EN
Get in Touch

Fintech Giant Prevents $500K Insider Threat and Enhances Security Across 7 Countries with Platform Blue

Customer: A fintech technology holding with 3,000 employees across 7 EU countries. Challenge: While FS Group’s IRT service supported the company, the holding also needed a separate threat intelligence product to handle sensitive in-house investigations without compromising insights and investigation capabilities. Solution: Platform Blue, a government-grade SaaS tool that offers the most complete set of threat data available through an interactive, browser-based platform. Results: – Uncovered and prevented a potential $500,000 insider threat data breach – Dramatically increased security task resolution speed – Enhanced KYC and KYB processes and investigations

shield

Challenge

After a year with FS Group’s IRT services, the company identified a new need. Their in-house cybersecurity department required a solution to handle highly sensitive security investigations.

 

Before outsourcing investigations to FS Group, the cybersecurity department relied on disconnected services to monitor threats and investigate incidents. This fragmented approach failed to provide unified, actionable intelligence and hindered effective threat identification and response.

 

Faced with the need for robust internal investigations, the client sought a threat intelligence platform to:

 

  • Monitor cyber threats in real-time
  • Investigate potential data compromises swiftly
  • Track the company’s digital asset reputation comprehensively

 

To select the right tools, they turned to FS Group, their trusted partner.

 

Modules used by cybersecurity analyst

To address the client’s specific needs for real-time threat monitoring and swift investigation of potential data compromises, the following modules were implemented:

  • DeepRadium
  • DeepCobalt

DeepRadium alerts the client cybersecurity team about the most serious cyber threats and makes patch management more timely and effective. The module provides a critical feed alerting the client’s team to the most severe known exploited CVEs (Common Vulnerabilities and Exposures). This serves as a big red emergency button for the client’s Patch Management tool.

Platform analysts provide reports on the CVEs and 0 days being actively exploited by nation-states and APTs (advanced persistent threat).

DeepCobalt monitors over 50 DarkNet forums, instantly alerting when it detects the client’s account credentials in sold databases. 

DeepCobalt module dashboard

Modules used by corporate security analyst

  • DeepInk
  • CrossLink

During implementation, the client’s management realized they could use Platform Blue for physical and economic security. The DeepInk module enables OSINT investigations of external and internal ecosystem threats by providing access to:

  1. Individual and organizational data (e.g., names, addresses, contact details, and foundational documents)
  2. Social media and other online profiles
  3. The activities and potential interests of individuals or organizations (including behavioral patterns, habits, and possible fraud schemes and methods)
  4. Location and movement routes
  5. Financial information
  6. Connection and communication data with other individuals or organizations
  7. Other crucial contextual information that may impact security or pose significant ecosystem risks

Here is how DeepInk helps with the client with OSINT investigations:

  • Instantly assess any email address for potential risks
  • Detect if the email has a presence on the dark web or other suspicious online activities
  • Verify if the email belongs to a real person or a bot

CrossLink takes a single attribute like an email, username, or full name and provides the client’s security team with a vast history of that person’s online fingerprint in the deep, Dark Web.

CrossLink search interface

What really stands out is the depth of information we can access now. For instance, last month, we uncovered a potential data breach attempt by correlating seemingly unrelated events across our global operations ー something we couldn’t have done before in-house. It’s cut down our investigation time significantly.” ー Security Analyst.

About Platform Blue

Platform Blue offers the most complete set of threat data available through an interactive, web browser-based platform. 

Platform Blue gives law enforcement, military, and intelligence professionals access to extensive data sources. These include deep and Dark Web intelligence, government-grade attribution, and anonymizer tracking. This comprehensive access enables efficient threat identification and mitigation.

Ensure your company knows about a threat before a breach occurs.

What clients say

On average, threat intelligence, employee training, and incident response planning reduce the cost of a data breach by over $240,000. IBM, 2024. Organizations using threat intelligence identified breaches 28 days faster than those that don’t. IBM, 2023. As of February 2024, over 30% of companies viewed internal threat actors as a potential danger. Statista, 2024. Compared to other vectors, malicious insider attacks resulted in the highest data breach costs, averaging $4.99 million. IBM, 2024.

Secure Your Business Now

FS Group will protect you from evolving cybersecurity threats around the world.
Company sector
I need help right away