Nearly 1,500 enterprise customers, over 800 billion logs processed per month, a top five tier one internet backbone provider, a highly accredited and dedicated SOC team with exceptional skills, and two decades of experience in round-the-clock security services.

Cybersecurity companies with such impressive statistics are rare, but NTT Security Holdings (NTTSH) is far from an ordinary company. A renowned leader in the cybersecurity field, it offers cutting-edge solutions that help security practitioners tackle the hurdles of managing large data volumes and derive valuable insights for taking appropriate actions to mitigate ongoing cyber-attacks.

The firm’s solutions have become increasingly important at a time when an astounding 175 zettabytes of data is anticipated to exist by 2025, as predicted by the International Data Corporation. This immense volume will undoubtedly challenge security practitioners’ ability to extract actionable insights, which is crucial for real-time threat detection and timely, accurate responses.

In an effort to support security practitioners in effectively managing the deluge of information and identifying potential threats, NTTSH with its team of professionals who possess a diverse range of technical skills and expertise, has devised a sophisticated data lake in conjunction with a cutting-edge threat detection and response platform called Samurai. This platform facilitates the efficient analysis of vast quantities of security data and is further enhanced with extensive threat intelligence and analytics capabilities. This means security managers are no longer burdened with the integration and management of intricate security stacks, allowing them to focus on the proactive task of safeguarding their organisations against complex threats. Businesses can confidently navigate the ever-changing digital landscape with these solutions, supported by the knowledge that they possess the essential tools and resources to maintain an impregnable cybersecurity posture.

The Samurai platform’s data lake, which stores telemetry and alerts for up to one year, is an additional noteworthy feature for organizations seeking to enhance their threat detection and incident response capabilities. As per IBM Security, breaches take an average of 277 days to detect and contain, underscoring the importance of retaining data for an extended period to perform a comprehensive forensic analysis and threat hunting to detect issues such as lateral movement.

With the Samurai platform’s retention period of one year, organizations can conduct a thorough investigation of any incidents and identify the source and extent of the breach, as well as detect lateral movement within their networks. This extended storage duration also enables intricate threat hunts, supplying users with vital context and visibility to pinpoint potential threats and effectively address them. By preserving telemetry and alerts over an extended timeframe, the data lake helps detect subtle indications of compromise or attack patterns that may have previously gone undetected.

The advantages of the Samurai platform extend beyond its sophisticated analytics engine and data lake. The platform’s open architecture permits integration with a diverse array of security and infrastructure technologies within the client environment. Users can integrate their existing infrastructure with the platform, eliminating the need to choose technologies compatible with their selected detection platform. NTTSH’s ability to integrate and interconnect multiple vendor technologies through cross-domain correlation offers clients a comprehensive view of their environment, unrestrained by a single vendor’s products. Organisations can gain a deeper understanding of their environment’s activities and collaborate more effectively with the SOC.

DELIVERING BEYOND EXPECTATIONS—A TRUE DIFFERENTIATOR

“Over the course of two decades, NTTSH has developed capabilities that enable the automatic and swift detection of security alerts from a huge amount of logs and events,” says Thomas Schoendorff, chief operating officer at NTTSH.

The firm distinguishes itself from its competitors by eliminating barriers between clients and service providers. Its Samurai XDR application revolutionises the cybersecurity landscape by combining state-of-the-art analytics, machine learning (ML), threat intelligence, and automation to deliver a user-friendly solution for managing security threats. The application gives users the tools they need to perform routine tasks, like adding new telemetry sources, without relying on the security operations center (SOC). In addition, users gain the ability to conduct intricate hunts within the data lake, a capability previously reserved for the SOC. This enhanced client access and transparency promote a more collaborative engagement model, providing clients with greater visibility into the work performed.

Over The Course Of Two Decades, NTTSH Has Developed Capabilities That Enable The Automatic And Swift Detection Of Security Alerts From A Huge Amount Of Logs And Events

At the core of the Samurai XDR application is an advanced analytics engine that capitalises on threat intelligence acquired from NTTSH’s Global Threat Intelligence Center (GTIC). By analysing comprehensive and current threat intelligence, it provides prioritization of alerts based on severity and confidence and facilitates a swifter response to threats.

In scenarios where clients lack the necessary technical expertise and resources to manage the XDR application or provide round-the-clock operational coverage, NTTSH offers Managed Detection and Response (MDR) services as a viable alternative. Its MDR service is built on the capabilities of the Samurai platform, providing organisations with advanced protection and security insights from multiple telemetry sources, including cloud, network, computers, and mobile devices. One of the key benefits of the MDR service is that NTTSH’s security analysts take charge of monitoring the client’s environment. Using a state-of-the-art SOC, NTTSH’s team of security analysts employ advanced analytics powered by proprietary threat intelligence and analyst threat-hunting capabilities, providing faster and more accurate detection. This reduces the risk for businesses, which is the most important outcome of all. With NTTSH’s MDR service, the burdensome task of managing XDR solution is eliminated, freeing up organizations to focus on their core business operations while NTTSH’s experts detect and respond to cyber threats.

In its 2023 Global Threat Intelligence Report, accessible on security.ntt, the firm underscored numerous critical cyber threat challenges. These challenges encompassed escalated attacks on vital infrastructure and supply chains, the transition to cloud computing influencing the characteristics of attacks, increased diversity in target scope and attack intensity, and the resurgence of Trojan deployments and botnets. To counter these risks, NTTSH is dedicated to keeping its detection capability as current as possible and, in certain instances, preempting imminent attacks. This is achieved using AI, behavior analysis, kill chain modeling and other advanced analysis that identifies suspicious activities before they pose a threat to clients.

A TRUSTED PARTNER FOR ALL THINGS CYBERSECURITY

Carrying over two decades of industry experience, NTTSH is acclaimed for its successful collaborations with some of the world’s foremost companies, and its partnership with BW Offshore serves as a prime example. BW Offshore, a global enterprise, acknowledged the significance of safeguarding its information technology (IT) and operational technology (OT) environments. However, the convergence of their OT and IT systems rendered their OT environment susceptible to cybersecurity threats previously targeting only IT systems.

BW Offshore joined forces with NTT Security Holdings to devise a holistic cybersecurity strategy, prioritising the protection of their IT and OT environments based on their distinct risk profile. Through this cooperative effort, they implemented round-the-clock threat monitoring for their OT environment and incorporated crucial security processes and analysis throughout their operations. This enabled them to uphold the highest security standards in both environments.

  • We Collaborate Closely With Our Security Analysts To Develop Our Platform And Get More Automation, Ensuring They Can Focus On High-Value Tasks That Demand Their Expertise


Beyond securing their operations, this partnership with NTTSH enabled BW Offshore to explore the potential of digitalisation in their production environment without incurring additional risk from connecting their IT and OT systems. The firm’s security operations centers provided BW Offshore with advanced threat detection services that allowed them to take action to mitigate potential threats before they could impact their operations. BW Offshore was able to enhance the operational efficiency of their global fleet, while NTTSH provided them with the cybersecurity expertise and skills necessary to ensure secure and environmentally conscious operations.

“We collaborate closely with our security analysts to develop our platform and get more automation, ensuring they can focus on high-value tasks that demand their expertise,” says Marcus Silwer, marketing manager at NTT Security Holdings.

NTT Security Holdings has consistently showcased an unyielding commitment to excellence and customer satisfaction, empowering countless organisations worldwide to defend themselves adeptly against cyber threats. The firm’s technical expertise, coupled with its aptitude for delivering groundbreaking solutions, has solidified its position as a trusted partner and leader in the cybersecurity domain. Amid future uncertainties, one aspect remains unequivocal— NTT Security Holdings will continue to champion a safer, more secure digital realm, upholding the same level of dedication to providing its unparalleled solutions.