{"id":697,"date":"2023-07-31T22:17:22","date_gmt":"2023-07-31T20:17:22","guid":{"rendered":"https:\/\/comsource.cz\/pripadove-studie\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/"},"modified":"2023-07-31T22:17:22","modified_gmt":"2023-07-31T20:17:22","slug":"aero-vodochody-vyzvy-kyberneticke-bezpecnosti","status":"publish","type":"page","link":"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/","title":{"rendered":"AERO Vodochody: V\u00fdzvy kybernetick\u00e9 bezpe\u010dnosti"},"content":{"rendered":"<h2>Z\u00e1kazn\u00edk: AERO Vodochody AEROSPACE a.s.<\/h2>\n<h2>Obdob\u00ed: 2019-2023<\/h2>\n<p><strong>Rozvoj a zpracov\u00e1n\u00ed IT bezpe\u010dnostn\u00ed strategie<\/strong><\/p>\n<p><strong>Z\u00e1kazn\u00edk:<\/strong><\/p>\n<p>Aero Vodochody, nejv\u011bt\u0161\u00ed leteck\u00fd v\u00fdrobce v \u010cesk\u00e9 republice a nejv\u011bt\u0161\u00ed v\u00fdrobce cvi\u010dn\u00fdch proudov\u00fdch letoun\u016f na sv\u011bt\u011b. Zab\u00fdv\u00e1 se v\u00fdvojem, v\u00fdrobou, prodejem a servisem vojensk\u00fdch letoun\u016f a civiln\u00ed leteck\u00e9 techniky. Spolupracuje s celou \u0159adou dodavatel\u016f, a to v \u010cR jich m\u00e1 v\u00edce jak 400. Aero Vodochody pat\u0159\u00ed k nejstar\u0161\u00edm leteck\u00fdm tov\u00e1rn\u00e1m na sv\u011bt\u011b: Firma Aero, tov\u00e1rna letadel, spol. s.r.o. byla zaps\u00e1na u Obchodn\u00edho soudu v Praze dne 25. \u00fanora 1919.<\/p>\n<p><strong>Z\u00e1kaznick\u00e1 pot\u0159eba:<\/strong><\/p>\n<p>Z\u00e1kazn\u00edk \u010delil v\u00fdznamn\u00fdm v\u00fdzv\u00e1m v oblasti kybernetick\u00e9 bezpe\u010dnosti. Jejich IT prost\u0159ed\u00ed bylo genera\u010dn\u011b zastaral\u00e9. N\u011bkter\u00e9 syst\u00e9my byly nasazeny v n\u00e1vaznosti na pot\u0159ebu rychl\u00e9ho a reaktivn\u00edho opat\u0159en\u00ed. S m\u00edrou nervozity na mezin\u00e1rodn\u00edm poli se \u010d\u00edm d\u00e1le mno\u017eily pokusy o prolomen\u00ed bezpe\u010dnostn\u00edch prvk\u016f infrastruktury, a to p\u0159ev\u00e1\u017en\u011b z v\u00fdchodn\u00edch zem\u00ed. A\u0165 u\u017e kv\u016fli zcizen\u00ed know-how spole\u010dnosti nebo pozd\u011bj\u0161\u00edm pokus\u016fm ma\u0159it obchodn\u00ed \u00fasp\u011bchy Aero Vodochody.<\/p>\n<h3><strong>Spole\u010dnost se rozhodla \u0159e\u0161it ochranu s\u00edt\u011b systematicky a pro tento \u00fa\u010del si za\u010dala hledat nov\u00e9ho partnera.<\/strong><\/h3>\n<p><strong>Hlavn\u00ed v\u00fdzvy, kter\u00fdm AERO \u010delilo:<\/strong><\/p>\n<ul>\n<li>Absence cyber securitn\u00ed strategie<\/li>\n<li>Absence kompetenc\u00ed v oblasti architektury bezpe\u010dnostn\u00edch technologi\u00ed a absence metodiky \u0159\u00edzen\u00ed rizik a opat\u0159en\u00ed<\/li>\n<li>Nevyu\u017eit\u00ed potenci\u00e1lu n\u011bkter\u00fdch zabezpe\u010dovac\u00edch n\u00e1stroj\u016f, nap\u0159. firewall CHECKPOINT. Nesyst\u00e9mov\u00e9 investice do vybran\u00fdch infrastrukturn\u00edch celk\u016f.<\/li>\n<li>Nekvalitn\u00ed Outsourcing spr\u00e1vy LAN\u00a0v\u010detn\u011b minim\u00e1ln\u00ed dokumentace<\/li>\n<li>Chyb\u011bj\u00edc\u00ed profilaxe na infrastrukturn\u00edch prvc\u00edch, zejm\u00e9na securitn\u00edch.<\/li>\n<\/ul>\n<p><strong>Problematika:<\/strong><\/p>\n<p>Spole\u010dnost Aero Vodochody si vybrala spole\u010dnost ComSource na z\u00e1klad\u011b opakovan\u00e9 praktick\u00e9 zku\u0161enosti, p\u0159i \u0159e\u0161en\u00ed bezpe\u010dnostn\u00edch incident\u016f v\u00a0\u00favodn\u00edch letech spolupr\u00e1ce. Na\u0161e spole\u010dnost realizovala slu\u017eby tzv. RED t\u00fdmu, kdy se aktivn\u011b \u00fa\u010dastnila vy\u0161et\u0159ov\u00e1n\u00ed incident\u016f a pomohla s\u00a0nasazen\u00edm jak reaktivn\u00edch, tak syst\u00e9mov\u00fdch opat\u0159en\u00ed. Pracovn\u00edci spole\u010dnosti ComSource byli sou\u010d\u00e1st\u00ed krizov\u00e9ho \u0159\u00edzen\u00ed z\u00e1kazn\u00edka v\u00a0dob\u011b incident\u016f.<\/p>\n<p><strong>Spolupr\u00e1ce s\u00a0ComSource:<\/strong><\/p>\n<p>ComSource zpracoval vstupn\u00ed anal\u00fdzu infrastruktury jak v\u00a0oblasti s\u00edt\u011b, tak cyber security jako celku a identifikoval celou \u0159adu potenci\u00e1ln\u00edch rizik. Realizovan\u00e9 penetra\u010dn\u00ed testy uk\u00e1zaly na nejpal\u010div\u011bj\u0161\u00ed m\u00edsta, kde bylo nutn\u00e9 reagovat bezprost\u0159edn\u011b. Na z\u00e1klad\u011b tohoto zji\u0161t\u011bn\u00ed bylo ze strany z\u00e1kazn\u00edka definov\u00e1no zad\u00e1n\u00ed pro vypracov\u00e1n\u00ed cyber security strategie. Na z\u00e1klad\u011b tohoto TO-BE konceptu byly n\u00e1sledn\u011b iniciov\u00e1ny zm\u011bny. Zm\u011bny jak v\u00a0podob\u011b v\u00fdm\u011bny nevhodn\u00e9 technologie, tak i v\u00a0podob\u011b zaveden\u00ed, \u010di \u00fapravu vybran\u00fdch proces\u016f. Postupn\u011b do\u0161lo k\u00a0segmentaci s\u00edt\u011b, segmentov\u00e1n\u00ed firewall\u016f, nahrazen\u00ed vybran\u00fdch bezpe\u010dnostn\u00edch a p\u0159\u00edstupov\u00fdch technologi\u00ed. \u00a0Prob\u011bhly investice do technologi\u00ed, monitoruj\u00edc\u00ed stav komunikac\u00ed a zaji\u0161t\u011bna slu\u017eba \u00fapln\u00e9ho outsourcingu mana\u017eera kybernetick\u00e9 bezpe\u010dnosti a nasadila se slu\u017eba SOCaaS &#8211; Security Operation Centrum.<\/p>\n<p>Sou\u010d\u00e1st\u00ed strategie kybernetick\u00e9 bezpe\u010dnosti bylo d\u00e1le i zpracov\u00e1n\u00ed t\u00e9matu zva\u017eovan\u00e9 adopce cloudov\u00fdch slu\u017eeb.<\/p>\n<p>Nem\u00e9n\u011b podstatnou \u010d\u00e1st\u00ed spolupr\u00e1ce bylo ze strany ComSource i zaji\u0161t\u011bn\u00ed provozn\u00ed podpory vybran\u00fdch infrastrukturn\u00edch technologi\u00ed.\u00a0 Nap\u0159. v\u00fdrobc\u016f Juniper, Flowmon, CISCO, Checkpoint, Fortinet.\u00a0 Okrajovou \u010dinnost\u00ed v\u0161ak nap\u0159\u00edklad bylo i proveden\u00ed dokumentace pasivn\u00ed \u010d\u00e1sti s\u00edt\u011b v\u010detn\u011b zaveden\u00ed hygieny evidence jak na stran\u011b rozvad\u011b\u010d\u016f, tak i v dokumentaci elektronick\u00e9. V\u0161e s d\u016frazem na budouc\u00ed pl\u00e1n genera\u010dn\u00ed obm\u011bny prvk\u016f po\u010d\u00edta\u010dov\u00e9 s\u00edt\u011b.<\/p>\n<p><strong>Kl\u00ed\u010dov\u00e9 \u010d\u00e1sti spolupr\u00e1ce:<\/strong><\/p>\n<ul>\n<li>CISOaaS (Chief Information Security Officer as a Service)\u2013 outsourcing role mana\u017eera kybernetick\u00e9 bezpe\u010dnosti \u2013 \u0159\u00edzen\u00ed a rozvoj strategie kybernetick\u00e9 bezpe\u010dnosti; mentoring provozn\u00edch t\u00fdm\u016f<\/li>\n<li>SOCaaS (Security Operations Center as a Service) \u2013 zaji\u0161t\u011bn\u00ed dohledov\u00e9ho centra formou slu\u017eby; napojen\u00ed vybran\u00fdch technologi\u00ed jako nap\u0159. dom\u00e9ny, firewall\u016f, autentiza\u010dn\u00edch a autoriza\u010dn\u00edch n\u00e1stroj\u016f a dal\u0161\u00edch kl\u00ed\u010dov\u00fdch prvk\u016f<\/li>\n<li>NOCaaS (Network Operations Center as a Service) \u2013 zaji\u0161t\u011bn\u00ed dohledov\u00e9ho centra, monitoringu a provozn\u00ed podpory pro oblast s\u00ed\u0165ov\u00fdch komponent. Nastaven\u00ed pravideln\u00e9 profylaxe aktivn\u00edch prvk\u016f.<\/li>\n<li>Konzulta\u010dn\u00ed servis v\u00a0oblasti strategie investic do IT infrastruktury. Zpracov\u00e1n\u00ed ROI anal\u00fdzy pro strategick\u00e9 rozhodov\u00e1n\u00ed.<\/li>\n<li>Finan\u010dn\u00ed servis<\/li>\n<li>Dokumenta\u010dn\u00ed slu\u017eby<\/li>\n<li>Slu\u017eby RED t\u00fdmu; penetra\u010dn\u00ed testov\u00e1n\u00ed perimetru.<\/li>\n<\/ul>\n<p><strong>V\u00fdsledky\u00a0spolupr\u00e1ce:<\/strong><\/p>\n<p>Komplexn\u00ed strategie ComSource umo\u017enila AERO transformovat jejich p\u016fvodn\u00ed reaktivn\u00ed model kybernetick\u00e9 bezpe\u010dnosti na proaktivn\u00ed model.<\/p>\n<p>Z\u00e1kazn\u00edk nyn\u00ed zn\u00e1 sv\u00e1 data a IT zdroje, ale tak\u00e9 zn\u00e1 sv\u00e1 rizika a m\u00e1 nasazen\u00e1 n\u00e1pravn\u00e1 opat\u0159en\u00ed.<\/p>\n<p>Z\u00e1kazn\u00edk je p\u0159ipraven na genera\u010dn\u00ed obm\u011bnu technologie, stejn\u011b jako na zaveden\u00ed modern\u00edch slu\u017eeb, jako nap\u0159. cloud.<\/p>\n<p>To v\u0161e vedlo k v\u00fdznamn\u00e9mu zlep\u0161en\u00ed kybernetick\u00e9 bezpe\u010dnosti ve spole\u010dnosti AERO VODOCHODY.<\/p>\n<p>D\u00edky spolupr\u00e1ci s ComSource se z\u00e1kazn\u00edkovi poda\u0159ilo integrovat \u0159e\u0161en\u00ed kybernetick\u00e9 bezpe\u010dnosti jako ned\u00edlnou sou\u010d\u00e1st jejich IT zdroj\u016f.<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Vytvo\u0159en\u00ed a implementace kybernetick\u00e9 bezpe\u010dnostn\u00ed strategie pro tradi\u010dn\u00edho v\u00fdrobce letoun\u016f.<\/p>\n","protected":false},"author":2,"featured_media":310,"parent":696,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"class_list":["post-697","page","type-page","status-publish","has-post-thumbnail","hentry"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v25.1 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>AERO Vodochody: V\u00fdzvy kybernetick\u00e9 bezpe\u010dnosti - ComSource<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"AERO Vodochody: V\u00fdzvy kybernetick\u00e9 bezpe\u010dnosti - ComSource\" \/>\n<meta property=\"og:description\" content=\"Vytvo\u0159en\u00ed a implementace kybernetick\u00e9 bezpe\u010dnostn\u00ed strategie pro tradi\u010dn\u00edho v\u00fdrobce letoun\u016f.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/\" \/>\n<meta property=\"og:site_name\" content=\"ComSource\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/\",\"url\":\"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/\",\"name\":\"AERO Vodochody: V\u00fdzvy kybernetick\u00e9 bezpe\u010dnosti - ComSource\",\"isPartOf\":{\"@id\":\"https:\/\/comsource.cz\/en\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/comsource.cz\/wp-content\/uploads\/2023\/07\/pilot-g5d9cd141b_1280.jpg\",\"datePublished\":\"2023-07-31T20:17:22+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/#primaryimage\",\"url\":\"https:\/\/comsource.cz\/wp-content\/uploads\/2023\/07\/pilot-g5d9cd141b_1280.jpg\",\"contentUrl\":\"https:\/\/comsource.cz\/wp-content\/uploads\/2023\/07\/pilot-g5d9cd141b_1280.jpg\",\"width\":1280,\"height\":858},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/comsource.cz\/en\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Take a look at our[br]implementations in ICT security and[br]infrastructure: Case studies of our clients\",\"item\":\"https:\/\/comsource.cz\/en\/case-studies\/?lang=en\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"AERO Vodochody: V\u00fdzvy kybernetick\u00e9 bezpe\u010dnosti\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/comsource.cz\/en\/#website\",\"url\":\"https:\/\/comsource.cz\/en\/\",\"name\":\"ComSource\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/comsource.cz\/en\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"AERO Vodochody: V\u00fdzvy kybernetick\u00e9 bezpe\u010dnosti - ComSource","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/","og_locale":"en_US","og_type":"article","og_title":"AERO Vodochody: V\u00fdzvy kybernetick\u00e9 bezpe\u010dnosti - ComSource","og_description":"Vytvo\u0159en\u00ed a implementace kybernetick\u00e9 bezpe\u010dnostn\u00ed strategie pro tradi\u010dn\u00edho v\u00fdrobce letoun\u016f.","og_url":"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/","og_site_name":"ComSource","twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/","url":"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/","name":"AERO Vodochody: V\u00fdzvy kybernetick\u00e9 bezpe\u010dnosti - ComSource","isPartOf":{"@id":"https:\/\/comsource.cz\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/#primaryimage"},"image":{"@id":"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/#primaryimage"},"thumbnailUrl":"https:\/\/comsource.cz\/wp-content\/uploads\/2023\/07\/pilot-g5d9cd141b_1280.jpg","datePublished":"2023-07-31T20:17:22+00:00","breadcrumb":{"@id":"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/#primaryimage","url":"https:\/\/comsource.cz\/wp-content\/uploads\/2023\/07\/pilot-g5d9cd141b_1280.jpg","contentUrl":"https:\/\/comsource.cz\/wp-content\/uploads\/2023\/07\/pilot-g5d9cd141b_1280.jpg","width":1280,"height":858},{"@type":"BreadcrumbList","@id":"https:\/\/comsource.cz\/en\/case-studies\/aero-vodochody-vyzvy-kyberneticke-bezpecnosti\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/comsource.cz\/en\/"},{"@type":"ListItem","position":2,"name":"Take a look at our[br]implementations in ICT security and[br]infrastructure: Case studies of our clients","item":"https:\/\/comsource.cz\/en\/case-studies\/?lang=en"},{"@type":"ListItem","position":3,"name":"AERO Vodochody: V\u00fdzvy kybernetick\u00e9 bezpe\u010dnosti"}]},{"@type":"WebSite","@id":"https:\/\/comsource.cz\/en\/#website","url":"https:\/\/comsource.cz\/en\/","name":"ComSource","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/comsource.cz\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"}]}},"_links":{"self":[{"href":"https:\/\/comsource.cz\/en\/wp-json\/wp\/v2\/pages\/697","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/comsource.cz\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/comsource.cz\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/comsource.cz\/en\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/comsource.cz\/en\/wp-json\/wp\/v2\/comments?post=697"}],"version-history":[{"count":0,"href":"https:\/\/comsource.cz\/en\/wp-json\/wp\/v2\/pages\/697\/revisions"}],"up":[{"embeddable":true,"href":"https:\/\/comsource.cz\/en\/wp-json\/wp\/v2\/pages\/696"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/comsource.cz\/en\/wp-json\/wp\/v2\/media\/310"}],"wp:attachment":[{"href":"https:\/\/comsource.cz\/en\/wp-json\/wp\/v2\/media?parent=697"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}