SlideShare a Scribd company logo
1 of 8
CYBERSECURITY REVIEW
07th Oct 22
AGENDA
Current landscape and next steps
100 days agenda
3 years roadmap
Vendor details and evaluation
Team structure and requirement
CYBERSECURITY – CURRENT LANDSCAPE AND NEXT STEPS
Cybersecurity
Solutions
SOC &
Brand
Monitoring
DLP/MDM
VLAN/NAC
Zero Trust
Password
less Access
PIM/PAM
OT Security
Dell Data
Encryption
Sophos
Endpoint
Security
•SOC POC to be started by 15-Nov-22
•NAC implementation in Ruby office, expected
completion by 30-Apr-23
•Zero Trust Solution (ZScaler) evaluation and
Business case study has been done, meeting to be
done with Gandharv to walkthrough the solution by 15-
Nov-22
•Passwordless Authentication evaluation done, POC to
be started
•PIM/PAM solution evaluation done, POC to be started
LANDSCAPE NEXT STEPS…
Sr.No Project Description Utilization Status Target date Resource Partner
Business
Team
Budgeted Cost
1
SOC POC, Implementation and
finalisation along with MDR
40%
Under
Evaluation
POC
30-12-2022
Niranjan,
Shailesh
Inspira,
Secureview,
Softcell
Cyber & Infra
Team
5000000
2
IT Security Policies Review and
Rollout
15% In Progress 15-11-2022
Niranjan,
Ashok
None
Cyber & Infra
Team
-
3
Quarterly Phishing drills and Cyber
awareness trainings
15% In-Progress 31-12-2022 Niranjan
Projist,
ComplyKaro
HR & BU’s 1200000
4 Email SPAM Gateway Closure 10% In-Progress 15-11-2022
Niranjan,
Jigar
Fortinet solution
via partner Insight
Cyber & Infra 2400000
5 EY Audit Preparation 10% Yet to Start 12-11-2022 Niranjan EY Dharmesh -
6
Bi-annual VA/PT Infra,Web &
Mobile Apps as per scope + Out of
scope web & mobile apps
Pentesting
45% In Progress 31-05-2023 Niranjan Deloitte
Respective
App Owners
3500000
& 3 lakhs per out
of scope Web,
Mobile Apps (iOS,
Android) Testing
7
Patch Management
Implementation and Rollout
15% In Progress 31-12-2022 Niranjan Hitachi
Infra and
TCPL
2000000
150%
CYBER 100 DAY’S AGENDA – CATEGORY A, PRIORITY 1
PROPOSED 3 YEAR’S ROADMAP FOR CYBERSECURITY INITIATIVES – HIGH LEVEL PLAN
Initiative Description
FY 22-23 FY 23-24 FY 24-25
Q1 Q2 Q3 Q4 Q1 Q2 Q3 Q4 Q1 Q2 Q3 Q4
DLP & Mobile Device Management (MDM)
Partner Evaluation, Finalization and Release PO
Data Classification
CASB Implementation
MDM Configuration & Implementation
Password less Authentication
POC and Rollout
Privilege Identity and Access management
POC and Rollout
Zero Trust Implementation - Secured and Cost Optimization
Solution Evaluation, Feasibility study and Design
Zscaler (Secure Gateway, Proxy & Replace MPLS) – POC & Rollout
Brand Monitoring via Dark Web – Protect Brand Reputation
Partner Evaluation
Partner Finalization and Release PO
Service Enablement and Monitoring
VLAN & NAC Setup across 8 Locations
VLAN at Mahim HO
Halol and Daman (post availability of Cisco L3 Switch)
Remaining locations (Depends on delivery of Switches)
OT Security and IEC 62443 Compliance at Halol, Daman
Partner Evaluation and Feasibility Study
POC and Rollout
Risk and Gap Assessments, Backup restorations and BCP
IT Policy Review, Cybersecurity Drills and Awareness Workshops
Cyber Range (Blue Teaming) Cyber Audit Readiness
On going
Sr
No
Vendor Purpose
Annual
Spend
Remarks
Service
Quality
Timeline
Adherence
(SLA)
Resource
Availability
Replacement
Required
Justification
If any
1
Hitachi Systems India
Pvt. Ltd.
Patch
Management
20 - 25
lacs
Endpoint and servers system
patching with latest updates
Yes No
2
Deloitte Touche
Tohmatsu India LLP
VAPT
15 - 20
lacs
Perform Servers, Application and
Hardware vulnerability testing
Good Partial NA No
3
Wysetek Systems
Tech Pvt Ltd
Security Device
(FW)
1.5 lacs
DC Palo Alto hardware/software
support
NA No
4 ProgIST Solutions DMARC/Phishing
3 - 3.5
lacs
Email based security NA No
5
Insight Business
Machines Pvt Ltd
Web Application
Firewall Radware
for Polycab website
5 lacs
Additional and Recommended
security for our primary website :
https://www.polycab.com
Litigation &
Retention Hold for
all E3 users
3.5 lacs
Being used as a Backup solution for
all Endpoints
Email Security
Spam Gateway
Fortinet
22 lacs
POC done commercial finalization
with Vendor
6
Team Computers Pvt.
Ltd.
IT Infra and
Security support
84 lacs Performance detoriating
Poor to
Average
Not
compliant
No Yes
Technically
not sound,
Lack of SME
CYBERSECURITY – VENDOR DETAILS AND EVALUATION
CYBERSECURITY TEAM STRUCTURE
Cybersecurity
Head
SOC Analyst
Cybersecurity
Analyst
Tech Risk
Compliance and
DPO
DLP Analyst
Monitoring of Logs for
Incidents &
Abnormalities in
Network and working
on remediation
Coordinate and
Validate VA/PT
reports and Fix along
with Applications
Owners & 3Ps
Continuous
monitoring & nullifying
false positives and
intimate Risk
compliance officer for
further action
IT and Cyber Audit
readiness, manging
Risk Register,
Periodic GAP
Analysis, etc.
THANK YOU

More Related Content

Similar to Cybersecurity Research Papers.pptx

AEP RCC MDM to Cloud.pptx
AEP RCC MDM to Cloud.pptxAEP RCC MDM to Cloud.pptx
AEP RCC MDM to Cloud.pptxAdityaDas899782
 
Design and Deploy Secure Clouds for Financial Services Use Cases
Design and Deploy Secure Clouds for Financial Services Use CasesDesign and Deploy Secure Clouds for Financial Services Use Cases
Design and Deploy Secure Clouds for Financial Services Use CasesPLUMgrid
 
Final Martin Coffee March 4 2010 For Posting
Final Martin Coffee March 4 2010 For PostingFinal Martin Coffee March 4 2010 For Posting
Final Martin Coffee March 4 2010 For PostingMarco Thompson
 
DevOps Powered by Splunk
DevOps Powered by SplunkDevOps Powered by Splunk
DevOps Powered by SplunkSplunk
 
Resume Of Ifthekharul Islam_2016_V1.5
Resume Of Ifthekharul Islam_2016_V1.5Resume Of Ifthekharul Islam_2016_V1.5
Resume Of Ifthekharul Islam_2016_V1.5Ifthekharul Islam
 
Oak Systems - When you build Software, we build Quality in it
Oak Systems - When you build Software, we build Quality in it Oak Systems - When you build Software, we build Quality in it
Oak Systems - When you build Software, we build Quality in it Oak Systems
 
TuanVu_CiscoNetworkEngineer
TuanVu_CiscoNetworkEngineerTuanVu_CiscoNetworkEngineer
TuanVu_CiscoNetworkEngineerTuan Vu
 
Gartner IT Symposium 2013: Delivering IT-as-a-Service with Cloud Brokering an...
Gartner IT Symposium 2013: Delivering IT-as-a-Service with Cloud Brokering an...Gartner IT Symposium 2013: Delivering IT-as-a-Service with Cloud Brokering an...
Gartner IT Symposium 2013: Delivering IT-as-a-Service with Cloud Brokering an...Gravitant, Inc.
 
Marlabs Capabilities Overview: Microsoft SharePoint Services
Marlabs Capabilities Overview: Microsoft SharePoint Services Marlabs Capabilities Overview: Microsoft SharePoint Services
Marlabs Capabilities Overview: Microsoft SharePoint Services Marlabs
 

Similar to Cybersecurity Research Papers.pptx (20)

AEP RCC MDM to Cloud.pptx
AEP RCC MDM to Cloud.pptxAEP RCC MDM to Cloud.pptx
AEP RCC MDM to Cloud.pptx
 
Design and Deploy Secure Clouds for Financial Services Use Cases
Design and Deploy Secure Clouds for Financial Services Use CasesDesign and Deploy Secure Clouds for Financial Services Use Cases
Design and Deploy Secure Clouds for Financial Services Use Cases
 
Tharun Resume
Tharun ResumeTharun Resume
Tharun Resume
 
Antony Lenat Raja S Resume
Antony Lenat Raja S ResumeAntony Lenat Raja S Resume
Antony Lenat Raja S Resume
 
Rathna Arun Solomon_BA
Rathna Arun Solomon_BARathna Arun Solomon_BA
Rathna Arun Solomon_BA
 
Ons Company Presentation
Ons Company PresentationOns Company Presentation
Ons Company Presentation
 
Leela Madhavi KV_Latest
Leela Madhavi KV_LatestLeela Madhavi KV_Latest
Leela Madhavi KV_Latest
 
Puneet
PuneetPuneet
Puneet
 
Ruchi Gupta N
Ruchi Gupta NRuchi Gupta N
Ruchi Gupta N
 
Final Martin Coffee March 4 2010 For Posting
Final Martin Coffee March 4 2010 For PostingFinal Martin Coffee March 4 2010 For Posting
Final Martin Coffee March 4 2010 For Posting
 
Technitab solutions
Technitab solutionsTechnitab solutions
Technitab solutions
 
DevOps Powered by Splunk
DevOps Powered by SplunkDevOps Powered by Splunk
DevOps Powered by Splunk
 
Block Chain.pptx
Block Chain.pptxBlock Chain.pptx
Block Chain.pptx
 
Datacenter
DatacenterDatacenter
Datacenter
 
KotaSriHarsha
KotaSriHarsha KotaSriHarsha
KotaSriHarsha
 
Resume Of Ifthekharul Islam_2016_V1.5
Resume Of Ifthekharul Islam_2016_V1.5Resume Of Ifthekharul Islam_2016_V1.5
Resume Of Ifthekharul Islam_2016_V1.5
 
Oak Systems - When you build Software, we build Quality in it
Oak Systems - When you build Software, we build Quality in it Oak Systems - When you build Software, we build Quality in it
Oak Systems - When you build Software, we build Quality in it
 
TuanVu_CiscoNetworkEngineer
TuanVu_CiscoNetworkEngineerTuanVu_CiscoNetworkEngineer
TuanVu_CiscoNetworkEngineer
 
Gartner IT Symposium 2013: Delivering IT-as-a-Service with Cloud Brokering an...
Gartner IT Symposium 2013: Delivering IT-as-a-Service with Cloud Brokering an...Gartner IT Symposium 2013: Delivering IT-as-a-Service with Cloud Brokering an...
Gartner IT Symposium 2013: Delivering IT-as-a-Service with Cloud Brokering an...
 
Marlabs Capabilities Overview: Microsoft SharePoint Services
Marlabs Capabilities Overview: Microsoft SharePoint Services Marlabs Capabilities Overview: Microsoft SharePoint Services
Marlabs Capabilities Overview: Microsoft SharePoint Services
 

Recently uploaded

[Hackersuli] Élő szövet a fémvázon: Python és gépi tanulás a Zeek platformon
[Hackersuli] Élő szövet a fémvázon: Python és gépi tanulás a Zeek platformon[Hackersuli] Élő szövet a fémvázon: Python és gépi tanulás a Zeek platformon
[Hackersuli] Élő szövet a fémvázon: Python és gépi tanulás a Zeek platformonhackersuli
 
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdfMatthew Sinclair
 
Top profile Call Girls In Dindigul [ 7014168258 ] Call Me For Genuine Models ...
Top profile Call Girls In Dindigul [ 7014168258 ] Call Me For Genuine Models ...Top profile Call Girls In Dindigul [ 7014168258 ] Call Me For Genuine Models ...
Top profile Call Girls In Dindigul [ 7014168258 ] Call Me For Genuine Models ...gajnagarg
 
Vip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac Room
Vip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac RoomVip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac Room
Vip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac Roommeghakumariji156
 
Abu Dhabi Escorts Service 0508644382 Escorts in Abu Dhabi
Abu Dhabi Escorts Service 0508644382 Escorts in Abu DhabiAbu Dhabi Escorts Service 0508644382 Escorts in Abu Dhabi
Abu Dhabi Escorts Service 0508644382 Escorts in Abu DhabiMonica Sydney
 
Russian Escort Abu Dhabi 0503464457 Abu DHabi Escorts
Russian Escort Abu Dhabi 0503464457 Abu DHabi EscortsRussian Escort Abu Dhabi 0503464457 Abu DHabi Escorts
Russian Escort Abu Dhabi 0503464457 Abu DHabi EscortsMonica Sydney
 
一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理F
 
一比一原版澳大利亚迪肯大学毕业证如何办理
一比一原版澳大利亚迪肯大学毕业证如何办理一比一原版澳大利亚迪肯大学毕业证如何办理
一比一原版澳大利亚迪肯大学毕业证如何办理SS
 
Indian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi EscortsIndian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi EscortsMonica Sydney
 
20240508 QFM014 Elixir Reading List April 2024.pdf
20240508 QFM014 Elixir Reading List April 2024.pdf20240508 QFM014 Elixir Reading List April 2024.pdf
20240508 QFM014 Elixir Reading List April 2024.pdfMatthew Sinclair
 
Washington Football Commanders Redskins Feathers Shirt
Washington Football Commanders Redskins Feathers ShirtWashington Football Commanders Redskins Feathers Shirt
Washington Football Commanders Redskins Feathers Shirtrahman018755
 
Local Call Girls in Jharsuguda 9332606886 HOT & SEXY Models beautiful and ch...
Local Call Girls in Jharsuguda  9332606886 HOT & SEXY Models beautiful and ch...Local Call Girls in Jharsuguda  9332606886 HOT & SEXY Models beautiful and ch...
Local Call Girls in Jharsuguda 9332606886 HOT & SEXY Models beautiful and ch...Sareena Khatun
 
一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理F
 
Call girls Service in Ajman 0505086370 Ajman call girls
Call girls Service in Ajman 0505086370 Ajman call girlsCall girls Service in Ajman 0505086370 Ajman call girls
Call girls Service in Ajman 0505086370 Ajman call girlsMonica Sydney
 
一比一原版犹他大学毕业证如何办理
一比一原版犹他大学毕业证如何办理一比一原版犹他大学毕业证如何办理
一比一原版犹他大学毕业证如何办理F
 
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...kajalverma014
 
Local Call Girls in Seoni 9332606886 HOT & SEXY Models beautiful and charmin...
Local Call Girls in Seoni  9332606886 HOT & SEXY Models beautiful and charmin...Local Call Girls in Seoni  9332606886 HOT & SEXY Models beautiful and charmin...
Local Call Girls in Seoni 9332606886 HOT & SEXY Models beautiful and charmin...kumargunjan9515
 
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...meghakumariji156
 
APNIC Updates presented by Paul Wilson at ARIN 53
APNIC Updates presented by Paul Wilson at ARIN 53APNIC Updates presented by Paul Wilson at ARIN 53
APNIC Updates presented by Paul Wilson at ARIN 53APNIC
 

Recently uploaded (20)

[Hackersuli] Élő szövet a fémvázon: Python és gépi tanulás a Zeek platformon
[Hackersuli] Élő szövet a fémvázon: Python és gépi tanulás a Zeek platformon[Hackersuli] Élő szövet a fémvázon: Python és gépi tanulás a Zeek platformon
[Hackersuli] Élő szövet a fémvázon: Python és gépi tanulás a Zeek platformon
 
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
 
Top profile Call Girls In Dindigul [ 7014168258 ] Call Me For Genuine Models ...
Top profile Call Girls In Dindigul [ 7014168258 ] Call Me For Genuine Models ...Top profile Call Girls In Dindigul [ 7014168258 ] Call Me For Genuine Models ...
Top profile Call Girls In Dindigul [ 7014168258 ] Call Me For Genuine Models ...
 
Vip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac Room
Vip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac RoomVip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac Room
Vip Firozabad Phone 8250092165 Escorts Service At 6k To 30k Along With Ac Room
 
Abu Dhabi Escorts Service 0508644382 Escorts in Abu Dhabi
Abu Dhabi Escorts Service 0508644382 Escorts in Abu DhabiAbu Dhabi Escorts Service 0508644382 Escorts in Abu Dhabi
Abu Dhabi Escorts Service 0508644382 Escorts in Abu Dhabi
 
Russian Escort Abu Dhabi 0503464457 Abu DHabi Escorts
Russian Escort Abu Dhabi 0503464457 Abu DHabi EscortsRussian Escort Abu Dhabi 0503464457 Abu DHabi Escorts
Russian Escort Abu Dhabi 0503464457 Abu DHabi Escorts
 
一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理一比一原版奥兹学院毕业证如何办理
一比一原版奥兹学院毕业证如何办理
 
一比一原版澳大利亚迪肯大学毕业证如何办理
一比一原版澳大利亚迪肯大学毕业证如何办理一比一原版澳大利亚迪肯大学毕业证如何办理
一比一原版澳大利亚迪肯大学毕业证如何办理
 
Indian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi EscortsIndian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
Indian Escort in Abu DHabi 0508644382 Abu Dhabi Escorts
 
20240508 QFM014 Elixir Reading List April 2024.pdf
20240508 QFM014 Elixir Reading List April 2024.pdf20240508 QFM014 Elixir Reading List April 2024.pdf
20240508 QFM014 Elixir Reading List April 2024.pdf
 
Washington Football Commanders Redskins Feathers Shirt
Washington Football Commanders Redskins Feathers ShirtWashington Football Commanders Redskins Feathers Shirt
Washington Football Commanders Redskins Feathers Shirt
 
Local Call Girls in Jharsuguda 9332606886 HOT & SEXY Models beautiful and ch...
Local Call Girls in Jharsuguda  9332606886 HOT & SEXY Models beautiful and ch...Local Call Girls in Jharsuguda  9332606886 HOT & SEXY Models beautiful and ch...
Local Call Girls in Jharsuguda 9332606886 HOT & SEXY Models beautiful and ch...
 
一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理
 
Call girls Service in Ajman 0505086370 Ajman call girls
Call girls Service in Ajman 0505086370 Ajman call girlsCall girls Service in Ajman 0505086370 Ajman call girls
Call girls Service in Ajman 0505086370 Ajman call girls
 
一比一原版犹他大学毕业证如何办理
一比一原版犹他大学毕业证如何办理一比一原版犹他大学毕业证如何办理
一比一原版犹他大学毕业证如何办理
 
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
best call girls in Hyderabad Finest Escorts Service 📞 9352988975 📞 Available ...
 
Local Call Girls in Seoni 9332606886 HOT & SEXY Models beautiful and charmin...
Local Call Girls in Seoni  9332606886 HOT & SEXY Models beautiful and charmin...Local Call Girls in Seoni  9332606886 HOT & SEXY Models beautiful and charmin...
Local Call Girls in Seoni 9332606886 HOT & SEXY Models beautiful and charmin...
 
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...
Tadepalligudem Escorts Service Girl ^ 9332606886, WhatsApp Anytime Tadepallig...
 
APNIC Updates presented by Paul Wilson at ARIN 53
APNIC Updates presented by Paul Wilson at ARIN 53APNIC Updates presented by Paul Wilson at ARIN 53
APNIC Updates presented by Paul Wilson at ARIN 53
 
call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7
call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7
call girls in Anand Vihar (delhi) call me [🔝9953056974🔝] escort service 24X7
 

Cybersecurity Research Papers.pptx

  • 2. AGENDA Current landscape and next steps 100 days agenda 3 years roadmap Vendor details and evaluation Team structure and requirement
  • 3. CYBERSECURITY – CURRENT LANDSCAPE AND NEXT STEPS Cybersecurity Solutions SOC & Brand Monitoring DLP/MDM VLAN/NAC Zero Trust Password less Access PIM/PAM OT Security Dell Data Encryption Sophos Endpoint Security •SOC POC to be started by 15-Nov-22 •NAC implementation in Ruby office, expected completion by 30-Apr-23 •Zero Trust Solution (ZScaler) evaluation and Business case study has been done, meeting to be done with Gandharv to walkthrough the solution by 15- Nov-22 •Passwordless Authentication evaluation done, POC to be started •PIM/PAM solution evaluation done, POC to be started LANDSCAPE NEXT STEPS…
  • 4. Sr.No Project Description Utilization Status Target date Resource Partner Business Team Budgeted Cost 1 SOC POC, Implementation and finalisation along with MDR 40% Under Evaluation POC 30-12-2022 Niranjan, Shailesh Inspira, Secureview, Softcell Cyber & Infra Team 5000000 2 IT Security Policies Review and Rollout 15% In Progress 15-11-2022 Niranjan, Ashok None Cyber & Infra Team - 3 Quarterly Phishing drills and Cyber awareness trainings 15% In-Progress 31-12-2022 Niranjan Projist, ComplyKaro HR & BU’s 1200000 4 Email SPAM Gateway Closure 10% In-Progress 15-11-2022 Niranjan, Jigar Fortinet solution via partner Insight Cyber & Infra 2400000 5 EY Audit Preparation 10% Yet to Start 12-11-2022 Niranjan EY Dharmesh - 6 Bi-annual VA/PT Infra,Web & Mobile Apps as per scope + Out of scope web & mobile apps Pentesting 45% In Progress 31-05-2023 Niranjan Deloitte Respective App Owners 3500000 & 3 lakhs per out of scope Web, Mobile Apps (iOS, Android) Testing 7 Patch Management Implementation and Rollout 15% In Progress 31-12-2022 Niranjan Hitachi Infra and TCPL 2000000 150% CYBER 100 DAY’S AGENDA – CATEGORY A, PRIORITY 1
  • 5. PROPOSED 3 YEAR’S ROADMAP FOR CYBERSECURITY INITIATIVES – HIGH LEVEL PLAN Initiative Description FY 22-23 FY 23-24 FY 24-25 Q1 Q2 Q3 Q4 Q1 Q2 Q3 Q4 Q1 Q2 Q3 Q4 DLP & Mobile Device Management (MDM) Partner Evaluation, Finalization and Release PO Data Classification CASB Implementation MDM Configuration & Implementation Password less Authentication POC and Rollout Privilege Identity and Access management POC and Rollout Zero Trust Implementation - Secured and Cost Optimization Solution Evaluation, Feasibility study and Design Zscaler (Secure Gateway, Proxy & Replace MPLS) – POC & Rollout Brand Monitoring via Dark Web – Protect Brand Reputation Partner Evaluation Partner Finalization and Release PO Service Enablement and Monitoring VLAN & NAC Setup across 8 Locations VLAN at Mahim HO Halol and Daman (post availability of Cisco L3 Switch) Remaining locations (Depends on delivery of Switches) OT Security and IEC 62443 Compliance at Halol, Daman Partner Evaluation and Feasibility Study POC and Rollout Risk and Gap Assessments, Backup restorations and BCP IT Policy Review, Cybersecurity Drills and Awareness Workshops Cyber Range (Blue Teaming) Cyber Audit Readiness On going
  • 6. Sr No Vendor Purpose Annual Spend Remarks Service Quality Timeline Adherence (SLA) Resource Availability Replacement Required Justification If any 1 Hitachi Systems India Pvt. Ltd. Patch Management 20 - 25 lacs Endpoint and servers system patching with latest updates Yes No 2 Deloitte Touche Tohmatsu India LLP VAPT 15 - 20 lacs Perform Servers, Application and Hardware vulnerability testing Good Partial NA No 3 Wysetek Systems Tech Pvt Ltd Security Device (FW) 1.5 lacs DC Palo Alto hardware/software support NA No 4 ProgIST Solutions DMARC/Phishing 3 - 3.5 lacs Email based security NA No 5 Insight Business Machines Pvt Ltd Web Application Firewall Radware for Polycab website 5 lacs Additional and Recommended security for our primary website : https://www.polycab.com Litigation & Retention Hold for all E3 users 3.5 lacs Being used as a Backup solution for all Endpoints Email Security Spam Gateway Fortinet 22 lacs POC done commercial finalization with Vendor 6 Team Computers Pvt. Ltd. IT Infra and Security support 84 lacs Performance detoriating Poor to Average Not compliant No Yes Technically not sound, Lack of SME CYBERSECURITY – VENDOR DETAILS AND EVALUATION
  • 7. CYBERSECURITY TEAM STRUCTURE Cybersecurity Head SOC Analyst Cybersecurity Analyst Tech Risk Compliance and DPO DLP Analyst Monitoring of Logs for Incidents & Abnormalities in Network and working on remediation Coordinate and Validate VA/PT reports and Fix along with Applications Owners & 3Ps Continuous monitoring & nullifying false positives and intimate Risk compliance officer for further action IT and Cyber Audit readiness, manging Risk Register, Periodic GAP Analysis, etc.