THANK YOU FOR SUBSCRIBING


Jason Ingalls, Founder & CEOIn the wake of such commitment and dedication to delivering outstanding cybersecurity risk management, it stands to reason that Ingalls Information Security sets itself apart in the market as the best-in-class cybersecurity solutions and services provider. When asked about the vital prerequisites for cyber resilience in an IT enterprise, Ingalls says, “Bolstering an organization against intrusions is similar to preparing a fort for an imminent enemy attack. The high walls of a castle or the moat surrounding it serve as the first line of defense against attacks. When the enemies get past this layer, they are faced with cavalry, archer towers, mortars, and the best of weapons guarding the fort. As a whole, there are multiple layers of security protecting the ultimate prize. Enterprise IT architectures are similar to such establishments, where there are multiple layers of security and control, translating into an overall cybersecurity portfolio.”
"Through our cybersecurity solution, we can alert IT professionals of suspicious log-ins or malicious activities that normally go undetected"
At a time when organizations are fighting against hacktivists and cybercriminals, Ingalls’ analogy breaks down cybersecurity into multiple preventive measures, highlighting various prerequisites that are crucial for enterprise security. From endpoint protection to the vulnerability management solution implemented by an organization, every layer of cybersecurity plays a predominant role in keeping attackers at bay. To that end, Ingalls Information Security’s portfolio of cybersecurity and managed security solutions safeguard the IT fortress of organizations. It nurtures an arsenal of cybersecurity tools and a plethora of best practices, which ensure the resilience of security infrastructures.
Fighting Fire with Fire
Ingalls Information Security’s arsenal of cybersecurity services is diversified across Incident Response, Managed Detection and Response (MDR), technical testing, and consulting services. Irrespective of the origin of cybercrime— whether by a hacker, malware, advanced persistent attacks, or the negligence of an employee— Ingalls Information Security is agile in responding to cyber intrusions through tailored assessments of client infrastructures. “When victims of a cyberattack approach us for help and we investigate, we ask ourselves if our MDR system could have prevented this attack.
And, if the answer was ever “no,” then it would be clear to us that we have discovered something new. We would then engineer a solution to address the problems relevant to this use case,” adds Ingalls. The company’s portfolio of solutions is designed to address various such use cases, be it prevention of an attack or recovery from a previous one. The CEO emphasizes that his company does not sell a set of tools, software, or even a license, but instead offers a holistic, integrated cybersecurity solution that includes the tools, processes, and people required to effectively manage cyber risks.![]()
Bolstering an organization against intrusions is similar to preparing a fort for an imminent enemy attack
One of the common use cases the company caters to is phishing prevention and response. Phishing is a well-known, yet often disregarded as trivial cybercrime of the current day. Though the most-savvy individuals can dodge such email attacks, non-native English speakers often get trapped, as they do not have the required language proficiency for understanding the motive behind such mailers. “We recently witnessed a case where one of our client’s employees in Africa had their email credentials stolen,” explains Ingalls. Other employees were unaware of what was happening, and they were replying to what they thought were legitimate emails. Most people do not report this commonplace activity, however log data showed the malicious activity and an alert was generated. Upon recognizing the risk areas for this client, Ingalls Information Security recommended the implementation of a multifactor authentication solution, which drastically reduced risk for the client.
Ingalls Information Security’s success at resolving such issues is merely the tip of the iceberg. The company transcends the traditional barriers of cybersecurity by curating solutions for specific use cases or areas of applicability. A noteworthy solution that testifies the company’s capabilities in this arena is its Managed Detection and Response (MDR) offering. By incorporating additional layers of cybersecurity, Ingalls Information Security’s MDR solution solves for multiple enterprise requirements: advanced detection, threat hunting, anomaly detection, and response guidance. Collectively, these multiple layers of cybersecurity form the defense-in-depth fortress that safeguards information from unauthorized access or cybercrimes. Within this cybersecurity architecture, Ingalls Information Security incorporates up to fifteen different security controls through its MDR system. From email to endpoints to data repositories, the entirety of an enterprise IT infrastructure is protected against a multitude of cyberattacks.
Ingalls Information Security’s Managed Detection and Response capability provides a holistic view of every action occurring on an endpoint, revealing vulnerabilities such as compromised credentials. One of the many ways to gain access into an IT infrastructure without getting detected is by obtaining the credentials of the employees—a technique that goes undetected through traditional security checks. “When credentials are compromised, attackers look like regular users, and everything seems normal to most detective controls. However, our deception module can alert IT professionals on suspicious or malicious activities that go undetected by legacy systems,” explains Ingalls. The approach functions as yet another layer of security within the defense-in-depth architecture.
On the vulnerability assessment side, Ingalls Information Security provides vulnerability data using the Common Vulnerability Scoring System (CVSS), highlighting patching gaps within a client’s environment, and allowing them to craft a solution that addresses the unique requirements. The company’s team of experts pays close attention to CVSS scores above six—especially critical vulnerabilities—to ensure that their clients efficiently patch the vulnerabilities before they become exploited. Understanding such vulnerabilities has always been Ingalls Information Security’s core competency. In fact, the company played a pivotal role in helping clients recover from the major credit card compromises of 2012. “We led the breach response program for a large victim in 2012 when numerous credit cards were compromised due to a SQL injection attack on web servers. We were able to showcase the vulnerabilities associated with SQL servers at a domain level and help them fix those issues,” adds Ingalls. Such breach response programs position Ingalls Information Security as the first responders of cybercrimes in the enterprise security landscape.
One of the many cases that shed light on Ingalls Information Security’s proficiency in mitigating cybercrimes is of a large multinational non-profit organization, which had suffered a security breach in 2017. Within 30 minutes of notice, Ingalls Information Security re-established internet connectivity for the compromised infrastructure and brought back essential services such as email and other critical operations to normalcy. Simultaneous to notifying Ingalls, the non-profit organization had also alerted its cybersecurity insurance providers of the breach. The cybersecurity insurance vendor took 72 hours to respond, however by that time, Ingalls Information Security had already concluded the breach response. The cybersecurity insurance provider wanted to document the breach, and Ingalls helped them implement the necessary tools, providing essential evidence to support the investigation.
Impressed by the collaboration, the non-profit organization sought Ingalls Information Security’s assistance in understanding the risk associated with their global IT infrastructure that comprised over 8000 professionals. Ingalls Information Security’s consultants visited war-torn regions to conduct a cybersecurity assessment on refugee databases that contained tens of thousands of confidential information sets. By deploying sensors for vulnerability assessment and data aggregation across Asia, Europe, Africa, Mid-East, and the Americas, Ingalls Information Security performed a comprehensive evaluation of the client’s global infrastructure and implemented sophisticated endpoint security solutions. “The non-profit organization’s IT infrastructure was distributed around the globe with people from many different cultures and languages. We told them how parts of the infrastructure could be the Achilles Heel of the organization, and helped manage the cybersecurity programs consistently,” adds Ingalls. The collaboration testifies how Ingalls Information Security upholds its tagline, ‘Prevent where we can, respond where we must, and do it as fast as possible.’
Resolving crisis by crisis, Ingalls Information Security works to address multiple cybersecurity challenges while enhancing its managed security services. The company’s ability to respond to attacks befits their recognition as the First Responders of cybercrimes in the enterprise security landscape. The unique approach and the resilient posture donned by Ingalls Information Security serves as a beacon of light for clients worldwide in their hour of crisis.
Company
Ingalls Information Security
Management
Jason Ingalls, Founder & CEO
Description
Ingalls Information Security provides organizations with a portfolio of integrated cybersecurity, including incident response, MDR, technical testing, and consulting services. The portfolio of solutions and services are designed to address various use cases, be it prevention of an attack or recovery from a previous one. By devising multiple tools for information security, the company creates multiple layers of cyber security to form the defense-in-depth fortress that safeguards information from unauthorized access or cybercrimes. Through these solution sets, Ingalls nurtures an arsenal of cybersecurity solutions and a plethora of best practices, which ensure the resilience of security infrastructures
Simple Tips:
Before You Go
• If You Connect IT, Protect IT. Whether it’s your computer, smartphone, game device, or other network devices, the best defense against viruses and malware is to update to the latest security software, web browser, and operating systems. Sign up for automatic updates, if you can, and protect your devices with anti-virus software. Read the Phishing Tip Sheet for more information.
• Back up your information. Back up your contacts, financial data, photos, videos, and other mobile device data to another device or cloud service in case your device is compromised and you have to reset it to factory settings.
• Connect only with people you trust. While some social networks might seem safer for connecting because of the limited personal information shared through them, keep your connections to people you know and trust.
• Keep up to date. Keep your software updated to the latest version available. Maintain your security settings to keep your information safe by turning on automatic updates so you don’t have to think about it and set your security software to run regular scans.
• Double your login protection. Enable multi-factor authentication (MFA) to ensure that the only person who has access to your account is you. Use it for email, banking, social media, and any other service that requires logging in. If MFA is an option, enable it by using a trusted mobile device, such as your smartphone, an authenticator app, or a secure token—a small physical device that can hook onto your key ring. Read the Multi-Factor Authentication (MFA) How-to-Guide for more information.
During Your Trip
• Stop auto-connecting. Some devices will automatically seek and connect to available wireless networks or Bluetooth devices. This instant connection opens the door for cybercriminals to remotely access your devices. Disable these features so that you actively choose when to connect to a safe network.
• Stay protected while connected. Before you connect to any public wireless hotspot—such as at an airport, hotel, or café—be sure to confirm the name of the network and exact login procedures with the appropriate staff to ensure that the network is legitimate. If you do use an unsecured public access point, practice good Internet hygiene by avoiding sensitive activities (e.g., banking) that require passwords or credit cards. Your personal hotspot is often a safer alternative to free Wi-Fi. Only use sites that begin with “https://” when online shopping or banking.
• Play hard to get with strangers. Cybercriminals use phishing tactics, hoping to fool their victims. If you’re unsure who an email is from—even if the details appear accurate—or if the email looks “phishy,” do not respond, and do not click on any links or attachments found in that email. When available use the “junk” or “block” option to no longer receive messages from a particular sender. Read the Phishing Tip Sheet for more information.
• Never click and tell. Limit what information you post on social media—from personal addresses to where you like to grab coffee. What many people don’t realize is that these seemingly random details are all that criminals need to know to target you, your loved ones, and your physical belongings—online and in the real world. Keep Social Security numbers, account numbers, and passwords private, as well as specific information about yourself, such as your full name, address, birthday, and even vacation plans. Disable location services that allow anyone to see where you are—and where you aren’t— at any given time.
• Guard your mobile devices. To prevent theft and unauthorized access or loss of sensitive information, never leave your equipment—including any USB or external storage devices—unattended in a public place. Keep your devices secured in taxis, at airports, on airplanes, and in your hotel room.