and communications have helped both large and small organizations virtually do business anywhere at anytime, the threat of data leakage and theft (e.g.: Intellectual Property Theft) has skyrocketed.

In a recent study by the IT Policy Compliance Group, 68 percent of companies are losing sensitive data at least six times a year, and an additional 20 percent are losing sensitive data more than 22 times per year.  It is hard to ignore a problem that often costs the average medium to large organization more than $1 million a year.

While data leakage is often attributed to employees "not thinking" about the ramifications of attaching a file that may contain sensitive information to an email, the cold realities behind data and intellectual property theft loom in the shadows.  Regrettably, the "insider threat" risk remains because criminals no longer need to physically break in and steal vital information; they can just pay an unhappy employee for it instead.

From an IT security and risk perspective, there is a clear need to truly understand what is actually happening on the network.  This need for visibility into content traffic is required in order to better address concerns regarding confidential data loss and intellectual property protection that are usually attributed to a "corporate espionage insider."  In addition to intrusion prevention, protection from attacks, and access controls, today’s IT security professional needs a powerful tool to monitor, analyze, and prove exactly what is happening and to identify those responsible.


THE SOLUTION

Chronicle Solutions has created a network content recorder that is able to easily and intelligently capture, replay and analyze the content in its original format.  This is an extremely easy-to-use and easy-to-learn solution that allows IT security professionals to efficiently monitor and discover potential threats and wrong-doing occurring within their network.

Whether the requirements call for the mobility provided by Chronicle’s netReplay® 2500 PORTABLE or the enduring, proactive benefits found in netReplay® rack-mounted recorders, IT security professionals will be armed with the most effective content monitoring and digital forensic tool available.

Proactive Instead of Reactive

netReplay® has the ability to reassemble data that has already been collected in full packet capture sessions such as Wireshark (Ethereal) or tcpdump.  However, by using netReplay® from the onset (on live network connection), an IT security staff quickly moves from a reactive "capture everything" mode to a much more effective proactive "collect, monitor, research and analyze" approach.

Immediate Benefit

With netReplay's out-of-the-box capabilities, it can begin to immediately capture data - just plug it in.  netReplay® quickly and efficiently collects all data necessary for formal records retention, security evaluations and data leakage detection.

Quick & Efficient Network Content DVR

netReplay® has been described as an exceptional "one of a kind, network content DVR (Digital Video Recorder) that eliminates the digital equivalent of commercials.  netReplay’s intelligent deep-packet inspection and content capture effectively cuts out the recording of duplicate data and network content "noise."

Easy-to-Use = More Efficient

netReplay® will increase the efficiency of a network security team by allowing more personnel to be trained to use the tool.  netReplay® is an easy-to-learn and easy-to-use data capture and monitoring tool that provides immediate benefits.

Credible Results - Seeing is Believing

netReplay® will increase credibility of results.  By replaying exactly what, when, and how content was seen and handled by a particular user, both proof of user’s content and related actions are easily demonstrated.  In addition, Chronicle’s Forensic Information Fingerprinting Engine (FIFE™) provides evidence of user activity that is both forensically accurate and credible.

Increase Effectiveness

netReplay® will increase the effectiveness of a digital forensics effort by providing a high level of precision on whatever it is collecting and analyzing as well as the correlation of all events that lead to any data leakage or theft.  This is accomplished while also complying with any legal requirements, such as privacy and employee rights and statutory limitations.

More Productivity

netReplay® will greatly improve productivity by reducing the time and complexity of data and event log analysis.  With netReplay®, IT security investigators now have the tools to find the proverbial "needle in a haystack" in hours versus weeks or even months.