Signal Sciences, the most trusted brand in web defense with patented next-gen WAF and RASP technology, today announced that Remitly is using Signal Sciences to protect sensitive customer transactions through its mobile application while ensuring compliance with PCI requirements.
As the largest independent digital remittance company headquartered in the United States, Remitly transfers over $5 billion in annualized volume from its customers in the United States, United Kingdom, Canada, and Australia to loved ones throughout the world.
Remitly needed a solution to protect its proprietary global transfer network with a web application firewall (WAF) solution that would also provide protection against new and emerging attack types with no impact to performance. Remitly also needed a way to protect both its public facing endpoints and applications for its customers as well as private, internal endpoints and couldn’t be limited by architectural designs that required chokepoints in networks.
Signal Sciences was the best solution because it allowed Remitly to get running in production and easily tie into their proxy layers to cover both externally facing applications and internal web applications for employees.
Other solutions Remitly evaluated required hiring extra headcount and man-hours to manage. Instead Signal Sciences provided immediate value out of the box with its default detections with no tuning. To add coverage for advanced threats, Remitly used Power Rules to quickly and easily add in instrumentation and defense for unique application and API use cases.
Remitly’s customers are located around the globe, on land and at sea. Signal Sciences enables Remitly to determine if irregular traffic patterns are due to an attack or the result of truly valid traffic—and understand this all in real time. This is especially important because allowing the traffic could mean the risk that the transactions are malicious, requiring Remitly to reimburse the cost of fraudulent transfers.
Unlike traditional WAF solutions, which would have no way of distinguishing this traffic, leaving customers frustrated if they chose to blacklist the IP, Signal Sciences provides visibility and insight about the traffic, enabling Remitly to quickly determine the traffic was legitimate.
“Other products would block this traffic—throwing out the good with the bad—or let everything through and therefore subject us to potentially damaging attack traffic. We’ve noticed that because of the way Signal Sciences responds in a thresholding way, we have far fewer instances of throwing out the good with the bad than we used to,” said Kevin Hanaford, Senior Manager, Security & IT.
“Protecting customer information to ensure its safety and security is our number one priority,” added Hanaford.
“Signal Sciences checked a bunch of boxes for us to achieve this, but we were impressed particularly with their ability to enforce flexible requirements for our business as opposed to old school regex-based enforcement.”
- Case Study: Defending Remitly with Signal Sciences
- Announcement: Castlight Health Implements Signal Sciences
- Announcement: Signal Sciences Announces Network Learning Exchange and Power Rules for Unrivaled Web Application Threat Detection and Prevention
- Blog: Security’s Shift Right
- Blog: Three Ways Legacy WAFs Fail
- Blog: Demand More From Your Web Application Firewall
Follow Signal Sciences
Remitly’s vision is to transform the lives of immigrants and their families by providing the most trusted financial service products on the planet. Focus has always been a key part of our strategy and our initial laser focus is on transforming the global remittance industry. Over time, we will leverage our trusted financial services brand and our global network to extend into other financial services. For more information, please visit remitly.com.
About Signal Sciences
Signal Sciences protects the web presence of the world’s leading brands. With its patented approach to WAF and RASP, Signal Sciences helps companies defend their journey to the cloud and DevOps with a practical and proven approach, built by one of the first teams to experience the shift. Based in Culver City, California, Signal Sciences customers include Under Armour, Etsy, Adobe, Datadog, WeWork and more. For more information, please visit signalsciences.com.
Media Contact for Signal Sciences
© 2018 Signal Sciences Corp. All rights reserved