2016 HPE Software Innovator Awards João Galdino Souza, Saraiva e Siciliano Brazil’s largest...

2
High-level overview Using HPE Security ArcSight, Saraiva e Siciliano realized the following benefits: • Enables inspection of 500,000 database transactions per day, helping business comply with auditing requirements • Reduces the number of unauthorized transactions by 99 percent, to an average of 10 unauthorized transactions blocked per day • Prevents unauthorized changes to product prices, averting financial losses • Avoids the potentially expensive task of patching legacy software to ensure data is secure • Frees up IT staff members to work on a business transformation project • Provides insights into security requirements for new applications • Achieves return on investment within one month of deploying HPE Security ArcSight Company Saraiva e Siciliano is the leading seller of legal books in Brazil, as well as selling educational books for pre-school, post- secondary and vocational course students. Established more than 100 years ago, the book publisher and retailer has more than 100 stores and an ecommerce website. The company also sells games, music, movies, phones, laptop computers and other electronics. The company’s brick-and-mortar stores receive more than 60 million visitors per year and its online store accounts for more than 3 million orders per year. Contact João Galdino Souza is Chief Security Officer at Saraiva e Siciliano. Business goals Saraiva e Siciliano processes about 1 million credit card transactions per month across brick-and-mortar stores and online. The company wanted to protect against losses from fraud by preventing unauthorized activity on its network, which connects 800 servers to more than 100 brick-and-mortar stores. They wanted an alternative solution to the expensive task of patching legacy applications, and one that could be managed by a small staff. Eventually, the company plans to replace outdated business applications used 2016 HPE Software Innovator Awards João Galdino Souza, Saraiva e Siciliano Brazil’s largest seller of legal textbooks stamps out fraud, using HPE Security ArcSight to monitor over 100 stores Winner Protect Your Digital Enterprise Software • HPE Security ArcSight Enterprise Security Manager

Transcript of 2016 HPE Software Innovator Awards João Galdino Souza, Saraiva e Siciliano Brazil’s largest...

High-level overview

Using HPE Security ArcSight, Saraiva e Siciliano realized the following benefits:

• Enables inspection of 500,000 database transactions per day, helping business comply with auditing requirements

• Reduces the number of unauthorized transactions by 99 percent, to an average of 10 unauthorized transactions blocked per day

• Prevents unauthorized changes to product prices, averting financial losses

• Avoids the potentially expensive task of patching legacy software to ensure data is secure

• Frees up IT staff members to work on a business transformation project

• Provides insights into security requirements for new applications

• Achieves return on investment within one month of deploying HPE Security ArcSight

Company

Saraiva e Siciliano is the leading seller of legal books in Brazil, as well as selling educational books for pre-school, post-

secondary and vocational course students. Established more than 100 years ago, the book publisher and retailer has more than 100 stores and an ecommerce website. The company also sells games, music, movies, phones, laptop computers and other electronics. The company’s brick-and-mortar stores receive more than 60 million visitors per year and its online store accounts for more than 3 million orders per year.

Contact

João Galdino Souza is Chief Security Officer at Saraiva e Siciliano.

Business goals

Saraiva e Siciliano processes about 1 million credit card transactions per month across brick-and-mortar stores and online. The company wanted to protect against losses from fraud by preventing unauthorized activity on its network, which connects 800 servers to more than 100 brick-and-mortar stores. They wanted an alternative solution to the expensive task of patching legacy applications, and one that could be managed by a small staff. Eventually, the company plans to replace outdated business applications used

2016 HPE Software Innovator AwardsJoão Galdino Souza, Saraiva e Siciliano

Brazil’s largest seller of legal textbooks stamps out fraud, using HPE Security ArcSight to monitor over 100 storesWinner

Protect Your Digital Enterprise Software• HPE Security ArcSight Enterprise

Security Manager

Rate this document

Sign up for updates

© Copyright 2016 Hewlett Packard Enterprise Development LP. The information contained herein is subject to change without notice. The only warranties for Hewlett Packard Enterprise products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. Hewlett Packard Enterprise shall not be liable for technical or editorial errors or omissions contained herein.

4AA6-5422ENW, May 2016

Brief | Saraiva e Siciliano

in stores and warehouses for procurement and other purposes. These client-server applications were written in the Delphi 5 programming language, and were built without consideration for today’s security concerns. They also wanted an IT security solution that would help protect their investment in new enterprise resource planning software.

HPE Software products implemented

• HPE Security ArcSight Enterprise Security Manager

HPE Partner

Partner it4us played an important role assisting Saraiva e Siciliano to implement HPE Security ArcSight, including development of an agent to log transactions. This allowed Saraiva e Siciliano to monitor security incidents, prevent unauthorized access and prevent financial losses.

Additional benefits

Using HPE Security ArcSight, Saraiva e Siciliano detected unauthorized changes to the prices of products, which were investigated. As a result of these investigations, they have seen a noticeable drop in suspicious behavior on their network. There have been no unauthorized changes to data since the company started using HPE Security ArcSight, and no financial losses as a result of unauthorized changes to the price of products.

With inadequate data communication infrastructure linking stores to data centers, the company also developed a custom agent that continues to record transactions even if stores go offline. That information is then sent to HPE Security ArcSight once the connection is re-established. The solution can also protect older versions of Windows Server used by different stores. Using HPE Security ArcSight has made it easier to apply security changes to all stores at the same time.

Adopting HPE software has freed up Saraiva e Siciliano’s IT staff to work on their business transformation project. The software has also helped them to identify the security requirements during the application development phase, rather than later, when applying changes could result in greater costs.