
Emergency Communications of Southern Oregon (ECSO 911) serves as the regional 911 dispatch center for Jackson County and nearby areas. They manage all emergency calls and coordinate the dispatch of police, fire, and medical services for over 30 partner agencies, including Crater Lake National Park. ECSO 911, which operates 24/7, is dedicated to protecting lives and property by ensuring swift and reliable emergency response. Their team supports a wide range of communication systems and IT infrastructure critical to public safety operations across Southern Oregon.
ECSO 911
Public Safety
USA
Visibility gaps: Due to the lack of a centralized SIEM solution, ECSO 911 struggled with limited visibility into their critical systems and endpoints. This made it difficult to monitor and analyze logs in real time, increasing the risk of undetected security incidents.
Cybersecurity challenges: As ECSO 911 managed hundreds of endpoints and critical infrastructure, it needed a solution to detect and respond to potential cyberthreats, particularly those targeting VPNs, firewalls, and mobile systems.
Manual log analysis: The team faced a heavy burden of manually sifting through logs, which consumed valuable time that could otherwise be spent on proactive security measures.
In their search for a more effective log management solution, ECSO 911 evaluated various options that could provide comprehensive monitoring, automate routine tasks, and improve threat detection. Log360 emerged as the ideal solution, offering a centralized dashboard, real-time alerting, and a user-friendly interface that allowed the team to monitor all critical systems and endpoints from a single platform.
Corey Nelson, IT manager, ECSO 911
Once Log360 was deployed across ECSO 911's infrastructure, the benefits were immediate. The IT security team used it to aggregate logs from firewalls, mobile endpoints, switches, and VPNs, enabling them to monitor the entire network. The platform's ability to provide contextual alerts meant that the team could identify and mitigate potential threats, such as brute-force attacks, much faster.
In one instance, Log360 successfully flagged a brute-force attempt on the VPN, which would have otherwise gone unnoticed. Thanks to the platform's timely alerting and advanced analytics, ECSO 911 was able to take immediate action and prevent any damage.
Log360 also helped ECSO 911 streamline its compliance efforts. With automated log retention policies and continuous audit-ready reporting, ECSO 911 was able to maintain detailed records to meet both internal and regulatory requirements.
Corey Nelson, IT manager, ECSO 911
Log360 is a unified SIEM solution with integrated DLP and CASB capabilities that detects, prioritizes, investigates, and responds to security threats. Vigil IQ, the solution's TDIR module, combines threat intelligence, an analytical Incident Workbench, ML-based anomaly detection, and rule-based attack detection techniques to detect sophisticated attacks, and it offers an incident management console for effectively remediating detected threats. Log360 provides holistic security visibility across on-premises, cloud, and hybrid networks with its intuitive and advanced security analytics and monitoring capabilities. For more information about Log360, visit manageengine.com/log-management/ and follow the LinkedIn page for regular updates.
Discover how ADSelfService Plus helps your organization manage and protect identities through a personalized self-service experience
Fill in the details below and get instant access to the case study.