{"id":3915,"date":"2024-06-06T08:28:21","date_gmt":"2024-06-06T13:28:21","guid":{"rendered":"https:\/\/www.darkreading.com\/cloud-security\/inside-baseball-red-sox-cloud-security-game"},"modified":"2024-06-06T08:28:21","modified_gmt":"2024-06-06T13:28:21","slug":"inside-baseball-the-red-sox-cloud-security-game","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2024\/06\/06\/inside-baseball-the-red-sox-cloud-security-game\/","title":{"rendered":"Inside Baseball: The Red Sox Cloud Security Game"},"content":{"rendered":"<div class=\"media_block\"><a href=\"https:\/\/i0.wp.com\/eu-images.contentstack.com\/v3\/assets\/blt6d90778a997de1cd\/blt94be8560f110fbec\/66610a6c3d561d0e7329c060\/redsox-Jorge_Garrido-Alamy.jpg?ssl=1\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game.jpg?w=640&#038;ssl=1\" class=\"media_thumbnail\"><\/a><\/div>\n<div><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game.jpg?w=640&#038;ssl=1\" class=\"ff-og-image-inserted\"><\/div>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">The Boston Red Sox might be near the top of the American League East in the baseball standings right now, but the team is also going for a cybersecurity security pennant. With a comprehensive strategy of moving its mission-critical operations to a software-as-a-service (SaaS) model and embracing the Internet of Things (IoT) at Fenway Park, the team is swinging for the fences when it comes to building a max-secure cloud operation.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">At first glance, it would look to be a quixotic goal: As an organization, the Red Sox have about 450 full-time employees across its corporate, stadium-based, and fan-facing personnel, with another 1,500 seasonal workers hired annually. Out of those, just one person is dedicated full time to information security, while Randy George, vice president of technology operations and information security for the team, spends roughly a quarter of his time on it. In addition, the IT staff is supported by one or two security interns at any one time.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">But while that sounds under-resourced, the club is able to punch above its weight thanks, in part, to cybersecurity resources put into place by the broader Major League Baseball (MLB) organization. The league developed a program in the wake of the <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cyberattacks-data-breaches\/fbi-investigating-st-louis-cardinals-for-allegedly-hacking-houston-astros\" rel=\"noopener\">2013-2014 hack of the Houston Astros<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> by a former Saint Louis Cardinals exec, who stole confidential information that included lists of eligible players, trade discussions, player evaluations, and an incomplete 2014 team draft board.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;The MLB now brings broad capabilities to bear in the form of a comprehensive cybersecurity program that&#8217;s available to all 30 clubs,&#8221; George explains. &#8220;The Houston Astros scouting system hack was a real black eye that woke everyone up to the fact that we needed to prioritize cyber funding to protect our businesses properly.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Among other things, the program allows teams to collectively bargain for the procurement of market-leading tooling that George says the Red Sox &#8220;would never be able to afford otherwise.&#8221; It also offers a raft of expertise, threat intelligence, and other resources that teams can lean on to augment their internal capabilities.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">In general, George says that the Red Sox&#8217;s particular security apparatus is a dynamic one. New tools and partners are being swapped in and out to meet changes in the team&#8217;s risk profile, and fortunately, he says, the Red Sox leadership is all in for funding whatever the club needs.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;We have a cyber program here that we&#8217;re really proud of, but it can always be better because determined attackers will find a way to compromise our environment,&#8221; George says. &#8220;With all the tools that we have in place and the partnerships we have, we feel really good about our posture today, but it&#8217;s constantly evolving, for sure.&#8221;<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Covering the Bases: A Unique Set of Security Priorities\">Covering the Bases: A Unique Set of Security Priorities<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">In order to understand the security investments and priorities of the club, it&#8217;s important to understand the type of data and network topography it&#8217;s looking to secure \u2014 and that&#8217;s a little different than the typical midsize enterprise environment. The team essentially has three core concerns: safeguarding its intellectual property (IP), ensuring fan privacy and compliance with various regulations, and protecting its extensive IoT network and, by extension, physical assets and people.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Regarding the first point, George says that protecting sensitive business data and internal baseball systems like those that were hacked at the Astros is Job 1.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;The crown jewels for us are the IP we hold in the form of scouting data, player development data, and team information,&#8221; he explains. &#8220;We tend to overcommunicate in this business with email, and we&#8217;re not unusual in that respect, but securing all of those systems that contain sensitive competitive data is really important.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">But while locking down the information that helps the team gain an edge on the baseball diamond is critical, George notes that the Red Sox have different identities that drives the aforementioned compliance and privacy concerns. For instance, it&#8217;s an employer that provides sports-related medical care by physicians on staff, so it&#8217;s subject to <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/vulnerabilities-threats\/the-rx-for-hipaa-compliance-in-the-cloud\" rel=\"noopener\">HIPAA regulations<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">. At the same time, it&#8217;s a consumer-facing retail operation, so complying with <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cybersecurity-operations\/pci-dss-4-0-is-good-security-guidance-for-everyone\" rel=\"noopener\">PCI DSS regulations for payment-card data<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> is constantly top-of-mind. In addition, non-federal <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cyber-risk\/converging-state-privacy-laws-emerging-ai-challenge\" rel=\"noopener\">data-privacy statutes constitute a patchwork<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> of differing requirements depending on the state \u2014 and fans are demanding more control over how the Red Sox houses and uses their information.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">All of that has made it necessary to implement a broad compliance and privacy program for data protection, according to George.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;We are dedicated to making sure everyone is properly handling the sensitive data that they&#8217;re custodians of, but we&#8217;ve pivoted a little bit and are now building a data privacy program within our club that allows us to get more advanced \u2014 for instance, fulfill any customer requests that come down the pike for discovering their customer records or removing them to the degree that customers choose to do that,&#8221; he explains.<\/span><\/p>\n<h3 class=\"ContentText ContentText_variant_h3 ContentText_align_left\" data-testid=\"content-text\" id=\"Physical Security Dimensions at Fenway Park\">Physical Security Dimensions at Fenway Park<\/h3>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Meanwhile, the Red Sox organization also has an important and unique physical concern to worry about: securing operations at the iconic Fenway Park in Boston, along with protecting the safety of millions of people who pass through the stadium gates every summer.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Fenway may have been built in 1912 (and the contours of the place look much the same as they did more than 100 years ago), but underneath it all lies a thoroughly modern smart stadium. As has been the trend with building new venues for the<\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cyberattacks-data-breaches\/cyberthreats-loom-5b-people-watch-world-cup-final\" rel=\"noopener\"> FIFA World Cup<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">, fitting out <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/ics-ot-security\/nfl-cisa-intercept-cyber-threats-super-bowl-lviii\" rel=\"noopener\">stadia for the Super Bowl<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> and more, smart capabilities have been engineered into updates to Fenway.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;Smart-stadium technology is a big deal,&#8221; George explains. &#8220;We&#8217;re doing the best that we can to deliver a world-class fan experience in an efficient way. So increasingly a lot of our tech that runs in the park is connected to the network now; things like irrigation sensors, surveillance, access control, concession technology. We even have an IoT device that&#8217;s connected to the network that cools our baseballs to a certain temperature \u2014 like a humidor for baseballs. There are just gadgets popping up all over the place.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">All of that means more efficiency, but the trade-off is that a well-planned hack of the <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/iot\/the-time-is-now-for-iot-security-standards\" rel=\"noopener\">IoT network<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> can lead to physical disruption to the ballpark&#8217;s systems and its ability to operate.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">George notes that the Red Sox have an ongoing Dark Web- and social media-monitoring program via a partnership that looks for potential physical threats to the venue, employees, players, or fans. But gaining internal IoT visibility requires a different kind of diligence, including keeping an up-to-the-minute inventory of what endpoints or sensors are on the network, who or what system uses them, and how secure they are.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;We&#8217;re incessantly vulnerability-scanning and pen-testing our own environment to stay ahead of the bad guys who want to use something as a beachhead to compromise the environment and move laterally,&#8221; he says. &#8220;So we are just running constant scans to figure out what&#8217;s happening \u2026 and it&#8217;s a grind.&#8221;<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Developing a Comprehensive Security Playbook in the Cloud\">Developing a Comprehensive Security Playbook in the Cloud<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">In order to meet its three core security challenges, the Red Sox, with outfield assists from the MLB and various vendor partners, is focused on a set of key initiatives, starting with moving its mission-critical systems to the cloud and <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/endpoint-security\/zero-trust-takes-over-63-percent-of-orgs-implementing-globally\" rel=\"noopener\">implementing zero-trust capabilities<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> for identity and access management (IAM) to those systems.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;We&#8217;re having to expand the scope of our security program around all of those cloud environments, layering in threat intel for our identity providers, ensuring we have proper data protection in place, and making sure that we&#8217;re extending our vulnerability and pen-testing capabilities to those cloud environments,&#8221; George says. &#8220;But we have a big zero trust push here.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">One of the team&#8217;s basic nods to zero-trust is requiring multifactor authentication (MFA) for all cloud systems and apps\u2014but, George says that MFA can interfere with productivity. So the team has made a conscious choice to use a variety of MFA approaches, including layering in Okta Fastpass, <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cyber-risk\/exploring-biometrics-and-trust-at-the-corporate-level\" rel=\"noopener\">implementing biometrics<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> like the Windows Hello fingerprint sensor, Ubisoft keys, and &#8220;every kind of tool we have at our disposal to maintain the security level of our mission critical systems but make it easier for employees to consume cloud services.&#8221; George adds that refining the MFA strategy is a key initiative for the year.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">With most systems existing in a cloud model, one tool that goes towards zero-trust from &#8220;a really cool niche provider&#8221; is a security control framework that layers on top of the Red Sox&#8217; existing IAM system. It identifies issues with permissions and can flag whether something potentially happened by accident, or if it&#8217;s likely malicious authentication activity threatening applications.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;The identity management platform is really the center of our universe, if you think about how everyone accesses their data and applications in the cloud, but it&#8217;s not necessarily designed to report on anomalous security incidents,&#8221; George explains. &#8220;So having a security layer on top of it has been really great.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">The Red Sox also just brought in a provisioning platform that sits on top of various management platforms, and allows managers around the business to auto-approve access to certain critical SaaS applications based on policies and trust factors \u2014 thus driving more productivity.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">And indeed, another key initiative for 2024 is &#8220;putting our security program on cruise control where possible and improving level of kind of automation that&#8217;s involved with it,&#8221; George notes \u2014 in other words, <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/vulnerabilities-threats\/responsibly-implementing-ai-unstoppable-force\" rel=\"noopener\">artificial intelligence will soon be at-bat<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">To that end, the team is constructing an AI roadmap for Fenway first and foremost: taking stock of the IoT that exists in the stadium, as well as leveraging AI to identify threats to the venue, identify children while they&#8217;re traversing the stadium, and to help improve the fan experience. For instance, most of the inventory visibility, patch assessments, and asset management &#8220;grind&#8221; that George mentioned could be addressed with automation via AI.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;The trick for us though is how do we develop a policy framework to govern the use of all those AI tools,&#8221; George says. &#8220;We need to formulate a strategy on the use of AI tooling so that we&#8217;re not <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cyber-risk\/employees-feeding-sensitive-business-data-chatgpt-raising-security-fears\" rel=\"noopener\">exposing sensitive data to some public facing GPT engine<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">, or worse.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">To kickstart the initiative, the Red Sox assembled a strategy team that went out to the marketplace and performed an opportunity assessment on the different ways the team could use AI \u2014 encompassing employee productivity, venue security, and generating revenue.<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Fenway Sports Group: Taking a Broader View\">Fenway Sports Group: Taking a Broader View<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Going forward, the team is hoping to work with the other organizations that reside under the umbrella of its parent organization, the Fenway Sports Group. Fellow FSG denizens include the English Premier League&#8217;s Liverpool Football Club (the Reds); the Pittsburgh Penguins hockey franchise, Boston Common Golf; and New England&#8217;s regional sports TV network, NESN.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;We&#8217;re trying to look things through the Fenway Sports Group prism, which is evolving into a proper operating company,&#8221; explains George. &#8220;That gives us an opportunity to engineer a central cyber capability that we can leverage across all the different properties, sort of a mini version of what the MLB has done for all the clubs.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">One major driver for the initiative is information sharing; if everyone uses the same tooling, with the same inputs, at allows the different companies to &#8220;protect each other, and share information in real time with almost a crowdsourced model,&#8221; George says. &#8220;Ideally all the different portfolio properties can tap into the same set of capabilities, and we can spread those capabilities out laterally.&#8221;<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Embracing Managed Partnerships\">Embracing Managed Partnerships<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">And finally, the club plans to lean into managed partnerships as it continues to expand its security focus.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">For instance, it recently formed a partnership with Centripetal, which offers a threat intelligence appliance that proactively blocks inbound and outbound attacks, augmented with a virtual security operations center (vSoC) and automated threat intelligence.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;With one security person here on staff, having almost a redundant SoC that comes in the form of the incident responders and forensics folks that Centripetal layers on top of its hardware solution that sits in front of my firewall is a really powerful combination,&#8221; George says. &#8220;I have a second set of active eyeballs that&#8217;s looking at my environment, which deals with 200 million incidents per day.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Jonathan Rogers, Centripetal COO, said that the Red Sox are facing a common challenge when it comes to &#8220;tooling up&#8221; to stay ahead of the threat landscape.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;Everybody in the industry is facing this choice of are we going to buy an <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cybersecurity-operations\/generative-ai-takes-on-siem\" rel=\"noopener\">infinite amount of SIEM capacit<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">y, all manner of disparate detection tools, stitch them together, hire out an endless staffing of 24-by-seven SOC operations, and try to run this trailing security operation?&#8221; he asks rhetorically. &#8220;And are we going to do that in the era of IoT, where we really need to have zero trust all the way down to the packet level? I mean, that&#8217;s an enormous challenge, even if you had the collective intelligence of the entire security community. Managed partnerships are necessary.&#8221;<\/span><\/p>\n<p><a href=\"https:\/\/www.darkreading.com\/cloud-security\/inside-baseball-red-sox-cloud-security-game\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Boston Red Sox might be near the top of<\/p>\n","protected":false},"author":12,"featured_media":3916,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1],"tags":[809],"class_list":["post-3915","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized","tag-dark-reading"],"featured_image_urls":{"full":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?fit=2560%2C1707&ssl=1",2560,1707,false],"thumbnail":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?resize=150%2C150&ssl=1",150,150,true],"medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?fit=300%2C200&ssl=1",300,200,true],"medium_large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?fit=640%2C427&ssl=1",640,427,true],"large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?fit=640%2C427&ssl=1",640,427,true],"1536x1536":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?fit=1536%2C1024&ssl=1",1536,1024,true],"2048x2048":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?fit=2048%2C1365&ssl=1",2048,1365,true],"chromenews-featured":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?fit=1024%2C683&ssl=1",1024,683,true],"chromenews-large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?resize=825%2C575&ssl=1",825,575,true],"chromenews-medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?resize=590%2C410&ssl=1",590,410,true]},"author_info":{"display_name":"Dark Reading","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/darkreading\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/uncategorized\/\" rel=\"category tag\">Uncategorized<\/a>","tag_info":"Uncategorized","comment_count":"0","jetpack_featured_media_url":"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/06\/inside-baseball-the-red-sox-cloud-security-game-scaled.jpg?fit=2560%2C1707&ssl=1","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/3915","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=3915"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/3915\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media\/3916"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=3915"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=3915"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=3915"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}