The customer of the project is one of the largest Russian providers in the field of information and communication technologies and mobile communications, a roaming partner.
As of 2025, the operator's communications coverage is more than 40 million subscribers worldwide. The company employs more than 20 thousand people.The customer needed to find a high-quality replacement solution to replace the Western IDS/IPS system used, based on the solution of a vendor that left the Russian Federation due to the extensive sanctions policy against Russian residents.
It was necessary to implement a complex “full cycle” project, consisting of the delivery, implementation and support phases, fully implemented by one center. The experienced ICL Services team took on this task.Key Challenges
- Implement an intrusion detection system
- Implement a system of protection against targeted attacks and zero-day threats
- Implement an advanced traffic content analysis system (sandbox type)
The project was divided into 4 main stages:
• Equipment supply
• License supply
• Commissioning work
• Service support
The ICL Services team involved 6 people, including IT service managers, a key system architect and engineers for automated production control systems.
The customer defined the conditions and technical specifications for selecting the best manufacturer of an intrusion detection and prevention system (IDS/IPS), a system for protection against targeted attacks and zero-day threats (Sandbox).
Thus, during 2022-2023, the ICL team carried out activities to select and competitively protect the optimal solution with the subsequent implementation of services for the design, implementation, support and development of this system for a period of 5 years.
During the supply and commissioning work, a business trip was made to the customer's head office in Moscow.
The customer’s specialists with the support and remote coordination of the ICL Services team carried out installation work in three data centers. The ICL Services team carried out configuration and debugging of the system, writing of design documentation, and conducting acceptance tests independently.
Results
- Successfully completed work on the implementation and commissioning of the intrusion detection system.
- Implemented a system for protection against targeted attacks and zero-day threats.
- Implemented a system for advanced traffic content analysis of the Sandbox type.
- Developed and optimized a set of rules/policies for intrusion detection
- Successful implementation allows our team to continue to successfully develop relationships and a range of services provided directly to the customer - in developing a deal for the provision of support services for Proxy and HCI solutions.