RiverSafe Limited News

Vodafone enhances fraud detection with RiverSafe

Operating in 26 countries, with partnerships in 55 more, Vodafone is one of the world’s pioneering mobile communications providers. The company made the first-ever mobile phone call on 1 January 1985, and now delivers mobile communications to almost 444 million customers. Jake Francis, Head of Technology Security for the Information Security Technology Group (ISTG) for Vodafone in Ghana, initially approached RiverSafe to help with some log monitoring. Team’s monitoring processes T...

Improve PCI compliance with Splunk and RiverSafe

At the client, a multinational Oil and Gas company, the IT team provides technical support and security reporting to over 7,000 retail sites. Their work includes managing all firewalls, switches, VPNs, servers and network appliances, as well as the challenging job of keeping track of operational and compliance status. Due to limitations with its existing SIEM solution, the team in North America struggled to get full visibility on over 40% of the activities within its PCI environment. This signi...

Maximising SIEM with Cribl for cloud firms

When it comes to balancing visibility and spending, Security Incident Event Managment (SIEM) licencing models can be somewhat restrictive—something a multinational, born in the cloud technology company was becoming painfully aware of. The organisation wanted to improve its security posture by ingesting more data feeds into its SIEM. However, its cybersecurity team found itself hampered by licence limitations and prevented from feeding in more data by licence utilisation caps. Faced with...

RiverSafe boosts financial security with Exabeam

Working in the heavily regulated and frequently targeted financial services industry, the client (a global financial services group) needed to ensure its cybersecurity posture was extremely robust to protect its infrastructure and customer data from threats. The previous threat detection solution posed challenges, notably with a high volume of false positives. Without a robust SIEM tool and relying on less effective UEBA processes, the team recognised the need to fortify its security framework...

RiverSafe empowers oil & gas IT with DevOps

The client, a pioneering Oil and Gas company, had formed a large central IT capability after many years of mergers and acquisitions. The team had an established on-premise capability, but it was made up of multiple siloed teams and disjointed processes. The company had been progressing a modernising cloud-first approach but had duplicated the organisational and process-based model they had on-premise during the process. Business-focused development teams The resulting cloud offering improved...

RiverSafe cuts response time by 8 minutes with Splunk ITSI

The client, a large telecommunications provider, had teams working across multiple time zones and operated a sprawling and complex IT system. The scale and density of this system made gaining visibility into IT services extremely difficult, leaving the security team blind to what was happening with its IT environment. With little-to-no operations monitoring tools in place to proactively monitor these systems, the team had no visibility on the availability of its IT services or KPIs, such as fai...

RiverSafe unifies telecom giant's security systems

In the wake of a significant merger between two major telecommunications companies, the client, a newly formed telecom giant was looking to unify and modernise security operations across the entire organisation. The merged entity needed to increase asset visibility for its critical business operations, reduce the sprawl of security tooling, and unify its systems. Additionally, the company was looking to improve its overall monitoring capabilities while addressing a substantial amount of technic...

Cybersecurity enhancements with Exabeam fusion SIEM

With an extensive network of customers spanning the globe, cybersecurity is a primary concern for our client. Protecting extensive infrastructure and customer data requires a robust cybersecurity posture and effective tools, but the team found its SIEM solution lacking. Flooding its security team with an unmanageable number of false positives, the solution was diverting attention away from genuine threats and leaving them vulnerable. A substandard SIEM solution was not the only security issue....

AI knowledge discovery transforms oil & gas engineering

The client, a pioneering oil and gas corporation, faced significant challenges in knowledge management. The software engineering function struggled with locating the right documentation across multiple platforms such as ADO Repo, Confluence, SharePoint, and others. This fragmented system created delays and inefficiencies, with engineers spending valuable time searching for answers rather than focusing on delivery. Slow Access to Technical Information The sheer volume of documentation, cont...

RiverSafe boosts security for UK telecoms firm

The client, a British media and telecommunications company, was looking to increase operational efficiency, save time spent on identifying and addressing vulnerabilities and reduce risk by increasing visibility across their environment. With multiple security tools in different places, security data was siloed and needed to be accessed separately. This led to long periods of time spent jumping between tools to find data, and a lot of context switching when it came to looking at the results.&nbs...

RiverSafe boosts engineering efficiency for energy firm

As a pioneering energy supplier with a large software development practice, the client was spinning a lot of plates. Looking to streamline its software delivery process, the company targeted tooling as a potential area for improvement. With a huge number of software engineers working across the organisation, tool sprawl had become a major issue. Tool proliferation was creating several challenges that were slowing down the SDLC, including: Increased costs: Each team was paying for tools indep...

UK retailer boosts security with RiverSafe & Sentinel

A major UK retailer known for its quality clothing, home products, and premium food offerings recently migrated their SIEM platform to Microsoft Sentinel, which was integrated with other Microsoft security tools, including Defender. Over the months, multiple configurations had been built up, creating complexity within the system. The alert overload problem After the migration, the SOC (Security Operations Center) team became overwhelmed by a flood of alerts—many of which were false posi...

Accelerating developer productivity with an internal developer platform

One of the world’s pioneering energy companies embarked on a transformative journey to modernise its development infrastructure with an Internal Developer Platform (IDP). This case study explores how the organisation tackled key challenges to remove barriers, streamline workflows, and improve developer productivity. The challenge The company’s development environment presented several obstacles that impacted team efficiency and overall productivity: Lengthy Provisioning Times:...

Achieve PCI compliance with splunk in oil & gas

For a global oil and gas organisation, achieving and maintaining PCI compliance across its USA and EMEA operations was becoming increasingly complex. Their existing PCI auditing system lacked the visibility, scalability, and automation required to meet evolving compliance demands. To modernise, they set out to replace their legacy QRadar platform with Splunk, aiming to gain complete, end-to-end visibility into PCI-DSS compliance data. But the business lacked the in-house expertise to build, man...

DevOps in SecOps: Transforming telco SOC

As part of a major SOC transformation programme, the customer, a global telco, was migrating to Google SecOps to modernise its threat detection and response capabilities. But while the new platform offered world-class analytics and detection tools, the supporting processes were manual, inconsistent, and hard to govern. YARA-L detection rules were deployed manually via the console, making governance and version control difficult. This made it hard to maintain consistent logic across...

Akamai WAAP: Enhancing security for UK retailers

As one of the UK’s best-known retailers, the customer faced relentless web and API attacks, putting customer data, revenue, and brand trust at risk. To strengthen their defences, they invested in Akamai WAAP, a widely adopted web and API protection platform that quickly became a cornerstone of their security strategy. But like any powerful technology, it required ongoing expertise and fine-tuning to deliver its full potential. Development and security teams Without that focus, fals...

Oil and gas: Proactive security integration

A major oil and gas organisation faced a critical challenge in securing its applications at scale. With a vast, globally distributed technical organisation, security and development teams operated in isolation, each focused on their own priorities. This siloed approach created significant bottlenecks, leading to slow vulnerability remediation, missed security risks, and frustrated developers. A common problem in large enterprises In large, complex organisations, security is often seen as a ga...

RiverSafe and World Vision partner for child education in Africa

RiverSafe, a global cybersecurity, DevOps, and AppSec professional services provider, has partnered with education-based charity - World Vision to improve access to education for children in Africa. World Vision World Vision is a global humanitarian organisation dedicated to improving the lives of children, families, and communities around the world. Focusing on providing education, healthcare, and emergency relief to those in need, they aim to break the cycle of poverty and open doors for a...

RiverSafe has partnered with Checkmarx to enchance enterprise DevSecOps from code to production

RiverSafe, an Application Security, DevOps, and Cyber Security professional services provider, has partnered with Checkmarx, the industry pioneer in cloud-native application security for the enterprise, to help organisations fortify their security landscape amid rising global threats. Open-source vulnerabilities A recent report unveiled concerning statistics. 84 percent of codebases contain open-source vulnerabilities, with 91 percent featuring outdated components, demanding heightened securit...

NCSC warns of heightened security risk to critical national infrastructure at the hands of Russia-linked cyber criminals

The National Cyber Security Centre (NCSC) has issued a warning of heightened cyber threat to UK critical national infrastructure due to the risk posed by Russia state-aligned actors. Pro-Russia ‘hacktivists’ have been targeting vulnerable small-scale industrial control systems in the UK, Europe and North America with more attacks expected over the coming months to target critical national infrastructure. AI-enabled cyber threats The NCSC outlined that the threats have la...

UK implements groundbreaking cybersecurity laws, smart devices fortified against hackers

New Government regulations mandate that all internet-connected smart devices, spanning from phones to TVs to smart doorbells, adhere to minimum-security standards by law. Groundbreaking legislation is in effect in the UK, aimed at shielding consumers and businesses from cyber threats. Cyber laws This initiative, spearheaded by the Department for Science, Innovation and Technology, the National Cyber Security Centre, and the Office for Product Safety and Standards, along with the efforts of Ju...

RiverSafe partners with Cribl to bolster data services

RiverSafe, a pioneering cybersecurity professional services provider, has partnered with Cribl, the Data Engine for IT and Security. This new partnership is set to transform the data capabilities available to RiverSafe's clients, empowering organisations to analyse, collect, process, and route all IT and security data from any source or in any destination. As data continues to grow at a 28 percent compound annual growth rate, Cribl's product suite, including the industry's pioneering observabil...

Oxford academics issue warning over use in UK of unregulated AI chatbots in the care sector

The UK’s carers should be cautious of using unregulated AI bots, according to researchers from Oxford University. Study findings A pilot study by academics at the University of Oxford found some care providers had been using generative AI chatbots such as ChatGPT and Bard to create care plans for people receiving care. That presents a potential risk to patient confidentiality, according to Dr. Caroline Green, an early career research fellow at the Institute for Ethics in AI at Oxford, w...

RiverSafe partners with EARTH 51 to develop sustainability strategy in cybersecruity

RiverSafe, a cyber security, data operations, and DevOps professional services provider, has partnered with EARTH 51 to assist in developing RiverSafe’s sustainability strategy, as it looks to head the industry into the next decade of security transformation. EARTH 51 prides itself on its ability to thread sustainability into an organisation’s DNA, allowing businesses to strike the right balance between financial gain and a sustainable approach, helping to shape the policies and pra...

RiverSafe: Downing Street ponders creating ‘AI Safety Institute’

Downing Street officials have been touring the world working to agree on a warning statement as a draft agenda points towards the possibility of international cooperation on cutting-edge AI to address the looming threat to human life, as the AI Safety Summit approaches. The draft refers to establishing an 'AI Safety Institute', which would be designed to enable the national security-relate scrutiny of frontier AI models, allowing global pioneers to come together and collaborate, likely to be di...

RiverSafe partners with Victor Moore Foundation

RiverSafe, a cybersecurity professional services provider, has partnered with the Victor Moore Foundation (VMF), a Nigerian-based, education-focused charity that supports young people to access education and opportunities. VMF is a non-profit organisation that works with children and young people from low-income homes and marginalised communities, providing them with scholarships and equipment needed for them to gain a decent education.  Learning centre RiverSafe is sponsoring 21 childre...

ICO issues warning over smart devices harvesting personal data

The Information Commissioner’s Office (ICO) has issued a warning about the risks posed by smart devices harvesting personal data. The ICO also announced a crackdown on connected devices, announcing plans for new rules and action to be taken against manufacturers who fail in their data security obligations. Audit of connected devices The warning comes in response to a new report from Which? that conducted a detailed audit of connected devices, revealing that almost all required location...

RiverSafe's CEO comments on a study about how AI can identify passwords typed through keystroke sounds with 90% accuracy

University researchers have created a system using sound recordings that can work out what is being typed with more than 90% accuracy.  Typing a computer password while chatting over a video call like Zoom could open the door to a cyber-attack, research suggests, after a study revealed artificial intelligence (AI) can work out which keys are being pressed by eavesdropping on the sound of the typing. Threat of cyber-attacks Industry experts say that as video conferencing tools such as Zoo...

RiverSafe’s new research highlights that 80% of businesses claim AI is their biggest cyber threat

Four in five (80%) of cybersecurity providers claim that AI is the biggest cyber threat to their business, according to new research from RiverSafe, a pioneering cybersecurity professional services provider. The findings were revealed in the AI Unleashed: Navigating Cyber Risks Report, a survey of 250 cybersecurity providers conducted by independent polling agency Censuswide, which detailed the rising threat of AI in cybersecurity. The research uncovered the preparedness of organisations and th...

National Cyber Security Centre Chief warns AI must improve cyber security

The CEO of the National Cyber Security Centre has called for robust security systems in the early development of AI, amidst concerns that proper security measures are being overlooked.  As businesses race to develop new AI products, a former intelligence chief explained that malicious attacks could have a “devastating” effect due to the rate AI is being developed in comparison to security. UK’s AI whitepaper AI is set to play a huge role in many aspects of everyday life...