Indra has reported that it has "guaranteed the security and continuity of its services" after one of its subsidiaries suffered a ransomware cyberattack this Wednesday.
According to the company, at the moment the ransomware was detected, its Computer Security Incident Response Team (Csirt) "immediately" activated the internal protocols for analysis, verification, and security review in the environments that could have been compromised.
The company has emphasized that, "as a result of the actions taken, the spread of the risk to the rest of the group's companies has been ruled out," also remarking that it has been confirmed that operations and service provision have been maintained "at all times normally."
"Minimal and limited incident"
After confirming that the incident had been "minimal and limited to a non-critical environment," the CSIRT implemented the appropriate containment, eradication, and recovery measures. In parallel, the team reinforced security controls to ensure the protection of systems and service continuity.
The Spanish technology and defense firm has added that it is continuing with an "exhaustive" investigation to clarify the origin of the cyberattack, while continuing to "review and strengthen its cybersecurity controls and procedures with the aim of strengthening information security and service continuity for its clients."