ãšã³ããã€ã³ãã»ãã¥ãªãã£ãšèšãã°ãã¢ã³ããŠã€ã«ã¹ãå®çªã ããæ»æè ã®æå£ãå·§åŠåããçŸåšãã·ã°ããã£ããŒã¹ã®ã¢ã³ããŠã€ã«ã¹ã ãã§ã¯ãšã³ããã€ã³ããå®ãåããªããªã£ãŠããŠããã
ããã§ããæ°å¹Žããšã³ããã€ã³ãã»ãã¥ãªãã£åéã«ãããŠã¯ãæ°ããªå¯ŸçãšããŠãEDR(Endpoint Detection and ResponseïŒãšã³ããã€ã³ãã§ã®æ€åºãšå¯Ÿå¿)ãžã®æ³šç®ãé«ãŸã£ãŠãããããã§ã¯ãã¢ã³ããŠã€ã«ã¹ãšEDRãããã°ããšã³ããã€ã³ããå®ãããšã¯ã§ããã®ã ãããã
ä»åããšã³ããã€ã³ãã»ãã¥ãªãã£è£œåãæäŸããCrowdStrike Japanã®ãžã£ãã³ã»ã«ã³ããªãŒã»ãããŒãžã£ãŒãåããæ²³åå²ä¹æ°ã«ããšã³ããã€ã³ããå®ãããã«ãä»ãäœããã¹ããªã®ããèããã
æ»æã匷åã«ãããã¯ããã«ã¯?
æ²³åæ°ã¯ã顧客ããããèã課é¡ãšããŠããæ»æã匷åã«ãããã¯ãããããæ»æè ã®äŸµå ¥ãè¿ éã«æ€ç¥ããŠå¯ŸåŠãããããç°å¢ãå¯èŠåããŠè匱æ§ããªããããããæ€ç¥ããæ»æãåæããŠæ¬¡ã®æ»æã«åããããã®4ç¹ãæããã
ãæ»æã匷åã«ãããã¯ãããããšãã課é¡ã«ã¯ã©ã察åŠãã¹ããªã®ãããšã³ããã€ã³ããå®ãã»ãã¥ãªãã£å¯ŸçãšããŠçã£å ã«äžããã®ã¯ã¢ã³ããŠã€ã«ã¹ã ããæ²³åæ°ã¯ãæè¿ã®æ»æææ³ã¯ãã¡ã€ã«ã¬ã¹ãäž»æµã«ãªãã€ã€ãããããåŸæ¥åã®ã¢ã³ããŠã€ã«ã¹ã§ã¯å®ããªãããšææããã
æ²³åæ°ã¯ãåŸæ¥ã®æ»æã®çè·¡æ å ±ãIndicators of CompromiseïŒIOCïŒãã«åºã¥ãé²åŸ¡ã ãã§ãªããæ»æã®å±æ§ãã䟵害ã®å åãIndicators of AttackïŒIOAïŒãã«åºã¥ãé²åŸ¡ãå¿ èŠã ãšè©±ãã
å ããŠã次äžä»£ã®ã¢ã³ããŠã€ã«ã¹ã¯ã¯ã©ãŠãããŒã¹ãšãªã£ãŠããŠãããšãããã¯ã©ãŠãããŒã¹ã®ã¢ã³ããŠã€ã«ã¹ã¯ãåäœã軜ãç¹ã§ãšã³ããŠãŒã¶ãŒã«ããªã³ãã¬ãã¹ã®ç®¡çãµãŒããäžèŠãªç¹ã§ç®¡çè ã«ã¡ãªãããããããã
ãããããæ¬¡äžä»£ã®ã¢ã³ããŠã€ã«ã¹ã§ã100%å®ãããšã¯ã§ããªããæ¬¡ã®å·¥çšãžã®å¯Ÿçãæã€ã¹ãããšãæ²³åæ°ã¯ã¢ããã€ã¹ããã
æ»æè ã®äŸµå ¥ãè¿ éã«æ€ç¥ããŠå¯ŸåŠããã«ã¯?
ã¢ã³ããŠã€ã«ã¹ã®æ¬¡ã®å·¥çšãšãªãã®ãEDRã§ããããæ»æè ã®äŸµå ¥ãè¿ éã«æ€ç¥ããŠå¯ŸåŠãããããã®å¯Ÿçãšãªãã
æ²³åæ°ã¯ãEDRãã§ããããšãšããŠããšã³ããã€ã³ãã«ãããã»ãã¥ãªãã£é¢é£ã®ã€ãã³ããã°ãä¿åããããã€ãã³ããã°ãè§£æããŠå±éºåºŠã®ã¬ãã«ã«å¿ããŠã¢ã©ãŒãããããããæ»æã®å 容ããã°ããåæããŠå¯ŸåŠãããã®3ç¹ãæããã
ã¢ã³ããŠã€ã«ã¹ãšEDRã¯è£å®é¢ä¿ã«ãããã¢ã³ããŠã€ã«ã¹ããçããããšå€æãããã®ããæ€ç¥ã§ããªãã£ããã®ãã¯ãã¢ã³ããŠã€ã«ã¹ãå®è¡ãèš±å¯ããåŸã«ãEDRãå®è¡åŸã®ãµããŸããç£èŠããŠãåé¡ãããã°ã¢ã©ãŒããçºè¡ããã
æ²³åæ°ã¯ãEDRã«ã¯2ã€ã®ã¿ã€ãããããããå°å ¥æã¯æ³šæãå¿ èŠãšã¢ããã€ã¹ãããïŒã€ã¯ããšãŒãžã§ã³ãããŠãŒã¶ãŒã¢ãŒãã®ã¿ã§åäœããç°¡æåã®ã¿ã€ããã§ããããã1ã€ã¯ããšãŒãžã§ã³ããã«ãŒãã«ã¢ãŒãã§ãåäœããã¿ã€ããã ã
åè ã¯ååŸããããŒã¿ãå°ãªããããäœãèµ·ããã®ãã調ã¹ãããšããŠãæ å ±ãäžååã§èª¿æ»ã§ããããã®ãã察åŠãã§ããªããšãããããã§ã¯ãEDRãšããŠã¯èŽåœçã§å°å ¥ããæå³ããªãããšæ²³åæ°ã¯ããã
顧客ãããEDRãå ¥ãããæ»æã100%æ€ç¥ã§ãããããšèãããããã ããæ²³åæ°ã¯ãEDRã®æ¬¡ã®ã¹ããããšããŠäººã®ç®ã§èŠãŠå¯ŸåŠããå¿ èŠãããããšèª¬æããã
CrowdStrikeã¯EDR補åãFalcon Insightãã«å ããå瀟ã®ãšãã¹ããŒããããã¢ã¯ãã£ãã«è åšããã³ãã£ã³ã°ãããµãŒãã¹ãFalcon OverWatchããæäŸããŠãããã¡ãªã¿ã«ãå瀟ã®ããŒãããŒããã¢ã©ãŒããæ¥æ¬èªã§æäŸãããµãŒãã¹ãæäŸããŠããããã ã
ç°å¢ãå¯èŠåããŠè匱æ§ããªããã«ã¯ã©ããã¹ãã?
顧客ã®3ã€ç®ã®èª²é¡ãç°å¢ãå¯èŠåããŠè匱æ§ããªãããããã«ã€ããŠã¯ããã¯ã©ãŠãã䜿ãã¹ãããšæ²³åæ°ã¯ããã
ãããŸã§ã®è匱æ§ç®¡çã¯ãè匱æ§ã¹ãã£ããŒã«ãã£ãŠè匱æ§ãæ€ç¥ããããšãããŒã¹ãšãªã£ãŠãããããŸãããã«æéãããããããã«ãã倧éã®è匱æ§ãèŠã€ããã察å¿ã®åªå 床ã®å€æã«å°ããããªãã©ã€ã³ã®ãšã³ããã€ã³ãã¯ã¹ãã£ã³ã§ããªãããé »ç¹ã«ã¹ãã£ã³ããæéããªãããšãã£ã課é¡ããããšããã
ããã«å¯Ÿããã¯ã©ãŠãããŒã¹ã®è匱æ§ç®¡çã§ããã°ãè匱æ§ã¹ãã£ããŒãèµ°ãããäœæ¥ãäžèŠã§ãããããã¯ã©ãŠãäžã§ç¶æ³ããªã¢ã«ã¿ã€ã ã§ææ¡ã§ãããªãã©ã€ã³ã®ç«¯æ«ã察象ã ãšããã
ãã¯ã©ãŠãã䜿ã£ãŠãITãã€ãžãŒã³ãå®çŸããããã€ãžãŒã³ã¯è¡çãšããæå³ã§ãITç°å¢å šäœãå¯èŠåããŠããªã¢ã«ã¿ã€ã ã§ç¶æ³ãææ¡ãã瀟å ã®ITç°å¢ãè¡ççã«ä¿ã€ããšæ²³åæ°ã¯è©±ãã
CrowdStrikeã¯ITãã€ãžãŒã³ãå®çŸãããœãªã¥ãŒã·ã§ã³ãšããŠãFalcon Discoverããè匱æ§ç®¡çãœãªã¥ãŒã·ã§ã³ãšããŠãFalcon SpotlightããæäŸããŠããã
æ€ç¥ããæ»æãåæããŠæ¬¡ã®æ»æã«åããããã«äœããã¹ãã?
é¡§å®¢ãæ±ããæåŸã®èª²é¡ã¯ãæ€ç¥ããæ»æãåæããŠæ¬¡ã®æ»æã«åããããã ã
æ²³åæ°ã¯ããæµãç¥ããç®çãšããŠã瀟å é¢ä¿è ã»çµå¶é£ãžã®é©åãªå ±åãè¡ãããæ¬¡ã®æ»æãæªç¶ã«é²ãããã®å¯Ÿçããšãããæããã
CrowdStrikeã§ã¯ããã«ãŠã§ã¢ã®è§£æãæ©æ¢°ã§èªååããŠãæ°ç§ã§çµæè¡šç€ºãããšãããæ°ç§åäœã§è§£æããŠãæ»æè ã«ç¶äºãäžããããšãé²ãã§ãããšãããæ»æè ãäŸµå ¥ããŠããçºèŠãŸã§ã®æéãé·ããªãã°ãªãã»ã©ãæ»æè ã¯ååã«èª¿æ»ã»æ»æãå¯èœãšãªãã
ãµã³ãããã¯ã¹ããã«ãŠã§ã¢DBæ€çŽ¢ãµãŒãã¹ãè åšã€ã³ããªãžã§ã³ã¹ãçµ±åãããFalcon Xãã§ã¯ããã«ãŠã§ã¢ã®è§£æã®èªååãå®çŸããã
ã¡ãªã¿ã«ãå瀟ã®ãšã³ããã€ã³ãåãã®ã»ãã¥ãªãã£ãµãŒãã¹ã¯Falconãšãããã©ãããã©ãŒã ããæäŸããããæ²³åæ°ã¯ããšã³ããã€ã³ãã»ãã¥ãªãã£ã®å°æ¥ãã³ããŒãè²·åããŠãèªç€Ÿã®ãã©ã³ããšããŠæäŸããŠãããã³ããŒãå€ãããããããã¯åäžã®ãã©ãããã©ãŒã ããæäŸããŠããããšè©±ãã
ãšã³ããã€ã³ãã»ãã¥ãªãã£ã®åŒ·åãæ€èšããŠããäŒæ¥ã¯ãä»å玹ä»ãã4ã€ã®èª²é¡ãããŒã¹ã«ãèªç€Ÿã®ç¶æ³ãç¹æ€ããŠã¿ãŠã¯ãããã ãããã

