cyber security overview

2
United States | United Kingdom | Israel | India UnitedLex | 6130 Sprint Parkway | Suite 300 | Overland Park, Kansas 66211 | www.unitedlex.com | 913.685.8900 | [email protected] Despite unprecedented awareness at the executive level, companies of all sizes struggle to contain the escalating costs of responding to data breach events. According to a 2014 survey by the Ponemon Institute 1 , a data breach incident in the U.S. has an average cost of $5 million. About UnitedLex UnitedLex is a global leader in legal and data solutions with a singular mission to improve the perfor- mance of leading corporations, law firms and academic institutions. UnitedLex provides unparalleled solutions resulting in risk mitigation, efficiency improvements and cost optimization for its clients in North America, Europe and Asia. Our more than 1,800 attorneys, engineers and consultants focus on the broadly de- fined areas of litigation, data privacy and cyber security, contracting and intellectual property to drive seven and eight figure benefits to its clients. Founded in 2006, and with more than $250 million in assets and com- mitted capital, UnitedLex deploys the right blend of service and technology in supporting the world’s leading corporations and law firms. The UnitedLex Difference UnitedLex is the only company offering a cyber risk solution that transcends the concerns of IT. Our consultants possess diverse exper- tise in privacy law, executive man- agement, Federal law enforcement, corporate IT security, and computer forensics and have years of experi- ence helping companies manage not just the technical aspects of data security incidents but also anticipate the practical and legal implications of that breach. UnitedLex Cyber Risk Solutions In addition to direct monetary costs, a single data breach can potentially: Undermine the trust relationship you have with your customers, causing you to lose them forever Divulge critical intellectual property to your competitors Destroy your brand’s reputation Put you in the cross hairs of aggressive regulators seeking to enforce state and federal laws and increasingly creative class action plaintiffs’ firms looking to capitalize on your situation. Sources: 1 Ponemon Institute, “2014 Cost of Data Breach Study: Global Analysis.” (May 2014) 2 Penn Schoen Berland on behalf of American International Group 3 Ponemon Institute, “The Post Breach Boom.” (February 2013) A Unified Cyber Approach That Goes Beyond IT UnitedLex understands that data breaches can overwhelm the resources of any business. We believe that your best protection is to collaborate with a partner like us who knows how to combat the situation from all angles and who can support and guide you throughout the process. And because we foster teamwork among all the stakeholders of your organization, we help you develop methodologies that can be applied to other challenges your business will face going forward. An effective cyber security solution requires the collaboration of multiple stakeholders, most notably: IT Legal/Compliance Executive management, including board of directors Finance Human Resources Any of the aforementioned consequences have legal repercussions that could cripple your organization. But although over 85% of executives are concerned about the impact cyber attacks pose to their organizations, only a minority feel they have the funds, tools, or per- sonnel either to prevent breaches or to detect and respond quickly to contain data security incidents. Because we analyze the ways in which a breach can affect each group of stakeholders, we are able to explain its impact from a legal and business perspective, as well as an IT perspec- tive. As a result, we design a risk management program that fits your unique requirements and empowers you to use it in a truly effective manner.

Upload: ted-theisen

Post on 14-Aug-2015

24 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Cyber Security Overview

The trend is clear. Companies are demanding a unified litigation solution that is consultative in nature, provides a legally defensible, high quality process, reduces data volume and drives predictable litigation costs through technology and global delivery capability. UnitedLex guides our clients through all phases of the litigation lifecycle from data collection and forensics through processing to review and production to successfully manage the complexities of eDiscovery.

About UnitedLex

UnitedLex is a global legal services provider. The company’s mission is to improve the performance of law departments, law firms and academic institutions. UnitedLex provides unparalleled solutions resulting in risk mitigation, efficiency improvements and cost optimization for its clients in North America, Europe and Asia. Our more than 1,100 attorneys, engineers and consultants focus on the broadly defined areas of litigation, data privacy and cyber security, contracting and intellectual property to drive seven and eight figure benefits to its clients. Founded in 2006, and with more than $250 million in assets and committed capital, UnitedLex deploys the right blend of service and technology in supporting the world’s leading corporations and law firms.

The UnitedLex Difference• Proprietary tools designed to reduce

data volumes and risk equating to 50% cost reduction in today’s environment and provide analysis and intelligence much earlier

• Cost predictability and transparency increasing the value of the attorney client relationship

• Materially reduced total project cost and avoidance of sanctions

• Litigation heritage combined with technology innovation to support Antitrust, IP, Securities, and other complex litigation

• Significant investment in security, six sigma process templates and technology

• Strict adherence to U.S. and cross-border jurisdictional and Ethics requirements

Data Collection and Forensics

It is critical that data collection be handled by experts, using an intelligent combination of the right technology and processes. Every collection with UnitedLex is performed by a certified forensic examiner. Using court-approved industry leading technology, we forensically capture data from virtually any electronic source and offer the flexibility in onsite or remote saving significant cost and providing cost predictability with hourly or unit-based billing. UnitedLex has participated 1000+ collections that have never been successfully challenged.

Data Hosting

UnitedLex’s stringent privacy, confidentiality and IT/infrastructure controls exceed the requirements of the world’s most elite corporations and law firms while providing availability of business-critical data across multiple levels of the organization. With complimentary analytics for all Relativity databases, our clients have real time, affordable access to document review accelerators such as predictive coding, clustering of similar documents, categorization of similar documents, conceptual search, keyword expansion and foreign language detection. As a kCura Premier Hosting partner, UnitedLex hosts one of the largest Relativity environments in the world with over 2,000 average monthly users and 120 TBs of data. We are also proud to have achieved and maintain ISO 27001 and US EU Safe Harbor Certifications.

Document Review Services

UnitedLex’s global footprint enables us to control budgets and offer specialized services, including foreign language review. Geared towards the delivery of consistent, high-quality and legally-defensible results, our proprietary review process is based on tested methodologies and is performed in a process-driven, scalable and secure manner. Prior to commencing review, we work with legal counsel to train and calibrate review teams and customize quality parameters. Our Quality Control and Assurance teams then use these parameters to identify, calibrate and eliminate any inconsistencies across our review team. UnitedLex document review services have consistently achieved measurable performance and reliable quality with 98% confidence levels of accuracy.

End-to-End 30(b)(6) Testimony

UnitedLex Consultants, Forensic Specialists and Project Managers approach every case as though we will be called upon to provide testimony as a 30(b)(6) corporate witness or provide affidavits regarding the processes deployed in identification, collection and executing a legally-defensible review.

Complete Litigation Lifecycle Management

Document Review Services

Data HostingData Collection and Forensics

End-to-End 30(b)(6) Testimony

Questio eDiscovery

UNITEDLEX

U n i t e d S t a t e s | U n i t e d K i n g d o m | I s r a e l | I n d i a

UnitedLex | 6130 Sprint Parkway | Suite 300 | Overland Park, Kansas 66211 | www.unitedlex.com | 913.685.8900 | [email protected]

The trend is clear. Companies are demanding a unified litigation solution that is consultative in nature, provides a legally defensible, high quality process, reduces data volume and drives predictable litigation costs through technology and global delivery capability. UnitedLex guides our clients through all phases of the litigation lifecycle from data collection and forensics through processing to review and production to successfully manage the complexities of eDiscovery.

About UnitedLex

UnitedLex is a global legal services provider. The company’s mission is to improve the performance of law departments, law firms and academic institutions. UnitedLex provides unparalleled solutions resulting in risk mitigation, efficiency improvements and cost optimization for its clients in North America, Europe and Asia. Our more than 1,100 attorneys, engineers and consultants focus on the broadly defined areas of litigation, data privacy and cyber security, contracting and intellectual property to drive seven and eight figure benefits to its clients. Founded in 2006, and with more than $250 million in assets and committed capital, UnitedLex deploys the right blend of service and technology in supporting the world’s leading corporations and law firms.

The UnitedLex Difference• Proprietary tools designed to reduce

data volumes and risk equating to 50% cost reduction in today’s environment and provide analysis and intelligence much earlier

• Cost predictability and transparency increasing the value of the attorney client relationship

• Materially reduced total project cost and avoidance of sanctions

• Litigation heritage combined with technology innovation to support Antitrust, IP, Securities, and other complex litigation

• Significant investment in security, six sigma process templates and technology

• Strict adherence to U.S. and cross-border jurisdictional and Ethics requirements

Data Collection and Forensics

It is critical that data collection be handled by experts, using an intelligent combination of the right technology and processes. Every collection with UnitedLex is performed by a certified forensic examiner. Using court-approved industry leading technology, we forensically capture data from virtually any electronic source and offer the flexibility in onsite or remote saving significant cost and providing cost predictability with hourly or unit-based billing. UnitedLex has participated 1000+ collections that have never been successfully challenged.

Data Hosting

UnitedLex’s stringent privacy, confidentiality and IT/infrastructure controls exceed the requirements of the world’s most elite corporations and law firms while providing availability of business-critical data across multiple levels of the organization. With complimentary analytics for all Relativity databases, our clients have real time, affordable access to document review accelerators such as predictive coding, clustering of similar documents, categorization of similar documents, conceptual search, keyword expansion and foreign language detection. As a kCura Premier Hosting partner, UnitedLex hosts one of the largest Relativity environments in the world with over 2,000 average monthly users and 120 TBs of data. We are also proud to have achieved and maintain ISO 27001 and US EU Safe Harbor Certifications.

Document Review Services

UnitedLex’s global footprint enables us to control budgets and offer specialized services, including foreign language review. Geared towards the delivery of consistent, high-quality and legally-defensible results, our proprietary review process is based on tested methodologies and is performed in a process-driven, scalable and secure manner. Prior to commencing review, we work with legal counsel to train and calibrate review teams and customize quality parameters. Our Quality Control and Assurance teams then use these parameters to identify, calibrate and eliminate any inconsistencies across our review team. UnitedLex document review services have consistently achieved measurable performance and reliable quality with 98% confidence levels of accuracy.

End-to-End 30(b)(6) Testimony

UnitedLex Consultants, Forensic Specialists and Project Managers approach every case as though we will be called upon to provide testimony as a 30(b)(6) corporate witness or provide affidavits regarding the processes deployed in identification, collection and executing a legally-defensible review.

Complete Litigation Lifecycle Management

Document Review Services

Data HostingData Collection and Forensics

End-to-End 30(b)(6) Testimony

Questio eDiscovery

UNITEDLEX

U n i t e d S t a t e s | U n i t e d K i n g d o m | I s r a e l | I n d i a

UnitedLex | 6130 Sprint Parkway | Suite 300 | Overland Park, Kansas 66211 | www.unitedlex.com | 913.685.8900 | [email protected]

Despite unprecedented awareness at the executive level, companies of all sizes struggle to contain the escalating costs of responding to data breach events. According to a 2014 survey by the Ponemon Institute1, a data breach incident in the U.S. has an average cost of $5 million.

About UnitedLex

UnitedLex is a global leader in legal and data solutions with a singular mission to improve the perfor-mance of leading corporations, law firms and academic institutions. UnitedLex provides unparalleled solutions resulting in risk mitigation, efficiency improvements and cost optimization for its clients in North America, Europe and Asia. Our more than 1,800 attorneys, engineers and consultants focus on the broadly de-fined areas of litigation, data privacy and cyber security, contracting and intellectual property to drive seven and eight figure benefits to its clients. Founded in 2006, and with more than $250 million in assets and com-mitted capital, UnitedLex deploys the right blend of service and technology in supporting the world’s leading corporations and law firms.

The UnitedLex Difference

UnitedLex is the only company offering a cyber risk solution that transcends the concerns of IT. Our consultants possess diverse exper-tise in privacy law, executive man-agement, Federal law enforcement, corporate IT security, and computer forensics and have years of experi-ence helping companies manage not just the technical aspects of data security incidents but also anticipate the practical and legal implications of that breach.

UnitedLex Cyber Risk Solutions

In addition to direct monetary costs, a single data breach can potentially: • Undermine the trust relationship you have with your customers, causing you to lose them

forever• Divulge critical intellectual property to your competitors• Destroy your brand’s reputation• Put you in the cross hairs of aggressive regulators seeking to enforce state and federal laws

and increasingly creative class action plaintiffs’ firms looking to capitalize on your situation.

Sources:1 Ponemon Institute, “2014 Cost of Data Breach Study: Global Analysis.” (May 2014)2 Penn Schoen Berland on behalf of American International Group 3 Ponemon Institute, “The Post Breach Boom.” (February 2013)

A Unified Cyber Approach That Goes Beyond ITUnitedLex understands that data breaches can overwhelm the resources of any business. We believe that your best protection is to collaborate with a partner like us who knows how to combat the situation from all angles and who can support and guide you throughout the process. And because we foster teamwork among all the stakeholders of your organization, we help you develop methodologies that can be applied to other challenges your business will face going forward.An effective cyber security solution requires the collaboration of multiple stakeholders, most notably:

IT

Legal/Compliance

Executive management, including board

of directors

Finance

Human Resources

Any of the aforementioned consequences have legal repercussions that could cripple your organization. But although over 85% of executives are concerned about the impact cyber attacks pose to their organizations, only a minority feel they have the funds, tools, or per-sonnel either to prevent breaches or to detect and respond quickly to contain data security incidents.

Because we analyze the ways in which a breach can affect each group of stakeholders, we are able to explain its impact from a legal and business perspective, as well as an IT perspec-tive. As a result, we design a risk management program that fits your unique requirementsand empowers you to use it in a truly effective manner.

Page 2: Cyber Security Overview

The trend is clear. Companies are demanding a unified litigation solution that is consultative in nature, provides a legally defensible, high quality process, reduces data volume and drives predictable litigation costs through technology and global delivery capability. UnitedLex guides our clients through all phases of the litigation lifecycle from data collection and forensics through processing to review and production to successfully manage the complexities of eDiscovery.

About UnitedLex

UnitedLex is a global legal services provider. The company’s mission is to improve the performance of law departments, law firms and academic institutions. UnitedLex provides unparalleled solutions resulting in risk mitigation, efficiency improvements and cost optimization for its clients in North America, Europe and Asia. Our more than 1,100 attorneys, engineers and consultants focus on the broadly defined areas of litigation, data privacy and cyber security, contracting and intellectual property to drive seven and eight figure benefits to its clients. Founded in 2006, and with more than $250 million in assets and committed capital, UnitedLex deploys the right blend of service and technology in supporting the world’s leading corporations and law firms.

The UnitedLex Difference• Proprietary tools designed to reduce

data volumes and risk equating to 50% cost reduction in today’s environment and provide analysis and intelligence much earlier

• Cost predictability and transparency increasing the value of the attorney client relationship

• Materially reduced total project cost and avoidance of sanctions

• Litigation heritage combined with technology innovation to support Antitrust, IP, Securities, and other complex litigation

• Significant investment in security, six sigma process templates and technology

• Strict adherence to U.S. and cross-border jurisdictional and Ethics requirements

Data Collection and Forensics

It is critical that data collection be handled by experts, using an intelligent combination of the right technology and processes. Every collection with UnitedLex is performed by a certified forensic examiner. Using court-approved industry leading technology, we forensically capture data from virtually any electronic source and offer the flexibility in onsite or remote saving significant cost and providing cost predictability with hourly or unit-based billing. UnitedLex has participated 1000+ collections that have never been successfully challenged.

Data Hosting

UnitedLex’s stringent privacy, confidentiality and IT/infrastructure controls exceed the requirements of the world’s most elite corporations and law firms while providing availability of business-critical data across multiple levels of the organization. With complimentary analytics for all Relativity databases, our clients have real time, affordable access to document review accelerators such as predictive coding, clustering of similar documents, categorization of similar documents, conceptual search, keyword expansion and foreign language detection. As a kCura Premier Hosting partner, UnitedLex hosts one of the largest Relativity environments in the world with over 2,000 average monthly users and 120 TBs of data. We are also proud to have achieved and maintain ISO 27001 and US EU Safe Harbor Certifications.

Document Review Services

UnitedLex’s global footprint enables us to control budgets and offer specialized services, including foreign language review. Geared towards the delivery of consistent, high-quality and legally-defensible results, our proprietary review process is based on tested methodologies and is performed in a process-driven, scalable and secure manner. Prior to commencing review, we work with legal counsel to train and calibrate review teams and customize quality parameters. Our Quality Control and Assurance teams then use these parameters to identify, calibrate and eliminate any inconsistencies across our review team. UnitedLex document review services have consistently achieved measurable performance and reliable quality with 98% confidence levels of accuracy.

End-to-End 30(b)(6) Testimony

UnitedLex Consultants, Forensic Specialists and Project Managers approach every case as though we will be called upon to provide testimony as a 30(b)(6) corporate witness or provide affidavits regarding the processes deployed in identification, collection and executing a legally-defensible review.

Complete Litigation Lifecycle Management

Document Review Services

Data HostingData Collection and Forensics

End-to-End 30(b)(6) Testimony

Questio eDiscovery

UNITEDLEX

U n i t e d S t a t e s | U n i t e d K i n g d o m | I s r a e l | I n d i a

UnitedLex | 6130 Sprint Parkway | Suite 300 | Overland Park, Kansas 66211 | www.unitedlex.com | 913.685.8900 | [email protected]

The trend is clear. Companies are demanding a unified litigation solution that is consultative in nature, provides a legally defensible, high quality process, reduces data volume and drives predictable litigation costs through technology and global delivery capability. UnitedLex guides our clients through all phases of the litigation lifecycle from data collection and forensics through processing to review and production to successfully manage the complexities of eDiscovery.

About UnitedLex

UnitedLex is a global legal services provider. The company’s mission is to improve the performance of law departments, law firms and academic institutions. UnitedLex provides unparalleled solutions resulting in risk mitigation, efficiency improvements and cost optimization for its clients in North America, Europe and Asia. Our more than 1,100 attorneys, engineers and consultants focus on the broadly defined areas of litigation, data privacy and cyber security, contracting and intellectual property to drive seven and eight figure benefits to its clients. Founded in 2006, and with more than $250 million in assets and committed capital, UnitedLex deploys the right blend of service and technology in supporting the world’s leading corporations and law firms.

The UnitedLex Difference• Proprietary tools designed to reduce

data volumes and risk equating to 50% cost reduction in today’s environment and provide analysis and intelligence much earlier

• Cost predictability and transparency increasing the value of the attorney client relationship

• Materially reduced total project cost and avoidance of sanctions

• Litigation heritage combined with technology innovation to support Antitrust, IP, Securities, and other complex litigation

• Significant investment in security, six sigma process templates and technology

• Strict adherence to U.S. and cross-border jurisdictional and Ethics requirements

Data Collection and Forensics

It is critical that data collection be handled by experts, using an intelligent combination of the right technology and processes. Every collection with UnitedLex is performed by a certified forensic examiner. Using court-approved industry leading technology, we forensically capture data from virtually any electronic source and offer the flexibility in onsite or remote saving significant cost and providing cost predictability with hourly or unit-based billing. UnitedLex has participated 1000+ collections that have never been successfully challenged.

Data Hosting

UnitedLex’s stringent privacy, confidentiality and IT/infrastructure controls exceed the requirements of the world’s most elite corporations and law firms while providing availability of business-critical data across multiple levels of the organization. With complimentary analytics for all Relativity databases, our clients have real time, affordable access to document review accelerators such as predictive coding, clustering of similar documents, categorization of similar documents, conceptual search, keyword expansion and foreign language detection. As a kCura Premier Hosting partner, UnitedLex hosts one of the largest Relativity environments in the world with over 2,000 average monthly users and 120 TBs of data. We are also proud to have achieved and maintain ISO 27001 and US EU Safe Harbor Certifications.

Document Review Services

UnitedLex’s global footprint enables us to control budgets and offer specialized services, including foreign language review. Geared towards the delivery of consistent, high-quality and legally-defensible results, our proprietary review process is based on tested methodologies and is performed in a process-driven, scalable and secure manner. Prior to commencing review, we work with legal counsel to train and calibrate review teams and customize quality parameters. Our Quality Control and Assurance teams then use these parameters to identify, calibrate and eliminate any inconsistencies across our review team. UnitedLex document review services have consistently achieved measurable performance and reliable quality with 98% confidence levels of accuracy.

End-to-End 30(b)(6) Testimony

UnitedLex Consultants, Forensic Specialists and Project Managers approach every case as though we will be called upon to provide testimony as a 30(b)(6) corporate witness or provide affidavits regarding the processes deployed in identification, collection and executing a legally-defensible review.

Complete Litigation Lifecycle Management

Document Review Services

Data HostingData Collection and Forensics

End-to-End 30(b)(6) Testimony

Questio eDiscovery

UNITEDLEX

U n i t e d S t a t e s | U n i t e d K i n g d o m | I s r a e l | I n d i a

UnitedLex | 6130 Sprint Parkway | Suite 300 | Overland Park, Kansas 66211 | www.unitedlex.com | 913.685.8900 | [email protected]

Proactive Incident ResponseNo risk management solution is complete without a corresponding incident response plan that you can deploy at the time of an attack. Our deep and broad-based experience in both risk assessment and incident response, enables us to see your strategy through to the worst-case scenario and anticipate the response in order to minimize the potential damage. Our consultants map out a systemized plan that recognizes all aspects of the risks involved so we can immediately respond to any data breach scenario with maximum defensibility – whether the incident involves an advanced targeted network attack, a stolen mobile device or abuse of authorized credentials by an insider.

While helping your IT department stop an attack, our team simultaneously supplies actionable intelligence to your legal counsel so that they may determine the legal and regulatory ramifications and respond in a measured, thoughtful manner. UnitedLex’s solution also is fully integrat-ed with our advanced e-discovery and data analytics offerings to facilitate a seamless transition from breach response to litigation response.In addition, we work closely with your legal and risk management groups to anticipate potential regulatory and litigation risks that could arise from an incident. Our impact assessment reports identify affected IT infrastructure and characterize the categories of sensitive data exposed by the breach, which allows the IT, legal and corporate stakeholders in your organization to respond to the problem in a unified, holistic man-ner, rather than waste time trying to piece together the consequences from the various angles. In addition to containing the incident, our team will focus on preserving and collecting information likely to be relevant in any subsequent inquiry or legal action.

Intelligent, Holistic Risk AssessmentBecause UnitedLex understands all the ramifications that can result from a data breach, we can transform information security from a necessary expense to an area that enables business growth. We involve key stakeholders early in the process so when an IT security incident occurs, your business is poised to address the totality of the risks presented rather than just the IT impact.

Critical Data Asset Inventory & Sensitivity Score

Intelligent Threat Mapping Target Vulnerability Evaluation Critical Data Asset Protection Plan

UnitedLex applies a risk-based approach to assessment in order to identify and quantify the risks to your data and the consequences of that data being lost or damaged. Our consultants gather intelligence across your entire infrastructure to classify the value of your data assets and assess the threats to each asset class. We keep you informed on the contractual, legal, and ethical ramifications of a potential cyber security incident. After conducting this baseline assessment, UnitedLex consultants will tailor a security roadmap designed to minimize enterprise risks and offer additional practical guidance for implementing that strategy. This custom-designed strategy will incorporate:• Risk tolerance and risk reduction options• Continued development of practical risk management and incident response plans• Ongoing monitoring of the plan to measure its effectiveness and iterative adjustments as neededOnce your strategy has been agreed upon, UnitedLex will ensure your organization is prepared for any cyber security incident when it occurs. Because a high percentage of data breaches are the result from lack of employee awareness or unintentional errors, we also engage your employees in the areas of data security where their actions could lead to consequences—and transform them from liabilities to allies in protecting the organization from cyber threats.

Cyber RiskAssessment/Monitoring

Litigation Lifecycle

Security Incident Alert

Incident Investigation

Incident Recovery and Remediation

Breach Impact Assessment

LEGAL

IT