• ENEN
    • IT IT
    • ES ES
PARTNER LOGIN
  • ENEN
    • IT IT
    • ES ES

Auriga

  • COMPANY

    • About Us

    • Auriga History

    • Group

    • Our Values

    • Our Network

      • Partnerships

      • Certifications

      • Suppliers

    • CSR (ethical code)

      • CSR – Corporate Social Responsibility

  • BANKING

    • Overview

    • Needs

      • Channel Integration

      • Monitoring network

      • Marketing & Customer Relations

      • Accessibility of banking service

      • Corporate Banking

      • Banking Data Analysis

      • Branch of the Future

      • ATM network security

    • Products and Solutions

      • Shared Services

        • WinWebServer Architecture

        • Proactive Network Monitoring

        • One to One Marketing

      • ATM / Kiosks

        • WWS ATM

      • Internet / PC

        • WWS Digital Banking

      • Mobile Banking and Payments

        • WWS Mobile

      • Electronic payments

        • MyBank

      • Bank Marketing & Digital Signage

        • WWS One to One OMNIA

        • WWS Signage

        • WWS Perfect

        • WWS RSS Feed

        • WWS Simply Feed

      • Network Monitoring & Fraud Management

        • WWS Proactive Monitoring OMNIA

        • WWS Fraud Management System

        • WWS Simply Check

      • Call Centre

        • WWS Help Desk

      • Cash Handling

        • WWS Cash Handling

        • WWS Cash Management

      • Digital Invoicing and Document Management

        • WWS e-Invoicing

      • Branch

        • WWS Fill4Me and Bank4Me

        • WWS Greæter

        • WWS Customer Management

      • Business Analytics

        • WWS Business Analytics Management

        • WWS Asset Management

      • Cyber Security Platform

        • Lookwise Device Manager

  • NEWS & MEDIA

    • News

    • Press Release

    • Press Review

    • Blog

    • Videos

    • Infographics

  • RESOURCES

    • White Papers

    • Customer stories

    • Research

    • Brochures

  • CONTACT

    • Contact us

  • CAREERS

    • Work for Us

    • Online application

    • Job vacancies

Blog

  • Home
  • News & Media
  • Blog
  • National Cybersecurity Awareness Month: 5B Case Study
Auriga-Cybersecurity-Month-5B-Blog-EN

National Cybersecurity Awareness Month: 5B Case Study

27 October 2022 / Blog

As October is National Cybersecurity Awareness Month (ECSM), we would like to take a look back at the BankSec 2022 conference, the annual leading RBR conference focused on banking security, which Auriga could not miss.

It was a a fantastic opportunity to share ideas and network with industry peers and discuss the best strategies to ensure the security of a bank’s assets, as well as how to defend their networks efficiently and reliably.

Joining Auriga at the event was Marco Mejia from 5B, a customer and the largest ATM provider in Central America. He shared their experience using Auriga’s Lookwise Device Manager (LDM) cybersecurity solution, which helped them in successfully securing their fleets of ATMs from cyber-attacks. Let’s deep dive into the details…

Managing more than 2,600 ATMs in Guatemala alone, 25% of which belong to bank branches, 5B’s primary goals were to:

  • Control ATM operations, especially when it comes to developing software images and on-site processes that technicians (who often come from third parties) perform for terminal maintenance.
  • Prevent and monitor potential threats and unforeseen on-site activities.
  • Maximise the up-time of the ATMs.

In summary, 5B’s greatest commitment is to guarantee the security and stability of its production ATM network, both in software and hardware. Especially considering that they are critical devices and, therefore, must be active 24 hours a day, 365 days a year.

The implementation of a cybersecurity strategy based on the LDM solution, through an appropriate set of protection technologies, makes it possible to secure key devices without interrupting operations. One of the key benefits of LDM is it centralises device network security to ensure efficient control. In addition, by concentrating security operations on a single platform, it ensures there is minimal impact on the performance of the devices.

5B’s security model follows three main rules:

  1. Define a procedure to safely develop a software image:  The ATMs follow the LDM production security policy, with software and hardware whitelisting, to protect the integrity of the file system and prevent manipulation of critical files in software images, as well as block unauthorised hardware devices from connecting to the ATM. In addition, by having the LDM protection modules pre-installed and pre-configured with the security policy, all operating system users have access to the restricted privileges system without administrator permission.
  2. Define processes to safely carry out on-site maintenance activities for ATMs: Every on-site terminal maintenance activity is properly scheduled, authorised, carried out and monitored by the 5B cybersecurity team. This means work orders from unauthorised sources will be denied.
  3. Define 24/7 response and monitoring practices: This enables automatic detection of suspicious activities such as attempts to connect hardware devices to the terminals, while there is no on-site maintenance activity scheduled, or LDM security policy changes outside of maintenance hours.

Results

This operation made it possible to achieve 98.4% optimisation in the up time of the entire 5B ATM network and allowed 100% of the hard drives encrypted to maintain the integrity of software and hardware. On the other hand, a continuous and successful cybersecurity process was achieved for the ATM network, based on the appropriate technology, personnel, and actions. 5B was then able to run 24/7 monitoring, which is crucial for the automated detection of suspicious activities and the implementation of premeditated response plans that include physical and remote verifications.

Finally, the LDM cybersecurity model allowed operations (including physical access to ATMs) to first pass through 5B to be authorised, scheduled, controlled, and monitored.

    
  • Tweet
Tagged under: 5B, cybersecurity
  • News
  • Press Release
  • Press Review
  • Blog
  • Videos
  • Infographics

DO YOU WANT INSIGHTS FROM THE WORLD’S BANKING INDUSTRY?

JOIN THE AURIGA COMMUNITY TO BE ALWAYS UPDATED ON:

News on software solutions

Invitations to industry events

Customer stories

Reports

Market research

...and much more!

LET'S CONNECT
CONTACT

HEADQUARTER - BARI
Via Don Luigi Guanella, 17
70124 Bari - Italy

TEL: +39.080.5692111

info@aurigaspa.com

Milan office
Rome office
Brussels office
London office
Madrid office
Mexico City office

BUSINESS CONTACTS
Niccolo Garzelli - Auriga - Footer

Niccolò Garzelli Milan office
niccolo.garzelli@aurigaspa.com

MARK ALDRED London office
mark.aldred@aurigaspa.com

brendan-thorpe-contacts

BRENDAN THORPE London office
brendan.thorpe@aurigaspa.com

Stefano Cipollone Milan office
stefano.cipollone@aurigaspa.com

MARTIN ESPINELMexico City office
martin.espinel@aurigaspa.com

lukasz-feluch

ŁUKASZ FELUCHVarsaw office
lukasz.feluch@aurigaspa.com

RUDY DE WOLFBrussels office
rudolf.dewolf@aurigaspa.com

angel arenillas

ÁNGEL ARENILLAS YUSTEMadrid office
angel.arenillas@aurigaspa.com

Kelum-Dissanayake-Auriga-Footer

Kelum Dissanayakekelum.dissanayake@aurigaspa.com

EXPLORE
  • About Us
  • WinWebServer
  • Blog
  • White Papers
  • Research
LATEST NEWS
  • Hybrid-Branch-Digital-and-Physical-Blog-ENG-Auriga

    The Hybrid Branch: Blending Digital and Physical Banking

    14/04/2025
  • Access to cash

    Maintaining ATMs and Access to Cash: a Worldwide Issue

    14/04/2025
  • service-delivery-manager-job-vacancies-auriga

    Service Delivery Manager – Brussels (Belgium)

    09/04/2025

Connect with us

SUBSCRIBE TO THE NEWSLETTER

Join the Auriga community

Let's connect

Auriga Spa - Copyright © 2025 - All rights reserved | Legal Notice | Privacy Policy | Whistleblowing Policy | Social Media Policy
P.I. 05566820725 - Capital € 1.196.055 i.v. - R.E.A. 426675

TOP
Gestisci Consenso

We, and third party websites you may interact with via our site, use cookies to collect site usage data and improve your experience, this includes permanent and profiling cookies. By clicking ‘Accept’ you agree to allow cookies, however you can disable this through your browser settings at anytime. If you opt to totally or partial disable cookies, this might compromise some features on the website. For more information on our cookie policy, go to the Legal Notice page.

Functional Always active
L'archiviazione tecnica o l'accesso sono strettamente necessari al fine legittimo di consentire l'uso di un servizio specifico esplicitamente richiesto dall'abbonato o dall'utente, o al solo scopo di effettuare la trasmissione di una comunicazione su una rete di comunicazione elettronica.
Preferenze
L'archiviazione tecnica o l'accesso sono necessari per lo scopo legittimo di memorizzare le preferenze che non sono richieste dall'abbonato o dall'utente.
Statistiche
L'archiviazione tecnica o l'accesso che viene utilizzato esclusivamente per scopi statistici. L'archiviazione tecnica o l'accesso che viene utilizzato esclusivamente per scopi statistici anonimi. Senza un mandato di comparizione, una conformità volontaria da parte del vostro Fornitore di Servizi Internet, o ulteriori registrazioni da parte di terzi, le informazioni memorizzate o recuperate per questo scopo da sole non possono di solito essere utilizzate per l'identificazione.
Marketing
L'archiviazione tecnica o l'accesso sono necessari per creare profili di utenti per inviare pubblicità, o per tracciare l'utente su un sito web o su diversi siti web per scopi di marketing simili.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}