A national broadcaster in Central Asia operates Secure60 across its broadcast, IT and audience-facing systems, at high sustained ingest volumes, on Rackcorp infrastructure inside the country.
The broadcaster is designated an organisation with critical information infrastructure under the country’s 2021 Law on Cyber Security, and handles audience data under the Law on Personal Data Protection. Both laws set obligations that have to be demonstrated, and neither names a tool.
Broadcast systems cannot tolerate a monitoring platform that itself becomes a point of failure, and the security telemetry they generate is large and continuous. The data had to stay in the country, and the organisation did not have a security operations team to run a platform of this size.
Secure60 was deployed on Rackcorp infrastructure in-country, where Secure60 has four datacentres, so ingest, storage, detection and evidence all run onshore. Log Management takes the broadcast, network and IT telemetry at sustained volume; SIEM runs the managed rule library over it; Governance maps the resulting evidence to the two laws.
The operation is run by Secure60. Digital workers handle first-line triage around the clock, with Secure60 experts on escalation, so the broadcaster’s own staff are not on call for the platform.
The critical-infrastructure designation brings inspection, and the evidence is maintained before it is requested.
No telemetry or evidence is backhauled to another jurisdiction; the in-country deployment is the documented answer to the residency question.
Round-the-clock detection and response without the broadcaster building a security operations team.
Ingest and retention sized for a nation-scale broadcaster, with retention held to the period the two laws and the broadcaster’s own investigation windows require.