OpenText 拥有数十年的专业经验,可帮助您解锁数据、连接人员和流程,并以信任为 AI 提供动力
以全新方式查看信息
能够理解您的业务、数据和目标的 AI
迎接更快的决策。您安全的 AI 个人助理已准备就绪,随时开始工作
利用生成式 AI 为供应链获取更深入的见解
利用 AI 内容管理和智能 AI 内容助手实现高效工作
实现更快的应用交付、开发和自动化软件测试
提升客户沟通和体验,助力客户成功
让用户、服务代理和 IT 人员能够找到他们所需的答案
以全新方式查看信息
能够理解您的业务、数据和目标的 AI
迎接更快的决策。您安全的 AI 个人助理已准备就绪,随时开始工作
利用生成式 AI 为供应链获取更深入的见解
利用 AI 内容管理和智能 AI 内容助手实现高效工作
实现更快的应用交付、开发和自动化软件测试
提升客户沟通和体验,助力客户成功
让用户、服务代理和 IT 人员能够找到他们所需的答案
一次连接,即可通过安全的 B2B 集成平台触达一切
通过 AI 驱动的 DevOps 自动化、测试和质量,更快地交付更优质的软件
利用令人难忘的客户体验重新构想对话
获得所需的清晰度,以降低 IT 运营的成本和复杂性
利用成熟的 OpenText 信息管理技术构建自定义应用程序
安全信息管理与可信的 AI 相结合
提升数据和 AI 信任度的统一数据框架
在这里,您可以使用数据语言构建、部署和迭代代理
一套用于帮助摄取数据和自动化元数据标记,以推动 AI 发展的工具
一套使治理具有主动性和持久性的服务和 API
专业服务专家助您踏上 AI 之旅
以全新方式查看信息
能够理解您的业务、数据和目标的 AI
迎接更快的决策。您安全的 AI 个人助理已准备就绪,随时开始工作
利用生成式 AI 为供应链获取更深入的见解
利用 AI 内容管理和智能 AI 内容助手实现高效工作
实现更快的应用交付、开发和自动化软件测试
提升客户沟通和体验,助力客户成功
让用户、服务代理和 IT 人员能够找到他们所需的答案
OdeabankLeading bank cuts daily volume of security alerts needing investigation by 90%, keeping security headcount flat while meeting rigorous regulatory requirements for digital banking services

Minimize volumes of duplicate and false-positive security alerts, enabling security specialists to investigate the most significant threats.
Following fast-paced growth, Odeabank has climbed from the 49th largest bank by asset size to a top-ten player in its domestic market. The bank serves customers through a wide variety of channels, including 48 physical branches as well as online and mobile banking platforms. Digital solutions play a key role in all aspects of Odeabank's offering, and the company is mandated by Turkey's Banking Regulation and Supervision Agency (BRSA) to maintain rigorous information security and data governance controls.
Emrecan Batar, Information Security Senior Specialist at Odeabank, explains: “As a future-facing bank, we manage a large IT estate: from endpoints such as laptops and desktops in our branches and back-office locations, to application servers and core banking platforms in our data center. Keeping these systems protected 24/7 is crucial—and to help achieve that goal, we rely on our Security Operations Center [SOC].”
In the SOC, Odeabank's information security specialists are responsible for sifting through potential security events, determining which are most likely to represent actual incidents, and prioritizing the investigation and remediation of cyber threats. Odeabank uses security information and event management (SIEM) data to help surface potential threats, and security orchestration, automation, and response (SOAR) capabilities to help manage investigation and remediation activities.
Rather than writing multiple playbooks for each type of potential security threat, we use a single set of branching logic in ArcSight SOAR to help us close 33% of cases without any human involvement.
Increasingly, many Odeabank customers prefer to engage with the bank via digital channels. Batar continues: “As demand for our digital systems grows, so is the volume of security event data. We need to track thousands of alerts per day, which was beginning to put increased strain on the SOC. To empower our lean SOC team to protect the bank and meet our regulatory requirements, we looked for a better way to sort the signal from the noise.”
To realize its information security objectives, Odeabank uses ArcSight Enterprise Security Manager (ESM) to enable real time threat detection, and ArcSight SOAR to intelligently automate repetitive security activities.
“When I joined the Information Security function at Odeabank, one of the primary targets was to drive down the daily total of false positive alerts, which were consuming significant amounts of time for members of the SOC,” comments Batar. “Our concern wasn't simply a practical one. We are mandated by the BRSA to respond to threats within a set period of time, which is defined through service-level agreements [SLAs] with the business. Previously, the sheer volume of events for our team to process made it difficult to ensure that we were meeting those SLAs.”
Using ArcSight ESM, Odeabank processes up to 15,000 security events per second, based on data sources including log files from 40 separate IT solutions. By applying automated rules to these events in ArcSight SOAR, the SOC automatically consolidates duplicate events into single cases, minimizing the number of false positives forwarded to SOC employees for investigation.
“Thanks to the CyberRes (now OpenText Cybersecurity) solutions, we've strengthened the capabilities of our SOC, which helps us to meet our regulatory requirements,” adds Batar. “For example, we now use an integration between ArcSight SOAR and our service management solution to automatically push information on incidents to our IT infrastructure teams—helping us to demonstrate our compliance and enable timely remediation.”
By enabling automated orchestration workflows using ArcSight SOAR, Odeabank is dramatically shrinking manual work for its SOC team—empowering them to spend less time sifting through data and more time on value-added investigation and remediation activities.
“By consolidating duplicate events and eliminating false positives with ArcSight SOAR, we have cut down the number of daily alerts to our SOC team by 90%,” concludes Batar. “Rather than writing multiple playbooks for each type of potential security threat, we use a single set of branching logic in ArcSight SOAR to help us close 33% of cases without any human involvement: for example, by allowing or blocking an IP address. Our CyberRes (now OpenText Cybersecurity) solutions are vital to maintain a strong security posture, and we plan to continue to enhance our capabilities going forward.”
By consolidating duplicate events and eliminating false positives with ArcSight SOAR, we have cut down the number of daily alerts to our SOC team by 90%.

Founded in 2012 and headquartered in Istanbul, Turkey, Odeabank is one of the country's leading banks. Offering services across corporate, commercial, retail, investment and private banking, the organization has consolidated assets equivalent to over US$35 billion.