collaborate@emergingtech.co LinkedIn UEI JTMSJZJBHXA5 CAGE 7VYV9
Home About Us Leadership Our People Clients Technology Platforms VAR Services Capabilities Cyber Security EHRM Mission Support IT Modernization Infrastructure Management Data & AI Markets Veterans Services Healthcare Defense State & Local Civilian Contract Vehicles Insights Case Studies Accelerators Centers of Excellence Careers Current Openings Contact Us
HOME / CASE STUDIES / FBI ESOC

Enterprise Security Operation Center: 24x7 Cyber Situational Awareness

Emerging Tech security personnel supported the FBI’s Enterprise Security Operation Center with intrusion protection, SOAR implementation, and just-in-time auditing of law enforcement sensitive data.

Client

Federal Bureau of Investigation

The FBI’s ESOC provides agency-wide, 24x7, near real-time actionable cyber-security status information, all-source cyber intelligence & alerts to enable timely decision making. Emerging Tech security personnel assisted ESOC in configurations and implementation of their Intrusion Protection System, SOAR, and other services to provide just-in-time auditing of FBI’s law enforcement sensitive data.

Key accomplishments

What the Work Delivered

  • Developed Incident Response Plan (IRP) with a dedicated cybersecurity playbook.
  • Assisted with the development of whitepapers and case studies to implement Security Orchestration, Automation, and Response (SOAR) products/solutions.
  • Assisted with the planned migration of ESOC services from D.C. to Huntsville, AL.
Services provided

How We Delivered It

Incident Response

Developed IRP highlighting activities performed during the security incident, such as how to contain the incident, data recovery, and capture lessons learned.

Threat Monitoring

Documented procedures to monitor external threats to identify known vulnerabilities and created training modules for security professionals to react quickly on zero-day threats to minimize the overall security impact.

Vulnerability Remediation

Developed an implementation plan to address Critical, High, Medium and Low-level vulnerabilities.

Threat Intelligence

Assisted with the integration of threat intelligence data by implementing a SOAR solution.

Automation

Automated a percentage of day-to-day tasks such as vulnerability scanning, capturing log data and log analysis, and access management for users/services.

Leadership Reporting

Generated metrics and reports for senior leadership so they can make decisions leveraging key performance indicators (KPIs).

Relocation Strategy

Assisted senior leadership with strategy development to face key challenges when moving 24/7 ESOC from D.C. to AL, key challenges included retention & recruiting efforts, infrastructure transportation, and training & continuous development of current staff.

Get in touch

Have a Program that Looks Like This One?

Let’s talk about how we can help.