CYBERSECURITY

Booz Allen Hamilton Partners with Acalvio to Provide Advanced Cyber Deception Capabilities

Booz Allen | July 26, 2022 | Read time : 04:12 min

Booz Allen news
Booz Allen Hamilton (NYSE: BAH) announced today it has partnered with Acalvio Technologies to improve the nation’s cybersecurity operations with proactive defenses that will help government and commercial organizations build greater resilience in the face of an increasingly dynamic threat landscape. This partnership complements Booz Allen’s National Cyber strategy by adding cyber deception to the firm’s intelligence-grade tradecraft and full-spectrum capabilities.

Acalvio’s patented and award-winning Autonomous Deception product, ShadowPlex, the only advanced cyber deception product with FedRAMP certification, enables organizations to detect, investigate, and respond to malicious activity in information technology (IT) and operational technology (OT) environments across on-premises and cloud deployments. Together, Booz Allen and Acalvio will bring these sophisticated capabilities to government and commercial clients to combat advanced cybersecurity challenges, including advanced persistent threats (APT), ransomware, and insider threats. Key benefits of the partnership include:

Accelerated Threat Detection to Connect the Dots: With more than 5,000 cyber professionals with proven skillsets to support clients, Booz Allen cuts through the noise and connects across missions, sectors, and data silos to provide a comprehensive view of the threat landscape. ​Now, with Acalvio’s ShadowPlex, clients can better prioritize the endless number of alerts they receive with high-confidence alerts across identity management and cyber asset threats that are not always prevented by traditional sensor strategies. This approach reduces the attacker dwell time with early detection and increases security operations center efficiency with sophisticated investigation.

Adversarial Insights to Outpace the Competition: Backed by over 20 years of support across classified missions and commercial critical infrastructure sectors, Booz Allen uses a combination of reverse engineering, defensive technologies, predictive analytics, vulnerability assessments, proactive threat hunting, artificial intelligence (AI), and machine learning (ML) in preparation for adversaries.​ Now, this portfolio adds Acalvio’s patented Deception Farm architecture, a key differentiator for clients, to deploy deceptive artifacts—like fake hosts or “honeypots” —that act as tripwires to detect intruders to better understand their behaviors. Combined, these solutions allow for new and unique insights that can be quickly implemented to stop bad actors in their tracks.

Automated Deployments to Stay Ahead: Innovative solutions are only as good as their ability to rapidly integrate into the mission and quickly drive outcomes. Acalvio’s ShadowPlex automates and simplifies the configuration and deployment of deception artifacts, combining pre-defined playbooks with an AI-based recommendation system. With this partnership, Booz Allen will provide ready-to-deploy packaged solutions that automate service delivery to create scale, with lower cost, and greater mission impact.

“As cyber threats grow increasingly advanced, Booz Allen is committed to developing secure, trusted, and resilient strategies that enhance the nation’s cybersecurity posture, To outpace the adversary, it is imperative that government and commercial organizations better integrate and synchronize the way they conduct cyber offense and defense. Booz Allen’s partnership with Acalvio achieves this, using offensive insights to inform cyber defense and addressing current gaps in the marketplace. This innovative approach operationalizes insights in real time so we can evolve our solutions to keep pace with the cyber landscape.”

-Garrettson Blight, Director of National Cyber Solutions Booz Allen.

The strategic partnership adds cyber deception to Booz Allen’s multiple cyber-enabled platforms for OT, cloud security, 5G technology security, connected health, and weapons systems cybersecurity, and complements Booz Allen’s existing operational capabilities such as threat hunting, detection engineering, and zero trust.

“We are proud to partner with Booz Allen to deliver innovative and ready-to-deploy cyber deception capabilities for government and commercial clients, These offerings will empower government and commercial organizations to combat advanced cybersecurity challenges with solutions that deploy at speed and at scale in a fast-changing environment. With a combined focus on relentless innovation, this collaboration will allow clients to stay ahead of the competition and defend their most critical assets.”

-Ram Varadarajan, CEO and Co-founder of Acalvio Technologies.

With cross-sector mission understanding, battle-tested approaches, and ready-to-deploy solutions, Booz Allen is disrupting how the nation tackles cybersecurity and is taking a holistic approach to anticipate and solve the most complex cyber challenges. Learn more about Booz Allen’s vision for bolder cybersecurity strategy, operations, and solutions, and the firm’s long history of supporting U.S. government work in cyber defense and offense.

About Booz Allen Hamilton-
For more than 100 years, military, government, and business leaders have turned to Booz Allen Hamilton to solve their most complex problems. As a consulting firm with experts in analytics, digital solutions, engineering, and cyber, we help organizations transform. We are a key partner on some of the most innovative programs for governments worldwide and trusted by its most sensitive agencies. We work shoulder-to-shoulder with clients, using a mission-first approach to choose the right strategy and technology to help them realize their vision.

Spotlight

The Commerce Data Service maximizes statistics to better serve the public. In this video, Chief Data Scientist Jeff Chen describes the development of a new data visualization tutorial that examines the severity of hail in the Midwestern U.S.

Spotlight

The Commerce Data Service maximizes statistics to better serve the public. In this video, Chief Data Scientist Jeff Chen describes the development of a new data visualization tutorial that examines the severity of hail in the Midwestern U.S.

Related News

EMERGING TECHNOLOGY, CYBERSECURITY

Lunavi Achieves CJIS Compliance to Provide Secure IT Solutions for Criminal Justice and Government Organizations

Lunavi | September 08, 2022

Lunavi, a top provider of business technology consulting and managed IT services, has gained Criminal Justice Information Services (CJIS) compliance accreditation for customers in the State of Colorado across its hosted services including colocation data centers and private cloud platforms. This independently certified compliance measure assures strict data security for law enforcement and similarly regulated government organizations whose technology services are hosted by Lunavi. After attaining accreditation in Colorado, additional certifications for clients in other states will be a simple process. CJIS is a stringent and comprehensive cybersecurity standard. The Criminal Justice Information Services Division is the largest division of the Federal Bureau of Investigation and provides a centralized source of criminal justice data to various government agencies and authorized third parties. Any entity engaging with sensitive information from the US Justice Department is required to adhere to CJIS policies for networking, data encryption, and remote access, among other criteria. "Achieving CJIS compliance is another example of the lengths Lunavi will go to satisfy client requirements as they change over time, In this case we had a SLED [State, Local, Education Industry] customer who was adding police and emergency response systems to a Lunavi private cloud. While we already offer strong security and compliance measures like HIPAA and SOC, we were happy to implement new audits, logging, and training to our existing access controls and incident response programs in order to meet CJIS standards." -Bob Heskett, Director of Security and Compliance at Lunavi. CJIS compliance is centered on the principal of least privilege or a "need-to-know, right-to-know" standard. These access controls, combined with logs, data management tools, encryption, and systems monitoring, allow Lunavi to help clients achieve CJIS compliance within their hosted information systems and prepare for a federal audit. "Information Security continues to grow in importance as phishing, malware, ransomware, and other attacks proliferate, Government agencies are a prime target for attackers due to large quantities of personal data stored within IT systems. Lunavi is always seeking to improve our security standards, monitoring, and response methods. This CJIS compliance further cements our cybersecurity leadership and abilities." -Cortney Thompson, CIO at Lunavi. About Lunavi: Lunavi, based in Cheyenne, WY, helps companies digitally transform their businesses and illuminate the path forward in IT modernization through the power of human ingenuity. Lunavi helps organizations in technology, energy, financial services, healthcare, education, government and others to develop business applications, solve traditional IT challenges, and extract ROI with comprehensive services in cloud migration, modern application development, and managed services. With locations throughout North America in Denver; Cheyenne, WY; Omaha, NE; Atlanta; Seattle, and Toronto, and its status as a Microsoft Azure Expert MSP, Lunavi delivers a remarkable customer experience to help navigate what's possible, what's next.

Read More

EMERGING TECHNOLOGY, CYBERSECURITY

3M Health Information Systems division secures key federal government clearance for platform IT and security

3M | September 09, 2022

The 3M Health Information Systems (3M HIS) division has achieved fully authorized Federal Risk and Authorization Management Program (FedRAMP) status for its 3M RevCycle health services platform (RHSP). 3M HIS is the company's first division with a FedRAMP-approved product. With this designation, 3M RHSP is published on the FedRAMP marketplace, allowing federal entities to more easily contract and work with the company. 3M RHSP hosts and supports key operations offered by 3M HIS, including natural language processing (NLP) support for medical coding, clinical documentation integrity, clinician input and medical coding edits, self-service reporting, and evaluation and management. 3M RHSP utilizes robust statistical methodologies to create a comprehensive NLP platform that suggests medical codes, assists with medical terminology, and eases the provider front-end workflow. "We duplicated our commercial Health Services Platform to operate through Amazon GovCloud to achieve a fully authorized FedRAMP status, I am extremely proud of our federal markets team for achieving a FedRAMP ATO (authority to operate), which provides our platform with enhanced visibility, opens the door for us to secure cloud-hosted contracts with federal organizations, and makes it easier for us to add more products and solutions that are cybersecure and government approved." -Kim Aiello, director of federal market solutions, 3M HIS. The federal government is one of the largest buyers of cloud technology, according to FedRAMP. Cloud service providers (CSPs) offer innovative products that can help federal agencies save time and resources while meeting their critical mission needs. FedRAMP is a government-wide program that promotes the adoption of secure cloud services across the federal government by providing a standardized approach to security and risk assessment for cloud technologies and federal agencies. For CSPs, FedRAMP provides a standardized security framework for all cloud products and services that is recognized by all executive branch federal agencies. CSPs only need to complete the FedRAMP Authorization process once for each cloud service offering and perform continuous monitoring, with all agencies reviewing the same continuous monitoring deliverables, creating efficiencies across the government. About 3M: 3M ( NYSE: MMM) believes science helps create a brighter world for everyone. By unlocking the power of people, ideas and science to reimagine what's possible, our global team uniquely addresses the opportunities and challenges of our customers, communities, and planet.

Read More

EMERGING TECHNOLOGY, GOVERNMENT BUSINESS, GOVERNMENT FINANCE

UK Export Finance Leverages Informatica Cloud Platform to Help Businesses Scale Globally

Informatica | September 22, 2022

Informatica® (NYSE:INFA), an enterprise cloud data management leader, today announced that UK Export Finance is modernizing to the cloud with Informatica’s Intelligent Data Management Cloud (IDMC), freeing up team resources to better serve UK businesses of all sizes and sectors. UK Export Finance is the world’s first and oldest export credit agency, its mission is to advance prosperity by ensuring no viable UK export fails for lack of finance or insurance, doing that sustainably and at no net cost to the taxpayer. In the last year it supported 545 companies supporting exports in 61 countries. The small but nimble department is undertaking a digital transformation journey and selected Informatica to modernize its data architecture on a single cloud platform. Informatica’s IDMC enables enterprises to manage, own and derive insights from their data in the Cloud. UK Export Finance kicked off its digital transformation with a focus on connectivity and fast data ingestion. The IDMC enabled seamless integration with Azure DevOps and Power BI and allows UK Export Finance to manage all data pipelines from a single, browser-based tool and usage-based pricing has lowered the total cost of ownership. With a legacy integration stack, the UK Export Finance technology team was spending more and more time on maintenance and manual hand-coding to rebuild connectors to meet the specs of modern data architectures, taking time away from important projects. This, along with evolving international standards and regulatory requirements, made it the right time to modernize to the cloud. After an intensive decision-making progress, UK Export Finance chose Informatica’s cloud-native IDMC for its best-in-class capabilities, wide array of codeless connectors, and ease of implementation. With AI-powered automation and re-usable templates, IDMC has reduced data loading and build times by 40%, allowing the UK Export Finance technology team to focus on more strategic initiatives. Developers and data scientists are no longer tied down with maintenance and instead applying their expertise in building reports that unearth insights and value from the data for the UK exporters the department serves. “With a mission to better serve British businesses to enter new markets, maximize growth potential and increase the volume of export sales, our team looks to data to unearth insights and uncover new strategies, Informatica’s Intelligent Data Management Cloud has helped alleviate the maintenance and build burden, allowing our team to work on more interesting, strategic initiatives and deliver data-driven recommendations for the UK Exporters we support.” -Daniel Cozens, Senior Technical Lead, UK Export Finance. How businesses manage and innovate with data can be the decider on whether they become an industry disruptor or get left behind. With the IDMC, UK Export Finance can improve operational efficiency, eliminating inefficient hand coding and democratise data across the department to allow faster time to value and timely insights, said Jason Tooley, VP Informatica. We’re pleased to be working with UK Export Finance to unleash the power of its data to help UK businesses and industries thrive. About Informatica: Informatica (NYSE:INFA), an Enterprise Cloud Data Management leader, empowers businesses to realize the transformative power of data. We have pioneered a new category of software, the Informatica Intelligent Data Management Cloud™(IDMC), powered by AI and a cloud-first, cloud-native, end-to-end data management platform that connects, manages, and unifies data across any multi-cloud, hybrid system, empowering enterprises to modernize and advance their data strategies. Over 5,000 customers in more than 100 countries and 85 of the Fortune 100 rely on Informatica to drive data-led digital transformation. About UK Export Finance: UK Export Finance is the UK’s export credit agency and a government department, working along-side the Department for International Trade as an integral part of its strategy and operations. Established in 1919, its mission is to advance prosperity by ensuring no viable UK export fails for lack of finance or insurance, doing that sustainably and at no net cost to the taxpayer.

Read More