IDIS CCTV Storage System / HDD(3)
Browse CCTV Storage System / HDD
Storage products updated recently
The past decade has seen unprecedented growth in data creation and management. The products and services that consumers use every day – and the systems businesses, large and small, rely on – all revolve around data. The increasing frequency of high-profile data breaches and hacks should be alarming to anyone, and there’s a danger data security could worsen in the coming years. According to DataAge 2025, a report by IDC and Seagate, by 2025, almost 90% of all data created in the global datasphere will require some level of security, but less than half of it will actually be secured. Nuanced approach to data security Security is a circle, not a line. Every actor involved in the handling and processing of data has responsibility for ensuring its securityThe rapid proliferation of embedded systems, IoT, real-time data and AI-powered cognitive systems – as well as new legislation like the European Union’s GDPR – means that data security has to be a priority for businesses like never before. With data used, stored and analysed at both the hardware and software level, we need a new and more nuanced approach to data security. Security is a circle, not a line. Every actor involved in the handling and processing of data has responsibility for ensuring its security. What this means in practice is renewed focus on areas of hardware and software protection that have previously not been top of mind or received large amounts of investment from businesses, with security at the drive level being a prime example. The importance of data-at-rest encryption In a world where data is everywhere, businesses need always-on protection. Data-at-rest encryption helps to ensure that data is secure right down to the storage medium in which it is held in a number of ways. Hardware-level encryption, firmware protection for the hard drive, and instant, secure erasing technology allow devices to be retired with minimal risk of data misuse. Data-at-rest encryption helps to ensure that data is secure right down to the storage medium in which it is held in a number of ways A recent report from Thales Data Threat found that data-at-rest security tools can be a great way to help protect your data. However, it’s important to note that this must be used in conjunction with other security measures to ensure that those that fraudulently gain access to your key management system can’t access your data. Ensuring drives to be Common Criteria compliant One straightforward test any business can do to ensure its storage is as secure as possible is to check whether the drives are Common Criteria compliantDespite the clear benefits, this kind of encryption lags behind other areas, such as network and endpoint security, in terms of the investment it currently receives. The same Thales Data Threat report found that data-at-rest security was receiving some of the lowest levels of spending increases in 2016 (44%), versus a 62% increase for network and a 56% increase for endpoint security. One straightforward test any business can do to ensure its storage is as secure as possible is to check whether the drives are Common Criteria compliant. Common Criteria is an international standard for computer security certification, and drives that meet this standard have a foundational level of protection which users can build on. Providing an additional layer of security The retail industry has seen a spate of security breaches recently, with several major US brands suffering attacks over the busy Easter weekend this year. As frequent handlers of consumer card information, retailers are particularly vulnerable to attack. Data-at-rest encryption could enhance security in these instances, providing an additional layer of security between customer records and the attacker The advanced threats retailers face can often evade security defences without detection. Such a breach could grant attackers unrestricted access to sensitive information for possibly months – some breaches are known to have been detected only after consumer payment details appeared on the dark web. These types of undetected attacks are highly dangerous for retailers, which are relatively helpless to protect consumer information once their defences have been compromised. Data-at-rest encryption could significantly enhance security in these instances, providing an additional layer of security between customer records and the attacker which has the potential to make the stolen data valueless to cyber criminals. Industries in need of data-at-rest encryption Healthcare organisations, which hold highly sensitive customer and patient information, have a strong use case for data-at-rest encryption. With the widespread adoption of electronic patient health records, that data is increasingly more vulnerable to attack. Recent research from the American Medical Association and Accenture revealed that 74% of physicians are concerned over future attacks that may compromise patient records. With the widespread adoption of electronic patient health records, that data is increasingly more vulnerable to attack The financial sector would also benefit from further investment in data-at-rest encryption, given 78% of financial services firms globally are planning on increasing their spending on critical data, according to Thales’ Data Threat Report. It’s helpful to view security as a circle in which every piece of hardware and software handling the data plays its part SMEs and enterprises are not immune to security threats either – with growing numbers of people traveling for work or working remotely, the risk of sensitive business data becoming exposed via device theft is heightened. Usernames and passwords have little use if thieves can simply remove unencrypted hard drives and copy data across. Securing every hardware and software Technology vendors often focus on aspects of hardware and application security that are within their control. This is understandable, but it risks proliferating a siloed approach to data security. There is no single line for data security -- rather, it’s helpful to view it as a circle in which every piece of hardware and software handling the data plays its part. There’s a clear need for more industry dialogue and collaboration to ensure data security is effectively deployed and connected throughout the security circle and across the value chain.
The use of facial recognition has become a highly debated topic recently, and has increasingly and misleadingly been criticised by some for being an unethical tool used to spy on the public. The reason for such criticism is however largely due to lack of information and regulation around the technology. Used proportionately and responsibly, facial recognition can and should be a force for good. It has the ability to do a lot more to increase security in the future – from street crime to airport security, all the way through to helping those battling addiction, the technology can take security and operations to new heights. These systems can memorise the faces of persons of interest, networks of gang members, wanted criminals and those suspected of involvement in serious violent crimes The rise in knife crime Knife crime has dominated the headlines in the UK throughout the year. Recent statistics show the number of people being admitted to emergency care due to attacks by a sharp object to be up by nearly 40 per cent from two years ago, whilst the number of children under the age of 18 being admitted to hospitals with stab wounds is up by 86 per cent in only four years. This recent surge in knife crime has put police forces under immense pressure, and the intelligent use of facial recognition has a role to play in enabling more informed stop & search interventions. Currently UK police can stop and search an individual they suspect to be carrying drugs or weapons or both, or they can stop and search a person in a location where there have been or are considered likely to be “incidents involving serious violence.” In both cases they must do so with access to limited information, leaving themselves open to accusations of bias or discrimination. Knife crime dominated the headlines in the UK throughout 2018 Police systems benefiting crime investigations This is where facial recognition can offer up additional intelligence. These systems can memorise the faces of persons of interest, networks of gang members, wanted criminals and those suspected of involvement in serious violent crimes. Furthermore, these systems don’t need prior personal engagement to recognise an individual and see only data, not gender, age or race. Facial recognition thus helps eliminate both weapons and criminals off the streets and potentially prevent crimes before they have a chance to take place. The technology doesn’t take the decision away from the human police officer. However, it does bring greater transparency and context to the decision-making process of whether a stop and search intervention is justified. Similarly, the advanced technology can recognise and match an individual seen on a CCTV camera at a crime scene to someone the police encounters on the streets some time later, justifying a stop and search on that individual. Its ability to check in real time if a person is on a criminal watchlist adds an extra layer to the decision-making process prior to conducting a stop and search, lowering the likelihood of discrimination. Facial recognition thus helps eliminate both weapons and criminals off the streets and potentially prevent crimes before they have a chance to take place. Gambling addiction and how facial recognition can help There are an estimated 593,000 people in the UK currently battling a gambling problem, making it a serious public health issue in the country. Having understood the gravity of the issue, the UK gambling commission have set limits and advice in place to help those suffering this addiction; yet as with all addictions, gambling is a tough habit to beat. In order to put effective limitations in place and make a real difference, the gambling commission needs the right technology to protect those most vulnerable in the industry. Facial recognition technology is able to keep track of customers and thus help gambling companies in protecting their customers Facial recognition technology is able to keep track of customers and thus help gambling companies in protecting their customers to a higher degree. Monitoring those entering and moving around gambling areas is an extremely difficult task for human staff to do alone, especially in large crowded areas such as casinos. Facial recognition technology installed around the premises would be able to help the company and the staff to identify people who have registered as gambling addicts, and keep record of their day’s play in order to inform staff if and when it was time for them to stop. It would also be able to ensure effective self-exclusion procedures, by identifying a self-excluded individual via CCTV as soon as they entered the venue to then allow security staff to respectfully escort them out. Utilising facial recognition at airport security Facial recognition has by now become a normal sight at many airports around the world. Several people today hold a so-called biometric passport, which allows them to skip the normally longer queues and instead walk through an automated ePassport control to proceed to the gate faster without having to deal with control officers. Facial recognition used in this way has managed to significantly cut waiting times at the passport control, but it also has the ability to enhance security in and around airports. Facial recognition uses algorithms to match physical characteristics against photos and videos of people's faces Earlier this year, facial recognition technology managed to catch an imposter trying to enter the US at the Washington Dulles Airport. The false passport may have been uncaught by the human eye, yet due to the accuracy of the facial recognition technology it managed to help officers catch the imposter and bring him to justice. Facial recognition thus allows officers to identify an individual faster and more accurately than the human eye. Facial recognition uses algorithms to match physical characteristics against photos and videos of people's faces, which have been collected from visas, passports and other sources. Facial recognition allows officers to identify an individual faster and more accurately than the human eye At airports the use of facial recognition has proved to both enhance security as well as speed up processes such as check-inWhilst some critics may worry about issues of privacy related to the technology, at airports the use of facial recognition has proved to both enhance security as well as speed up processes such as check-in and, in the future, even boarding proceedings. If used correctly and proportionately, facial recognition can help safeguard the public and improve national security on several fronts. Whilst the many benefits of facial recognition are evident, the lack of regulation and understanding of the technology has led to misconception around how it works and what it is used for. Facial recognition technology can match faces in crowded public places against criminal watch lists, and register faces that match with those on criminal watch lists – whilst ignoring everyone else.
Terry Gold of D6 Research has been giving “cyber in physical security” presentations at a variety of conferences, including ISC West and the Cyber:Secured Forum. We caught up with him for some insights about the intersection of cybersecurity and physical security. Q: Tell us a little bit about your background, specifically in the context of its relevance to cyber security in physical access. Gold: I started out in information security and then got involved in physical security along the way. I started really focusing on physical from a cyber standpoint about 10 years ago. I got into ethical hacking about 8 years ago, and then worked on putting it all together. There wasn’t a roadmap, so I had to build a methodology which I now share with other hackers, end users and law enforcement. I spend all my time either in the lab building success models, methods, and testing them out in some of the largest customers or agencies in the world for validation and improvement. Also, a chunk of my time is spent re-engineering security assessment and controls for end users or validating vendors on their behalf from a unique viewpoint that’s not (yet) typical in the industry. Q: How well prepared is physical security overall against cyber threats? Gold: Not well at all. While security is imperfect anywhere, much of the practices and designs have critical defects and overlook either best practice or fundamental application security principles. I’d say that the industry is very wide open for exploitation that doesn’t take much sophistication to execute. Breach disclosure laws are focused on mandatory reporting for personally identifiable information (PII) Q: What things stand out to you along your journey regarding the changes that you are seeing on this topic? Gold: Culture. Over the years, the industry (and most end users) have been dismissive of my findings. Industry culture hasn’t been aligned to embrace the topic and make requisite improvements that are needed to achieve “good security.” However, I’m finally starting to see that change – quickly and at scale. It doesn’t mean that we’re close to “good,” but rather reached the inflection point of change – and I’m rather pleased about it. Breach disclosure laws has resulted in IT getting a lot of media attention in comparison to hacks made against physical security Q: D6 does a lot of research in this area. What is the analysis behind the recent push for cyber security in physical security? Gold: First, it must be recognised that the threat isn’t new, but rather that the industry is only now coming to the table on it. Industry sentiment has been that breaches in physical security don’t happen or that there’s little impact.It must be recognised that the threat isn’t new, but rather that the industry is only now coming to the table on it Both are false. Mainly, IT gets all the media attention with breaches for two reasons; 1) breach disclosure laws are focused on mandatory reporting for personally identifiable information (PII), and 2) there is really poor detection (mostly non-existent) against hacks in physical security, so they go unrecognised. On the other side, as physical security systems increasingly resemble an IT architecture, so does their risk profile. As it expands to mobile, cloud, IOT and intelligence - InfoSec and auditors are taking a look and are alarmed at what they’re seeing. Before you know it, the scrutiny is cutting pretty deep, pressure for alignment becomes intense, and vendors feel the pinch on the sales cycles. It’s not a comfortable position for anyone. Q: What will be the projected impact? Are practitioners seeing the whole picture? Gold: No, and this area is probably the most important takeaway of this interview. The industry is where InfoSec was about 15 years ago in their journey, except we have an additional headwind to deal with – culture change. This industry tends to rely more on trusted relationships than validating the recommendations are being provided. There are too many prevailing misconceptions, that unless remediated, investments won’t be as effective as expected. Q: What do you believe are the top misconceptions? Gold: Well, this is a longer topic, but here’s a sampling that cuts across different areas. Regarding hackers: A misconception is that they’re generally not interested. Hackers are increasingly very interested. When I teach a workshop at a hacker conference, it’s usually the quickest to fill up and go to wait list (within a couple hours). Regarding attacks: A misconception is that attacks are executed directly against the target system. Example, their goal is to get into VMS and attack it directly. The reality is that they’re more commonly dynamic where physical is part of a larger attack and its role is an easier gateway to another system (or vice versa, with many hops). Regarding protective measures. The most prevalent mistake that the industry is currently making is too much focus and reliance on air-gapping networks or locking ports. This is only a slice of the attack surface and there are various ways to get around it. There’s a heavy price to pay for those that that rely too much on this strategy since its often accompanied by few mechanisms to deal with actors once they do get in (and they definitely will). Regarding the value of exploiting physical security. Too often perceived as low value. In our white paper we review many of the things that hackers can do, what they gain, and how it can impact the overall organisation. It’s far broader and deeper than most. Q: What are the top things that need to change in the industry? Gold: First, culture. This can be answered by adopting the same principles as InfoSec. From an execution standpoint, the industry needs to change how they perform risk assessments.At D6, we’ve developed a stepwise methodology from ground up and it’s a huge difference Industry practices, including certifications, are significantly outdated and don’t reflect a methodology that accurately considers cybersecurity, actors, methods, and proactive remedy. At D6, we’ve developed a stepwise methodology from ground up and it’s a huge difference. End users that don’t re-engineer their practice, will be very limited for meaningful cybersecurity improvement. One of the changes needed in the industry includes how risk assessments are performed Q: Generally, what advice do you give to clients on steps to move their cyber security to the next level? Gold: Don’t operate like a silo anymore. Transition from industry “common practices” to best practices that can be validated. Rely less on previous relationships and more toward domain competence. Collaborate with the CISO to a principled, goal-oriented and metrics-based approach. Embed an InfoSec person on the physical team. Present priorities and risks jointly to the board within an overall risk portfolio. Invite scrutiny from auditors. Get a red team performed once a year. Until you do the last step, you don’t really know where you stand (but don’t do it until the other things are done). Last, set the bar higher with vendors to support these improvements or their products will just end up being weak link. Q: What type of challenges do you see and any advice on how end user and integrators can overcome them? Lessons learned? Gold: There are too many specific domains across cybersecurity – it’s not just a network security resourceFeedback I get from integrators is that they’re struggling to figure out how to deliver expertise to their clients in their area. They’re somewhat overwhelmed with the complexity, becoming an expert or how expensive it is to hire and maintain those skilled resources. My best advice is not to do either. There are too many specific domains across cybersecurity – it’s not just a network security resource. Not even the large integrators have the right bench, and unfortunately, they’re just further down a doomed path than smaller integrators. Form a partnership with boutique cybersecurity firms that have multiple specialists. Negotiate rates, margins, scope, and call on them when needed. It won’t come out of your bottom line, the results will be better, and the risk will be extremely low. You’ll learn along the way too. Q: Anything notable that your research is uncovering in this area that might not be on people’s radar yet? Gold: Yes, quite a bit. Our Annual Industry Assessment Report goes through every segment. We’re making pretty bold statements about the future and impact, but we’re confident. One thing that stands out is how intelligence (and the swath of subsets) will impose stringent demands on physical security due to attribute and data collection (for analysis) which will absolutely require privacy compliance, integrity, and controls. It will even shape organisations that might not care about cybersecurity but are prioritising function. Q: Where can readers learn more about your perspectives on this topic? Gold: Blogs on the D6research.com website. Our annual report. Val Thomas of Securicon and D6 have collaborated on a three-part cybersecurity in physical white paper series. It goes into all of this in detail, as well as remedy.
A British university has overhauled its dated suite of security cameras to prepare for expansion and better protect its students and staff. Newman University in Birmingham called in systems specialist Unison Integrated Technology after a major power-surge disabled more than 30 cameras in its ageing system. Newman wanted comprehensive video coverage that was more robust and easier to use as part of its development plan for a safe learning environment for almost 3,000 students and staff. Facilities manager Lewis Palin said: “We contract out our security services, so it’s important for newly arrived officers to be able to use all of the system’s key features with minimal training.” Digital image stabilisation Unison proposed an IDIS end-to-end solution that had already performed excellently at a number of nearby schools, colleges and commercial sites. Total cost of ownership was also a factor as Newman needed more than 150 new internal and external cameras, so Palin wanted to integrate its existing cameras and infrastructure with the new kit. It also meant minimal maintenance charges, no licence fees and the option to adapt or scale the system as the campus grew or requirements changed. The Unison team delivered an IDIS DirectIP solution with more than 160 cameras, including five advanced 2MP Lightmaster IR PTZ models delivering 36x zoom and pin-sharp images in all lighting thanks to their 350 metre IR, true wide dynamic range and digital image stabilisation. Network video recorders Unrivalled storage capability is assured by four powerful 64-channel network video recorders Unison also installed 55 full-HD IR vandal-resistant dome cameras to secure entrances and internal areas, and 40 IR bullet cameras to give HD coverage of key external areas. All the new cameras incorporate IDIS Smart Failover technology, which ensures automatic protection against video data loss, eliminating the risk of gaps in recordings in the event of power failure or network instability. Unrivalled storage capability is assured by four powerful 64-channel network video recorders with built-in failover and RAID 1, 5 and 10 support, plus a further three 32-channel recorders with IDIS Intelligent Codec to deliver storage efficiency. Easily monitor live Security officers can now easily monitor live internal and external areas, and quickly search and retrieve recorded footage to find events of interest. Palin concluded: “Unison got the entire job done in three weeks – with swift stock delivery from IDIS – working around us to deliver our new system exactly as promised. We will definitely stick with IDIS technology as we expand our estate.”
A global hyper- and supermarket giant has transformed an ailing legacy CCTV system and enhanced storage capacity across its Middle East operations with a high performance surveillance and business intelligence solution. Carrefour Jordan operator Majid Al Futtaim turned to specialist systems integrator Ametrad Technology Services to upgrade its video technology as it prepares for growth. Increasing operational efficiency The Dubai-based retail pioneer, which first introduced Carrefour to the Middle East in 1995 and now operates 70 outlets across the region, has ambitious expansion plans and is looking to open new express stores and hypermarkets. Ametrad are deploying video technology built around IDIS Solution Suite (ISS) video management software (VMS) for the Majid Al Futtaim security team, whose priority is to prevent losses, improve safety and security, enhance the customer experience and greatly increase operational efficiency across its existing eight express stores and hypermarket. Failover providing protection The legacy CCTV system was proving costly to maintain and time-intensive to operate ISS VMS is modular and scaleable, giving Carrefour a cost-effective centralised monitoring environment with multi-layered failover providing protection against network instability and power outages. The legacy CCTV system was proving costly to maintain and time-intensive to operate, while low bandwidth at some stores was limiting performance. These problems were being compounded by new requirements to move from 30 to 90 days storage. Ametrad managing director Ahmad Shanawani says: “We have not experienced a single hard disk drive failure, a request for an NVR reset, or any gaps in footage due to a power outage. This is tangible evidence of IDIS’ quality, resilience and failover technology.” Ensuring pin-sharp image capture All the hardware is backed by a cost-free warranty and the ability to easily add new stores as they come online – vital as Carrefour serves over 200,000 customers every day across the region and is continuing to expand – ensuring low total cost of ownership. Using a phased upgrade approach 32 2MP domes and bullets already provide coverage at the hypermarket in Irbid City Centre, with a further 64 legacy cameras earmarked for upgrade, while an average of 28 cameras deliver situational awareness across each express store. The IDIS cameras ensure pin-sharp image capture in varying light conditions, including in darkness up to 30 metres, and cope with varying light and shade thanks to true wide dynamic range. 32-channel NVRs and a user-friendly interface for authorised retail staff at each supermarket provide 370Mbps throughput and up to 960ips UHD real-time recording. High performance live monitoring These technologies also allowed Carrefour to double the camera count at each store This ensures high performance live monitoring and forensic video retrieval, while native RAID 1 provides an important additional layer of redundancy. Ametrad engineers connected each device in minutes thanks to true plug-and-play IDIS DirectIP® technology, and IDIS For Every Network (FEN) technology allowed one-click configuration linking each store to the control centre. The hierarchical connection structure between IDIS DirectIP devices also guaranteed the most efficient method of cabling into the compact control room. Limited bandwidth was solved with IDIS Intelligent Codec, which typically reduces storage and bandwidth requirements by up to 75% compared to H.264, while dynamic multi-stream control has alleviated latency. These technologies also allowed Carrefour to double the camera count at each store to provide comprehensive coverage without the need to upgrade networks. Intelligent reporting capabilities Ametrad is also deploying IDIS VA in the Box analytics, to provide each store with heatmapping, people counting, queue management and intelligent reporting capabilities – thus helping improve sales and marketing performance and providing store managers with valuable business and customer behavioural insight. ISS control panels provide live monitoring, playback, event search, system health reports, and navigation via store layouts, allowing control room staff to troubleshoot and manage 100s of video streams and devices across multiple stores. These intuitive functions have reduced the time needed to find and export video clips from hours to minutes. Carrefour has contracted Ametrad to provide maintenance services and is working with the Ametrad team with a view to adopting new IDIS technologies such as IDIS Deep Learning Analytics.
IDIS has further enhanced its IDIS Center VMS, adding new features and functions targeted at small to mid-sized enterprises and multi-site customers. Organisations can build powerful centralised monitoring solutions, quickly and easily, when implementing IDIS Center together with the wide selection of IDIS DirectIP cameras and powerful NVRs. These deliver customer lifecycle savings of 50% or more compared with server-based solutions, thanks to reduced installation time, no upfront or ongoing license fees, easier maintenance, and the industry-beating IDIS Ultimate Warranty. IDIS Center VMS Important new features now included with the cost-free, license-free IDIS Center VMS include MapVue Important new features now included with the cost-free, license-free IDIS Center VMS include MapVue, an easy-to-use search function that speeds up operator navigation across building layouts and floor plans. Its intuitive interface helps users to view live and play back video streams across multi-camera systems, while maintaining an overview perspective of their facilities’ layouts and camera positions. MapVue also provides easy bookmarking, allowing operators to search the recorded data for persons and activity of interest. Bookmarked footage can then be saved in an Excel file, creating a library of video clips. Instant Meta Filtering (IMF) capabilities IDIS Center users can also now benefit from IDIS Instant Meta Filtering (IMF) capabilities without any licensing or maintenance fees when using the new range of IDIS 6000 Series Edge VA (EVA) cameras. IMF speeds up incident investigations from days or hours to mere minutes. It allows operators to easily collate footage and scan hours of recorded video, from multiple streams, to pinpoint the movements and last-known locations of persons or vehicles of interest. “With these innovative features, IDIS Center is delivering great new benefits and further improving value for our customers,” says Andrew Myung, President, IDIS America. IDIS For Every Network (FEN) technology Surveillance configured with IDIS Center at its heart also ensures greater cyber security Surveillance configured with IDIS Center at its heart also ensures greater cyber security, because devices mutually authenticate and eliminate the need to for passwords to be entered manually. In addition, IDIS For Every Network (FEN) technology lets engineers connect sites to a control room or other centralized monitoring environment with one-click configuration. IDIS Center gives users all the essential features they need to centrally and locally manage surveillance operations. These include live video and remote playback, real-time notifications of events, panic recordings, device system logs, and authority access set by individuals or groups. User-friendly interface Plus, its user-friendly interface is not only appreciated by security operatives but also praised by non-specialists, including teaching staff, healthcare professionals, and store managers who regularly need to access surveillance to investigate incidents quickly and efficiently. “Thousands of customers worldwide are benefitting from the low cost of ownership that IDIS Center offers,” Myung adds. “With the ability to register up to 1024 devices, IDIS Center is powerful enough for medium to large sites. It’s particularly beneficial to multi-site retailers that are tasked with the dual challenge of reducing shrinkage while keeping operating costs low.”
Related white papers
Hybrid hyperconverged systems benefit growing storage and retention needs
Five things to consider for AI with video technology
Making your surveillance cyber secure
Automatic vehicle identification: State of the industry 2020Download
How analytics engines mitigate risk, ensure compliance and reduce costDownload
11 considerations for embedded system RFID readersDownload
- IDIS video surveillance solutions strengthens the video infrastructure of Newman University
- Houston Independent School District installs Salient Systems’ IP video surveillance system
- Avigilon Surveillance System provides hi-tech protection for residents at Desert Highlands
- Dahua Technology's video surveillance solution employed at Cedr Factory to improve security level