Friday, 20 Mar 2026
Subscribe
logo
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Font ResizerAa
Data Center NewsData Center News
Search
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Data Center News > Blog > AI > NOV CIO fused AI and Zero Trust to slash threats by 35x
AI

NOV CIO fused AI and Zero Trust to slash threats by 35x

Last updated: April 19, 2025 4:36 am
Published April 19, 2025
Share
NOV CIO fused AI and Zero Trust to slash threats by 35x
SHARE

Be part of our every day and weekly newsletters for the newest updates and unique content material on industry-leading AI protection. Study Extra


National Oilwell Varco (NOV) is present process a sweeping cybersecurity transformation beneath CIO Alex Philips, embracing a Zero Belief structure, strengthening identification defenses and infusing AI into safety operations. Whereas the journey will not be full, the outcomes, by all accounts, are dramatic – a 35-fold drop in security events, the elimination of malware-related PC reimaging and thousands and thousands saved by scrapping legacy “equipment hell” {hardware}.

VentureBeat lately sat down (just about) for this in-depth interview the place Philips particulars how NOV achieved these outcomes with Zscaler’s Zero Belief platform, aggressive identification protections and a generative AI “co-worker” for its safety crew.

He additionally shares how he retains NOV’s board engaged on cyber danger amid a worldwide risk panorama the place 79% of assaults to achieve preliminary entry are malware-free, and adversaries can transfer from breach to interrupt out in as little as 51 seconds.

Beneath are excerpts of Philips’ current interview with VentureBeat:

VentureBeat: Alex, NOV went “all in” on Zero Belief a lot of years in the past – what had been the standout good points?

Alex Philips: Once we began, we had been a standard castle-and-moat mannequin that wasn’t maintaining. We didn’t know what Zero Belief was, we simply knew that we would have liked identification and conditional entry on the core of all the pieces. Our journey started by adopting an identity-driven structure on Zscaler’s Zero Belief Alternate and it modified all the pieces. Our visibility and safety protection dramatically elevated whereas concurrently experiencing a 35x discount within the variety of safety incidents. Earlier than, our crew was chasing hundreds of malware incidents; now, it’s a tiny fraction of that. We additionally went from reimaging about 100 malware-infected machines every month to just about zero now. That’s saved a substantial quantity of money and time. And for the reason that answer is cloud-based, Appliance hell is gone, as I wish to say.

The zero belief method now offers 27,500 NOV customers and third events policy-based entry to hundreds of inside functions, all with out exposing these apps on to the web.

We had been then in a position to take an interim step and re-architect our community to benefit from internet-based connectivity vs. legacy costly MPLS. “On common, we elevated velocity by 10–20x, decreased latency to important SaaS apps, and slashed value by over 4x… Annualized financial savings [from network changes] have already achieved over $6.5M,” Philips has famous of the challenge.

VB: How did shifting to zero belief really scale back the safety noise by such an infinite issue?

See also  Ransomware gang ‘unseizes’ its site and issues new threats after FBI takedown

Philips: A giant motive is that our web visitors now goes via a Safety Service Edge (SSE) with full SSL inspection, sandboxing, and knowledge loss prevention. Zscaler friends straight with Microsoft, so Workplace 365 visitors obtained quicker and safer – customers stopped attempting to bypass controls as a result of efficiency improved. After being denied SSL inspection with on-prem gear, we lastly obtained authorized approval to decrypt SSL visitors for the reason that cloud proxy doesn’t give NOV entry to spy on the information itself. Meaning malware hiding in encrypted streams began getting caught earlier than hitting endpoints. Briefly, we shrunk the assault floor and let good visitors movement freely. Fewer threats in meant fewer alerts total.

John McLeod, NOV’s CISO, concurred that the “previous community perimeter mannequin doesn’t work in a hybrid world” and that an identity-centric cloud safety stack was wanted. By routing all enterprise visitors via cloud safety layers (and even isolating dangerous net classes by way of instruments like Zscaler’s Zero Belief Browser), NOV dramatically minimize down intrusion makes an attempt. This complete inspection functionality is what enabled NOV to identify and cease threats that beforehand slipped via, slashing incident volumes by 35x.

VB: Had been there any unexpected advantages to adopting Zero Belief you didn’t initially anticipate?

Alex Philips: Sure, our customers really most popular the cloud-based Zero Belief expertise over legacy VPN purchasers, so adoption was easy and gave us unprecedented agility for mobility, acquisitions, and even what we wish to name “Black Swan Occasions”. For instance, when COVID-19 hit, NOV was already ready! I instructed my management crew if all 27,500 of our customers wanted to work remotely, our IT methods may deal with it. My management was shocked and our firm stored transferring ahead with out lacking a beat.

VB: Identification-based assaults are on the rise – you’ve talked about staggering stats about credential theft. How is NOV fortifying identification and entry administration?

Philips: Attackers understand it’s usually simpler to log in with stolen credentials than to drop malware. In actual fact, 79% of assaults to achieve preliminary entry in 2024 had been malware-free, counting on stolen credentials, AI-driven phishing, and deepfake scams, in response to current risk studies. One in three cloud intrusions final yr concerned legitimate credentials. We’ve tightened identification insurance policies to make these ways tougher.

For instance, we built-in our Zscaler platform with Okta for identification and conditional entry checks. Our conditional entry insurance policies confirm units have our SentinelOne antivirus agent working earlier than granting entry, including an additional posture examine. We’ve additionally drastically restricted who can carry out password or MFA resets. No single admin ought to have the ability to bypass authentication controls alone. This separation of duties prevents an insider or compromised account from merely turning off our protections.

See also  How BESS Protects Data Centers from Emerging Cyber Threats

VB: You talked about discovering a spot even after disabling a person’s account. Are you able to clarify?

Philips: We found that if you happen to detect and disable a compromised person’s account, the attacker’s session tokens may nonetheless be energetic. It isn’t sufficient to reset passwords; it’s a must to revoke session tokens to actually kick out an intruder. We’re partnering with a startup to create close to real-time token invalidation options for our mostly used assets. Basically, we need to make a stolen token ineffective inside seconds. A Zero Belief structure helps as a result of all the pieces is re-authenticated via a proxy or identification supplier, giving us a single choke level to cancel tokens globally. That approach, even when an attacker grabs a VPN cookie or cloud session, they will’t transfer laterally as a result of we’ll kill that token quick.

VB: How else are you securing identities at NOV?

Philips: We implement multi-factor authentication (MFA) virtually in all places and monitor for irregular entry patterns. Okta, Zscaler, and SentinelOne collectively kind an identity-driven safety perimeter the place every login and system posture is constantly verified. Even when somebody steals a person password, they nonetheless face system checks, MFA challenges, conditional entry guidelines, and the danger of on the spot session revocation if something appears off. Resetting a password isn’t sufficient anymore — we should revoke session tokens immediately to cease lateral motion. That philosophy underpins NOV’s identification risk protection technique.

VB: You’ve additionally been an early adopter of AI in cybersecurity. How is NOV leveraging AI and generative fashions within the SOC?

Philips: We’ve a comparatively small safety crew for our international footprint, so we should work smarter. One method is bringing AI “co-workers” into our safety operations middle (SOC). We partnered with SentinelOne and began utilizing their AI safety analyst software—an AI that may write and run queries throughout our logs at machine velocity. It’s been a recreation changer, permitting analysts to ask questions in plain English and get solutions in seconds. As a substitute of manually crafting SQL queries, the AI suggests the subsequent question and even auto-generates a report, which has dropped our imply time to reply.

We’ve seen success tales the place risk hunts are carried out as much as 80% quicker utilizing AI assistants. Microsoft’s personal knowledge reveals that including generative AI can scale back incident imply time to decision by 30%. Past vendor instruments, we’re additionally experimenting with inside AI bots for operational analytics, utilizing OpenAI foundational AI fashions to assist non-technical workers rapidly question knowledge. In fact, we’ve knowledge safety guardrails in place so these AI options don’t leak delicate info.

See also  Data center survey: AI gains ground but trust concerns persist

VB: Cybersecurity is now not simply an IT subject. How do you have interaction NOV’s board and executives on cyber danger?

Philips: I made it a precedence to carry our board of administrators alongside on our cyber journey. They don’t want the deep technical trivia, however they do want to grasp our danger posture. With generative AI exploding, for instance, I briefed them on each the benefits and dangers early on. That schooling helps once I suggest controls to stop knowledge leaks—there’s already alignment on why it’s needed.

The board views cybersecurity as a core enterprise danger now. They’re briefed on it at each assembly, not simply every year. We’ve even run tabletop workouts with them to point out how an assault would play out, turning summary threats into tangible determination factors. That results in stronger top-down assist.

I make it some extent to consistently reinforce the truth of cyber danger. Even with thousands and thousands invested in our cybersecurity program, the danger isn’t absolutely eradicated. It’s not if we can have an incident, however when.

VB: Any remaining recommendation, based mostly on NOV’s journey, for different CIOs and CISOs on the market?

Philips: First, acknowledge that safety transformation and digital transformation go hand in hand. We couldn’t have moved to the cloud or enabled distant work so successfully with out Zero Belief, and the enterprise value financial savings helped fund safety enhancements. It really was a “win, win, win.”

Second, give attention to the separation of duties in identification and entry. Nobody individual ought to have the ability to undermine your safety controls—myself included. Small course of adjustments like requiring two individuals to alter MFA for an exec or extremely privileged IT workers, can thwart malicious insiders, errors, and attackers.

Lastly, embrace AI fastidiously however proactively. AI is already a actuality on the attacker aspect. A well-implemented AI assistant can multiply your crew’s protection, however you will need to handle the dangers of knowledge leakage or inaccurate fashions. Ensure that to merge AI output together with your crew’s talent to create an AI-infused “brAIn”.

We all know the threats maintain evolving, however with zero belief, sturdy identification safety and now AI on our aspect, it helps give us a preventing likelihood.


Source link
TAGGED: 35x, CIO, fused, NOV, slash, threats, Trust
Share This Article
Twitter Email Copy Link Print
Previous Article Fotenix Fotenix Raises £2.1M in Funding
Next Article Nyobolt Nyobolt Raises $30M in Funding
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
TwitterFollow
InstagramFollow
YoutubeSubscribe
LinkedInFollow
MediumFollow
- Advertisement -
Ad image

Popular Posts

Eliminating the Pain of Data Center Migration

Migrating a knowledge heart is usually a formidable problem, fraught with complexities and potential pitfalls.…

May 22, 2024

Fortinet expands security lineup with sovereign SASE

From a software program perspective, Sovereign SASE helps the identical options which can be supplied…

September 2, 2024

How GPT-4o Defends Identities Against AI-Generated Deepfakes

Be a part of our each day and weekly newsletters for the newest updates and…

October 4, 2024

Steps to sustainable networking – Data Centre Review

Mattias Fridström, Chief Evangelist at Arelion, highlights how the sector could make significant progress in…

February 15, 2024

Alice Raises €4.2M in Funding

Alice, a Copenhagen, Denmark-based edtech startup, raised €4.2m in funding. The spherical was led by Cherry…

May 11, 2025

You Might Also Like

NVIDIA Agent Toolkit Gives Enterprises a Framework to Deploy AI Agents at Scale
AI

NVIDIA Agent Toolkit Gives Enterprises a Framework to Deploy AI Agents at Scale

By saad
Visa prepares payment systems for AI agent-initiated transactions
AI

Visa prepares payment systems for AI agent-initiated transactions

By saad
For effective AI, insurance needs to get its data house in order
AI

For effective AI, insurance needs to get its data house in order

By saad
Mastercard keeps tabs on fraud with new foundation model
AI

Mastercard keeps tabs on fraud with new foundation model

By saad
Data Center News
Facebook Twitter Youtube Instagram Linkedin

About US

Data Center News: Stay informed on the pulse of data centers. Latest updates, tech trends, and industry insights—all in one place. Elevate your data infrastructure knowledge.

Top Categories
  • Global Market
  • Infrastructure
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2024 – datacenternews.tech – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
You can revoke your consent any time using the Revoke consent button.