Mizuho Unlocks DNS Visibility, Control and Security with BlueCat and Cisco Umbrella

Key Takeaways
  • The BlueCat DNS Edge and Cisco Umbrella integration provides complete visibility into both internal and external DNS traffic down to the endpoint level.
  • The joint solution enables universal, DNS-layer security policy enforcement across all endpoints, using DNS as a control plane for cybersecurity.
  • Mizuho deployed the integrated solution in under a week and reduced incident investigation time by allowing SOC analysts to quickly identify devices querying suspicious domains.
  • The integration correlates every outbound DNS query with its originating device, accelerating detection and mitigation of infected endpoints.
  • Internal East-West DNS visibility enables faster remediation, identification of patient zero, and device-level forensics during cyber incidents.
  • DNS query logs are exported to the SIEM, where they enrich threat investigation workflows and support broader security analytics and incident response.

“We see everything, both internal and external DNS traffic right down to each endpoint on the network. And we can enforce universal security policies at the DNS layer. It’s a game changer for cybersecurity.” –VP, Security Engineering at Mizuho Securities USA.

TORONTO, ON—February 18, 2020—BlueCat, the Adaptive DNS™ company, today announced that Mizuho Securities USA (Mizuho) has unlocked unprecedented visibility and control over all of its DNS activity by deploying an integration of Cisco Umbrella and BlueCat DNS Edge products. The joint solution, developed as part of Cisco’s Security Technology Alliance (CSTA), is deployed to protect all their endpoints and helps enterprises like Mizuho take full advantage of DNS as a control plane for cybersecurity.

“It took us less than a week to deploy this solution and it immediately delivered value to the organization. We can now pinpoint the end-user devices that attempted to access suspicious domains,” said Sandy Kapoor, CTO at Mizuho. “That visibility shaved precious minutes off the average time to investigate incidents by our security operations center (SOC), and limited the number of escalations. The result is a greatly enhanced security posture and real cost and time savings.”

Research suggests that 91% of malware uses the DNS protocol for command and control, data exfiltration or to deliver malicious payloads within a corporate network. Despite this, cybersecurity teams struggle to piece together data from DNS queries to identify and prevent malicious activity. As a result, DNS remains an under-leveraged control plane that could be integrated with other cybersecurity applications like firewalls, web proxies and Security Incident and Event Management (SIEM) tools.

BlueCat’s integration with Cisco Umbrella helps organizations like Mizuho overcome this challenge by:

  • Applying Cisco’s powerful threat detection and content filtering capabilities to any endpoint on the network, protecting them from malware, bad domains and other threats.
  • Identifying the source of every outbound DNS query, so security teams can quickly pinpoint infected devices and take action to mitigate an attack.
  • Seeing every internal “East-West” DNS query – including those that never go through the Cisco Umbrella cloud security platform. This speeds remediation, helps identify ‘patient zero’, and perform device forensics in any cyber attack.
  • Applying policies to internal traffic, limiting access to critical internal services and intellectual property or restricting access for IoT devices.
  • Sending all DNS query logs to Mizuho’s SIEM for threat investigation and remediation.

About the Integration

The BlueCat DNS Edge integration with Cisco Umbrella fortifies network defenses, providing visibility and context into all internal and external traffic to find threats faster and prevent downtime. BlueCat DNS Edge is a security application that sits at the first hop of any network query, acting as the initial recursive server for all internal DNS records. This gives direct visibility into both the source IP as well as the “East-West” queries. This happens through lightweight service points which can be deployed quickly across the enterprise.

About BlueCat

BlueCat is the Adaptive DNS™ company. The company’s mission is to help the world’s largest organizations thrive on network complexity, from the edge to the core. To do this, BlueCat re-imagined DNS. The result – Adaptive DNS™ – is a dynamic, open, secure, scalable, and automated resource that supports the most challenging digital transformation initiatives, like adoption of hybrid cloud and rapid application development. Learn more at bluecatnetworks.com.

Contact Information

Dana Iskoldski

Corporate Communications Manager

[email protected]

Get in touch

We’re the DDI provider you’ve been looking for.
Drop us a line and let’s talk.

Related content

Isometric dashboard illustration showing a circular "33 Total Devices" donut chart, issue counts, and filter controls

BlueCat moves agentic AI from insight to action with new AI integrations

Extends its Intelligent NetOps platform to help organizations unlock measurable AI value through a unified data foundation

Read more
Headshot of a man in a suit and striped tie wearing rectangular glasses against a blurred office background

BlueCat appoints Jeff McCullough as Vice President, Worldwide Channel and Alliance

Experienced channel leader will drive partner-led growth and support partners in generating revenue and value within BlueCat’s global ecosystem

Read more
BlueCat logo above Horizon product name with stylized network horizon graphic and glowing center

BlueCat introduces BlueCat Horizon, a SaaS-first Intelligent NetOps platform for cross-domain network operations

The platform delivers a unified control plane for DNS, DHCP, IPAM, security, and observability, empowering rapid, automated action across networks

Read more
Report cover titled "The Network Observability Maturity Model" with EMA and BlueCat logos and purple design accents

Fewer than half of enterprises are fully successful with network observability tools

Fragmented tools and cloud blind spots are straining NetOps, but a new five-stage maturity model charts the path to excellence.

Read more

⏳ Cisco Live is almost here. Put BlueCat on your agenda for smarter, more secure networks.