SlideShare ist ein Scribd-Unternehmen logo
1 von 16
Copyright © 2015 Splunk Inc.
Splunk Cloud at Equinix
Brian Lillie, CIO
2
Brian Lillie
Chief Information Officer,
Equinix
@coachlillie
3
About Equinix
As the world's largest data center
company, we provide global leaders
the power of interconnection: the
ability to connect to many customers
and partners in many regions—
accelerating business performance
and creating new opportunities.
4
About Coach Lillie
My role at Equinix
My team’s mission
My favorite Splunk tee-shirt tag line
One fun fact about me
5
Equinix Global InfoSec Program Drivers
6
Equinix Vision for SIEM
SIEM is key to any security
platform today
We were very early in adopting a
“SIEM in the Cloud” vision and
strategy
With a traditional on premise
SIEM, we didn’t think we would
have value right out of the box
Been searching for awhile…
“…we pushed the
vision of SIEM in
the Cloud for
years…”
7
Why did we want a Cloud SIEM Solution?
Flexibility
Subscription Model
Eliminates the need
to feel ‘married’ to a
system – easier to
unsubscribe if it
doesn’t fit
Price
Less Expensive
At least 50% lower
TCO compared to
deploying an on-
premises SIEM
Ease/Speed
Minimal PS
Easy data ingestion
and easy
deployment that
doesn’t require an
army to set-up
(when most data is generated on-premises)
8
What Cloud SIEM Was Right for Equinix?
Splunk Cloud with ES gave us a starting point
Met a variety of our use cases: ability to handle multiple types
of data (and speeds and feeds), apps marketplace, correlation
rules engine, and enterprise-level security view
We gained VALUE immediately out of the box; now a platform
to build upon
+
9
Why we selected Splunk Cloud
Databases
Networks
Servers
Web
Services
Smartphones
and Devices
Custom
Applications
Security
Universal SearchApp Ecosystem Single Pane of
Glass
Certified Guaranteed
100%
Uptime
SLA
And More…
10
“…Our goal is to protect customers, employees &
data.”
How We Use Splunk Cloud
Malware Protection
User Account Protection
Data Leakage Protection
11
Splunk Cloud Deployment @Equinix
Aggregation Correlation
Collection
Validation
12
Promising Results
Before
Individual Silos
Time-Consuming Reporting
Manual Troubleshooting
Monitoring
20 Billion
Raw Events
After
20 Billion
Raw Events
Reduced
toThrough
12,000 Events
Reduced
to
20 Actionable Alerts
13
My CIO Dashboard
14
What’s Next for Equinix
Global Security Team standardizing on Splunk Cloud
Use insights to build out a Security Operations Center
Expand use of Splunk Cloud to the Global Server and
Network teams
Use Splunk to help integrate acquisitions
15
Top Takeaways
SIEM in the cloud is the way to go
SIEM with an Enterprise-level “Helicopter view” for the CIO is a
must
Splunk Cloud is a GREAT choice to meet these needs:
– Splunk Cloud is a service and requires much less staff to operate (less cost)
– Splunk Cloud is less complex to implement and operate
– Splunk Cloud with ES is a true security SIEM – SOC 2 Type II certified, 100
percent uptime SLA
– Splunk Cloud reduced the time to resolve/respond to security incidents –
out of the box
Q
1
&
A

Weitere ähnliche Inhalte

Was ist angesagt?

Equinix Performance Hub gives Enterprise Networks a Giant Boost
Equinix Performance Hub gives Enterprise Networks a Giant BoostEquinix Performance Hub gives Enterprise Networks a Giant Boost
Equinix Performance Hub gives Enterprise Networks a Giant BoostEquinix
 
EVOLUTION Chicago
EVOLUTION Chicago EVOLUTION Chicago
EVOLUTION Chicago Equinix
 
Unleash the Power of Equinix: Digital Transformation through Interconnection
Unleash the Power of Equinix: Digital Transformation through InterconnectionUnleash the Power of Equinix: Digital Transformation through Interconnection
Unleash the Power of Equinix: Digital Transformation through InterconnectionEquinix
 
Equinix and Customers to Present on "Mobility" at PTC '13.
Equinix and Customers to Present on "Mobility" at PTC '13.Equinix and Customers to Present on "Mobility" at PTC '13.
Equinix and Customers to Present on "Mobility" at PTC '13.Equinix
 
CIO Event - Equinix - Architecting an Enterprise from the Future
CIO Event - Equinix - Architecting an Enterprise from the FutureCIO Event - Equinix - Architecting an Enterprise from the Future
CIO Event - Equinix - Architecting an Enterprise from the FutureGlobal Business Intel
 
EVOLUTION Denver
EVOLUTION Denver EVOLUTION Denver
EVOLUTION Denver Equinix
 
2019 microsoft sales enablement why equinix
2019 microsoft sales enablement   why equinix2019 microsoft sales enablement   why equinix
2019 microsoft sales enablement why equinixchris edwards
 
EVOLUTION San Francisco
EVOLUTION San Francisco EVOLUTION San Francisco
EVOLUTION San Francisco Equinix
 
Equinix Performance Hub & Cloud Exchange
Equinix Performance Hub & Cloud Exchange Equinix Performance Hub & Cloud Exchange
Equinix Performance Hub & Cloud Exchange EquinixUK
 
Winning with Hybrid IT IBC 2015
Winning with Hybrid IT IBC 2015Winning with Hybrid IT IBC 2015
Winning with Hybrid IT IBC 2015Equinix
 
Equinix microsoft 2019 use case playbook
Equinix microsoft 2019 use case playbookEquinix microsoft 2019 use case playbook
Equinix microsoft 2019 use case playbookchris edwards
 
EVOLUTION Seattle
EVOLUTION Seattle EVOLUTION Seattle
EVOLUTION Seattle Equinix
 
IBC 2015 Technology In Action Presentation
IBC 2015 Technology In Action PresentationIBC 2015 Technology In Action Presentation
IBC 2015 Technology In Action PresentationEquinix
 
Solving the Digital Edge
Solving the Digital EdgeSolving the Digital Edge
Solving the Digital EdgeEquinix
 
The IDC and Equinix Webinar - 2018 - The Year of the Intelligence Ready Digit...
The IDC and Equinix Webinar - 2018 - The Year of the Intelligence Ready Digit...The IDC and Equinix Webinar - 2018 - The Year of the Intelligence Ready Digit...
The IDC and Equinix Webinar - 2018 - The Year of the Intelligence Ready Digit...Equinix
 
Cloud Managed Services
Cloud Managed ServicesCloud Managed Services
Cloud Managed Servicestechprofuse11
 
Equinix - supporting Cloud opportunities in Europe
Equinix - supporting Cloud opportunities in EuropeEquinix - supporting Cloud opportunities in Europe
Equinix - supporting Cloud opportunities in EuropeRobert Blackburn
 
Optimizing Oracle Cloud Infrastructure through Interconnection
Optimizing Oracle Cloud Infrastructure through Interconnection Optimizing Oracle Cloud Infrastructure through Interconnection
Optimizing Oracle Cloud Infrastructure through Interconnection Equinix
 
Equinix Corporate Presentation 2015
Equinix Corporate Presentation 2015Equinix Corporate Presentation 2015
Equinix Corporate Presentation 2015Josh Collis
 
An Insider's View on What It Takes to Be Digital Ready
An Insider's View on What It Takes to Be Digital ReadyAn Insider's View on What It Takes to Be Digital Ready
An Insider's View on What It Takes to Be Digital ReadyEquinix
 

Was ist angesagt? (20)

Equinix Performance Hub gives Enterprise Networks a Giant Boost
Equinix Performance Hub gives Enterprise Networks a Giant BoostEquinix Performance Hub gives Enterprise Networks a Giant Boost
Equinix Performance Hub gives Enterprise Networks a Giant Boost
 
EVOLUTION Chicago
EVOLUTION Chicago EVOLUTION Chicago
EVOLUTION Chicago
 
Unleash the Power of Equinix: Digital Transformation through Interconnection
Unleash the Power of Equinix: Digital Transformation through InterconnectionUnleash the Power of Equinix: Digital Transformation through Interconnection
Unleash the Power of Equinix: Digital Transformation through Interconnection
 
Equinix and Customers to Present on "Mobility" at PTC '13.
Equinix and Customers to Present on "Mobility" at PTC '13.Equinix and Customers to Present on "Mobility" at PTC '13.
Equinix and Customers to Present on "Mobility" at PTC '13.
 
CIO Event - Equinix - Architecting an Enterprise from the Future
CIO Event - Equinix - Architecting an Enterprise from the FutureCIO Event - Equinix - Architecting an Enterprise from the Future
CIO Event - Equinix - Architecting an Enterprise from the Future
 
EVOLUTION Denver
EVOLUTION Denver EVOLUTION Denver
EVOLUTION Denver
 
2019 microsoft sales enablement why equinix
2019 microsoft sales enablement   why equinix2019 microsoft sales enablement   why equinix
2019 microsoft sales enablement why equinix
 
EVOLUTION San Francisco
EVOLUTION San Francisco EVOLUTION San Francisco
EVOLUTION San Francisco
 
Equinix Performance Hub & Cloud Exchange
Equinix Performance Hub & Cloud Exchange Equinix Performance Hub & Cloud Exchange
Equinix Performance Hub & Cloud Exchange
 
Winning with Hybrid IT IBC 2015
Winning with Hybrid IT IBC 2015Winning with Hybrid IT IBC 2015
Winning with Hybrid IT IBC 2015
 
Equinix microsoft 2019 use case playbook
Equinix microsoft 2019 use case playbookEquinix microsoft 2019 use case playbook
Equinix microsoft 2019 use case playbook
 
EVOLUTION Seattle
EVOLUTION Seattle EVOLUTION Seattle
EVOLUTION Seattle
 
IBC 2015 Technology In Action Presentation
IBC 2015 Technology In Action PresentationIBC 2015 Technology In Action Presentation
IBC 2015 Technology In Action Presentation
 
Solving the Digital Edge
Solving the Digital EdgeSolving the Digital Edge
Solving the Digital Edge
 
The IDC and Equinix Webinar - 2018 - The Year of the Intelligence Ready Digit...
The IDC and Equinix Webinar - 2018 - The Year of the Intelligence Ready Digit...The IDC and Equinix Webinar - 2018 - The Year of the Intelligence Ready Digit...
The IDC and Equinix Webinar - 2018 - The Year of the Intelligence Ready Digit...
 
Cloud Managed Services
Cloud Managed ServicesCloud Managed Services
Cloud Managed Services
 
Equinix - supporting Cloud opportunities in Europe
Equinix - supporting Cloud opportunities in EuropeEquinix - supporting Cloud opportunities in Europe
Equinix - supporting Cloud opportunities in Europe
 
Optimizing Oracle Cloud Infrastructure through Interconnection
Optimizing Oracle Cloud Infrastructure through Interconnection Optimizing Oracle Cloud Infrastructure through Interconnection
Optimizing Oracle Cloud Infrastructure through Interconnection
 
Equinix Corporate Presentation 2015
Equinix Corporate Presentation 2015Equinix Corporate Presentation 2015
Equinix Corporate Presentation 2015
 
An Insider's View on What It Takes to Be Digital Ready
An Insider's View on What It Takes to Be Digital ReadyAn Insider's View on What It Takes to Be Digital Ready
An Insider's View on What It Takes to Be Digital Ready
 

Andere mochten auch

Exploring Interconnection Oriented Architectures with AWS
Exploring Interconnection Oriented Architectures with AWSExploring Interconnection Oriented Architectures with AWS
Exploring Interconnection Oriented Architectures with AWSAmazon Web Services
 
Sephora Customer Presentation
Sephora Customer PresentationSephora Customer Presentation
Sephora Customer PresentationSplunk
 
Equinix Big Data Platform and Cassandra - A view into the journey
Equinix Big Data Platform and Cassandra - A view into the journeyEquinix Big Data Platform and Cassandra - A view into the journey
Equinix Big Data Platform and Cassandra - A view into the journeyPraveen Kumar
 
Sephora: A Brand Case Study
Sephora: A Brand Case StudySephora: A Brand Case Study
Sephora: A Brand Case StudyNikki Kerber
 
RightScale Webinar: Best-in-Class Hybrid Cloud Solutions from Equinix and Rig...
RightScale Webinar: Best-in-Class Hybrid Cloud Solutions from Equinix and Rig...RightScale Webinar: Best-in-Class Hybrid Cloud Solutions from Equinix and Rig...
RightScale Webinar: Best-in-Class Hybrid Cloud Solutions from Equinix and Rig...RightScale
 
Peering 101
Peering 101Peering 101
Peering 101APNIC
 
Digital Realty Investor Day Presentation
Digital Realty Investor Day PresentationDigital Realty Investor Day Presentation
Digital Realty Investor Day Presentationir_digitalrealty
 
Datwyler dcs it_safe_the modular compact data centre_ Info Tech Middle East
Datwyler dcs it_safe_the modular compact data centre_ Info Tech Middle EastDatwyler dcs it_safe_the modular compact data centre_ Info Tech Middle East
Datwyler dcs it_safe_the modular compact data centre_ Info Tech Middle EastAli Shoaee
 

Andere mochten auch (9)

Exploring Interconnection Oriented Architectures with AWS
Exploring Interconnection Oriented Architectures with AWSExploring Interconnection Oriented Architectures with AWS
Exploring Interconnection Oriented Architectures with AWS
 
Sephora Customer Presentation
Sephora Customer PresentationSephora Customer Presentation
Sephora Customer Presentation
 
Equinix Big Data Platform and Cassandra - A view into the journey
Equinix Big Data Platform and Cassandra - A view into the journeyEquinix Big Data Platform and Cassandra - A view into the journey
Equinix Big Data Platform and Cassandra - A view into the journey
 
Sephora: A Brand Case Study
Sephora: A Brand Case StudySephora: A Brand Case Study
Sephora: A Brand Case Study
 
RightScale Webinar: Best-in-Class Hybrid Cloud Solutions from Equinix and Rig...
RightScale Webinar: Best-in-Class Hybrid Cloud Solutions from Equinix and Rig...RightScale Webinar: Best-in-Class Hybrid Cloud Solutions from Equinix and Rig...
RightScale Webinar: Best-in-Class Hybrid Cloud Solutions from Equinix and Rig...
 
Peering 101
Peering 101Peering 101
Peering 101
 
Digital Realty Investor Day Presentation
Digital Realty Investor Day PresentationDigital Realty Investor Day Presentation
Digital Realty Investor Day Presentation
 
Becoming an interconnected enterprise
Becoming an interconnected enterpriseBecoming an interconnected enterprise
Becoming an interconnected enterprise
 
Datwyler dcs it_safe_the modular compact data centre_ Info Tech Middle East
Datwyler dcs it_safe_the modular compact data centre_ Info Tech Middle EastDatwyler dcs it_safe_the modular compact data centre_ Info Tech Middle East
Datwyler dcs it_safe_the modular compact data centre_ Info Tech Middle East
 

Ähnlich wie Equinix Customer Presentation

SplunkLive! Customer Presentation--ServiceNow
SplunkLive! Customer Presentation--ServiceNowSplunkLive! Customer Presentation--ServiceNow
SplunkLive! Customer Presentation--ServiceNowSplunk
 
Splunk for Enterprise Security featuring UBA Breakout Session
Splunk for Enterprise Security featuring UBA Breakout SessionSplunk for Enterprise Security featuring UBA Breakout Session
Splunk for Enterprise Security featuring UBA Breakout SessionSplunk
 
Demystifying Cloud Security: Lessons Learned for the Public Sector
Demystifying Cloud Security: Lessons Learned for the Public SectorDemystifying Cloud Security: Lessons Learned for the Public Sector
Demystifying Cloud Security: Lessons Learned for the Public SectorAmazon Web Services
 
The End of Security as We Know It - Shannon Lietz
The End of Security as We Know It - Shannon LietzThe End of Security as We Know It - Shannon Lietz
The End of Security as We Know It - Shannon LietzSeniorStoryteller
 
Seeing More Clearly: How Essilor Overcame 3 Common Cloud Security Challenges ...
Seeing More Clearly: How Essilor Overcame 3 Common Cloud Security Challenges ...Seeing More Clearly: How Essilor Overcame 3 Common Cloud Security Challenges ...
Seeing More Clearly: How Essilor Overcame 3 Common Cloud Security Challenges ...Amazon Web Services
 
Private Cloud Computing - Get the best for your business | Sysfore
Private Cloud Computing - Get the best for your business | SysforePrivate Cloud Computing - Get the best for your business | Sysfore
Private Cloud Computing - Get the best for your business | SysforeSysfore Technologies
 
Cloud Seminar Feb 4 2010
Cloud Seminar Feb 4 2010Cloud Seminar Feb 4 2010
Cloud Seminar Feb 4 2010Vince Santo
 
To cloud or not to cloud
To cloud or not to cloudTo cloud or not to cloud
To cloud or not to cloudTalentLMS
 
Splunk for Enterprise Security Featuring UBA
Splunk for Enterprise Security Featuring UBASplunk for Enterprise Security Featuring UBA
Splunk for Enterprise Security Featuring UBASplunk
 
Cloud Innovation Tour - Discover Track
Cloud Innovation Tour - Discover TrackCloud Innovation Tour - Discover Track
Cloud Innovation Tour - Discover TrackLaurenWendler
 
Practical Cloud - Stephen Betts (Avanade)
Practical Cloud - Stephen Betts (Avanade)Practical Cloud - Stephen Betts (Avanade)
Practical Cloud - Stephen Betts (Avanade)Spiffy
 
Tirez pleinement parti d'Elastic grâce à Elastic Cloud
Tirez pleinement parti d'Elastic grâce à Elastic CloudTirez pleinement parti d'Elastic grâce à Elastic Cloud
Tirez pleinement parti d'Elastic grâce à Elastic CloudElasticsearch
 
CipherCloud_Corporate Overview
CipherCloud_Corporate OverviewCipherCloud_Corporate Overview
CipherCloud_Corporate OverviewScott Dierks
 
Shared responsibility - a model for good cloud security
Shared responsibility - a model for good cloud securityShared responsibility - a model for good cloud security
Shared responsibility - a model for good cloud securityJisc
 
Getting Started with Qlik Sense® Cloud: Understanding the Basics
Getting Started with Qlik Sense® Cloud: Understanding the BasicsGetting Started with Qlik Sense® Cloud: Understanding the Basics
Getting Started with Qlik Sense® Cloud: Understanding the BasicsQlik
 
Keys to success and security in the cloud
Keys to success and security in the cloudKeys to success and security in the cloud
Keys to success and security in the cloudScalar Decisions
 
Keys-to-Success-and-Security-in-the-Cloud
Keys-to-Success-and-Security-in-the-CloudKeys-to-Success-and-Security-in-the-Cloud
Keys-to-Success-and-Security-in-the-Cloudpatmisasi
 
J Tobolski Cloud Computing
J Tobolski Cloud ComputingJ Tobolski Cloud Computing
J Tobolski Cloud ComputingArt Upton
 

Ähnlich wie Equinix Customer Presentation (20)

SplunkLive! Customer Presentation--ServiceNow
SplunkLive! Customer Presentation--ServiceNowSplunkLive! Customer Presentation--ServiceNow
SplunkLive! Customer Presentation--ServiceNow
 
Splunk for Enterprise Security featuring UBA Breakout Session
Splunk for Enterprise Security featuring UBA Breakout SessionSplunk for Enterprise Security featuring UBA Breakout Session
Splunk for Enterprise Security featuring UBA Breakout Session
 
Demystifying Cloud Security: Lessons Learned for the Public Sector
Demystifying Cloud Security: Lessons Learned for the Public SectorDemystifying Cloud Security: Lessons Learned for the Public Sector
Demystifying Cloud Security: Lessons Learned for the Public Sector
 
The End of Security as We Know It - Shannon Lietz
The End of Security as We Know It - Shannon LietzThe End of Security as We Know It - Shannon Lietz
The End of Security as We Know It - Shannon Lietz
 
Seeing More Clearly: How Essilor Overcame 3 Common Cloud Security Challenges ...
Seeing More Clearly: How Essilor Overcame 3 Common Cloud Security Challenges ...Seeing More Clearly: How Essilor Overcame 3 Common Cloud Security Challenges ...
Seeing More Clearly: How Essilor Overcame 3 Common Cloud Security Challenges ...
 
Private Cloud Computing - Get the best for your business | Sysfore
Private Cloud Computing - Get the best for your business | SysforePrivate Cloud Computing - Get the best for your business | Sysfore
Private Cloud Computing - Get the best for your business | Sysfore
 
Cloud Seminar Feb 4 2010
Cloud Seminar Feb 4 2010Cloud Seminar Feb 4 2010
Cloud Seminar Feb 4 2010
 
To cloud or not to cloud
To cloud or not to cloudTo cloud or not to cloud
To cloud or not to cloud
 
Splunk for Enterprise Security Featuring UBA
Splunk for Enterprise Security Featuring UBASplunk for Enterprise Security Featuring UBA
Splunk for Enterprise Security Featuring UBA
 
Cloud Innovation Tour - Discover Track
Cloud Innovation Tour - Discover TrackCloud Innovation Tour - Discover Track
Cloud Innovation Tour - Discover Track
 
Practical Cloud - Stephen Betts (Avanade)
Practical Cloud - Stephen Betts (Avanade)Practical Cloud - Stephen Betts (Avanade)
Practical Cloud - Stephen Betts (Avanade)
 
bishu pdf1
bishu pdf1bishu pdf1
bishu pdf1
 
Tirez pleinement parti d'Elastic grâce à Elastic Cloud
Tirez pleinement parti d'Elastic grâce à Elastic CloudTirez pleinement parti d'Elastic grâce à Elastic Cloud
Tirez pleinement parti d'Elastic grâce à Elastic Cloud
 
CipherCloud_Corporate Overview
CipherCloud_Corporate OverviewCipherCloud_Corporate Overview
CipherCloud_Corporate Overview
 
Shared responsibility - a model for good cloud security
Shared responsibility - a model for good cloud securityShared responsibility - a model for good cloud security
Shared responsibility - a model for good cloud security
 
Features of cloud
Features of cloudFeatures of cloud
Features of cloud
 
Getting Started with Qlik Sense® Cloud: Understanding the Basics
Getting Started with Qlik Sense® Cloud: Understanding the BasicsGetting Started with Qlik Sense® Cloud: Understanding the Basics
Getting Started with Qlik Sense® Cloud: Understanding the Basics
 
Keys to success and security in the cloud
Keys to success and security in the cloudKeys to success and security in the cloud
Keys to success and security in the cloud
 
Keys-to-Success-and-Security-in-the-Cloud
Keys-to-Success-and-Security-in-the-CloudKeys-to-Success-and-Security-in-the-Cloud
Keys-to-Success-and-Security-in-the-Cloud
 
J Tobolski Cloud Computing
J Tobolski Cloud ComputingJ Tobolski Cloud Computing
J Tobolski Cloud Computing
 

Mehr von Splunk

.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routineSplunk
 
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTVSplunk
 
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica).conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica)Splunk
 
.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank InternationalSplunk
 
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett .conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett Splunk
 
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär).conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)Splunk
 
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu....conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...Splunk
 
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever....conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...Splunk
 
.conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex).conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex)Splunk
 
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)Splunk
 
Splunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11ySplunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11ySplunk
 
Splunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go KölnSplunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go KölnSplunk
 
Splunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go KölnSplunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go KölnSplunk
 
Data foundations building success, at city scale – Imperial College London
 Data foundations building success, at city scale – Imperial College London Data foundations building success, at city scale – Imperial College London
Data foundations building success, at city scale – Imperial College LondonSplunk
 
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...Splunk
 
SOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security WebinarSOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security WebinarSplunk
 
.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session.conf Go 2022 - Observability Session
.conf Go 2022 - Observability SessionSplunk
 
.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - KeynoteSplunk
 
.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform SessionSplunk
 
.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security SessionSplunk
 

Mehr von Splunk (20)

.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine
 
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
 
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica).conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
 
.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International
 
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett .conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
 
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär).conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
 
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu....conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
 
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever....conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
 
.conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex).conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex)
 
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
 
Splunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11ySplunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11y
 
Splunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go KölnSplunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go Köln
 
Splunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go KölnSplunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go Köln
 
Data foundations building success, at city scale – Imperial College London
 Data foundations building success, at city scale – Imperial College London Data foundations building success, at city scale – Imperial College London
Data foundations building success, at city scale – Imperial College London
 
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
 
SOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security WebinarSOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security Webinar
 
.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session
 
.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote
 
.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session
 
.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session
 

Kürzlich hochgeladen

MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MIND CTI
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdfSandro Moreira
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsNanddeep Nachan
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century educationjfdjdjcjdnsjd
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWERMadyBayot
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfOrbitshub
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodJuan lago vázquez
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyKhushali Kathiriya
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native ApplicationsWSO2
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...apidays
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024The Digital Insurer
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesrafiqahmad00786416
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...apidays
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusZilliz
 
Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024The Digital Insurer
 

Kürzlich hochgeladen (20)

MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with Milvus
 
Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024
 

Equinix Customer Presentation

  • 1. Copyright © 2015 Splunk Inc. Splunk Cloud at Equinix Brian Lillie, CIO
  • 2. 2 Brian Lillie Chief Information Officer, Equinix @coachlillie
  • 3. 3 About Equinix As the world's largest data center company, we provide global leaders the power of interconnection: the ability to connect to many customers and partners in many regions— accelerating business performance and creating new opportunities.
  • 4. 4 About Coach Lillie My role at Equinix My team’s mission My favorite Splunk tee-shirt tag line One fun fact about me
  • 5. 5 Equinix Global InfoSec Program Drivers
  • 6. 6 Equinix Vision for SIEM SIEM is key to any security platform today We were very early in adopting a “SIEM in the Cloud” vision and strategy With a traditional on premise SIEM, we didn’t think we would have value right out of the box Been searching for awhile… “…we pushed the vision of SIEM in the Cloud for years…”
  • 7. 7 Why did we want a Cloud SIEM Solution? Flexibility Subscription Model Eliminates the need to feel ‘married’ to a system – easier to unsubscribe if it doesn’t fit Price Less Expensive At least 50% lower TCO compared to deploying an on- premises SIEM Ease/Speed Minimal PS Easy data ingestion and easy deployment that doesn’t require an army to set-up (when most data is generated on-premises)
  • 8. 8 What Cloud SIEM Was Right for Equinix? Splunk Cloud with ES gave us a starting point Met a variety of our use cases: ability to handle multiple types of data (and speeds and feeds), apps marketplace, correlation rules engine, and enterprise-level security view We gained VALUE immediately out of the box; now a platform to build upon +
  • 9. 9 Why we selected Splunk Cloud Databases Networks Servers Web Services Smartphones and Devices Custom Applications Security Universal SearchApp Ecosystem Single Pane of Glass Certified Guaranteed 100% Uptime SLA And More…
  • 10. 10 “…Our goal is to protect customers, employees & data.” How We Use Splunk Cloud Malware Protection User Account Protection Data Leakage Protection
  • 11. 11 Splunk Cloud Deployment @Equinix Aggregation Correlation Collection Validation
  • 12. 12 Promising Results Before Individual Silos Time-Consuming Reporting Manual Troubleshooting Monitoring 20 Billion Raw Events After 20 Billion Raw Events Reduced toThrough 12,000 Events Reduced to 20 Actionable Alerts
  • 14. 14 What’s Next for Equinix Global Security Team standardizing on Splunk Cloud Use insights to build out a Security Operations Center Expand use of Splunk Cloud to the Global Server and Network teams Use Splunk to help integrate acquisitions
  • 15. 15 Top Takeaways SIEM in the cloud is the way to go SIEM with an Enterprise-level “Helicopter view” for the CIO is a must Splunk Cloud is a GREAT choice to meet these needs: – Splunk Cloud is a service and requires much less staff to operate (less cost) – Splunk Cloud is less complex to implement and operate – Splunk Cloud with ES is a true security SIEM – SOC 2 Type II certified, 100 percent uptime SLA – Splunk Cloud reduced the time to resolve/respond to security incidents – out of the box

Hinweis der Redaktion

  1. George wanted SIEM in the Cloud solution. (ES) SIEM is major achievements of any security system Going into ES, we realized that any SIEM solution – there’s going to be a lot of work. We knew going in that there would be a considerable effort building it out. We knew it wasn’t going to be SIEM out of the box.
  2. WHY DID YOU CHOOSE a CLOUD BASED? Cost was number one. Capex vs. Opex. Wanted something that we could turn up quickly and manage easily. Minimize costs for storage, systems monitoring, managing data bases Cloud vs. on-prem value prop Didn’t want anything I had to deploy manually Subscribe, use it, marry myself and then unmarry myself. Subscription is a lot easier
  3. VALUE out of the Box? Every organization has different use cases…but every solution would help us frame our use cases. (uptime, sensitivity of data, systems vulnerability) Needed a starting point. That’s what ES gave us out of the box From there, we produced a final list that allowed us to operate a system based on our use cases.
  4. COMPARED to other CLOUD SOLUTIONS As a SIEM in the cloud, what drew me into ES. We have APPs marketplace. Most of the other customers don’t have the APPs or lenses into the data. Most are free. Other vendors, don’t have those. If we had engaged with other vendors, we would have to build those out. Apps are great, but they help you frame the data. Now we can compare it and add in our own use cases. As you get through the process of getting operational, were there other areas of differentiation? Ability to search…across all data sets. Ability to do this across all data sets is really powerful. Searching is 101.
  5. USE CASES TODAY Malware protection – across all platforms (laptops, mobile, …) Protecting user accounts – if a user logs in SF and Hong Kong simultaneously – detecting account compromise Data leakage protection (SFDC app) – preventing malicious employee behavior High priority: Care about data. Care about business being able to function. Target the things that typically have negative impact. Malware. We have a security infrastructure that shows us malware on desk tops and servers ES alerts us to systems with malware – phoning home or ES allows us to protect users. If a user is logging on in silicon valley and log in 10 seconds later in hong kong…compromised system? How do we monitor the security of our users
  6. Had significant global structure – Firewall, VPN, active directory, but no SIEM… Operating with a security infrastructure…splunk allowed us to aggregate this. One dashboard. Splunk ES. Allows my guys to not have to go out to each different security system to monitor Before, we didn’t have a way to correlate between the security systems. Big value add is correlation. Aggregation and correlation. Get everything into a single place and then correlate… Data feeds/sets – Qualys security, Cisco firewalls, load balancers, salesforce.com, tripwire, open VPN, Unyx and Windows (Splunk App), Juniper Firewalls, Palo Alto Salesforce – data leakage protection – very sensitive and critical to the business. Manage malicious employees who may be forklifting data. Certain algorythms and data that looks suspicious Salesforce App – gives you good data but doesn’t really provide enough intelligence to determine Separate from security use cases, Salesforce app is pretty slick. How we accomplish this (New Slide) Log aggregation Log correlation Data sources: (Qualys, Palo Alto Networks, Cisco, F5, Salesforce.com, Tripwire, Open VPN, Unix, Windows, Application logs, Juniper)
  7. We had almost 20 billion raw events to monitor. Within Splunk Cloud we built 50 correlation rules. Now we look at critical and high only priority events only. This reduced the 20 billion to 12,000. That’s the story.”
  8. Talk about your personal CIO Dashboard and the operational intelligence it provides you.
  9. ARE OTHER TEAMS USING SPLUNK at Equinix? Security – Now – How many folks. 6 people. Infrastructure for monitoring app performance DevOps…looking to Splunk to bake prcesses into development. Triggered alerts. Service down, KPIs,   LOOKING AT HURRICANE LABS TO HELP OPERATE BETTER IN THIS ENVIRONMENT.   Help manage Splunk. Write correlation events as we define them in terms of use cases. Use a service skilled in that work rather than doing it themselves. Security ops center  
  10. NOTIONAL DEPLOYMENT COST savings?   Vs. arcsight, maybe saved half. Splunk Cloud is half of what the cost of something like arcsight. Value: One of the biggest factors is how the environment is managed. With arcsight, you have to hire an army of professional services to get it set up, manage data bases, and then tune it. On going work. Cannot tune it and leave it. Data sources into Splunk…then turning correlation and mapping to use cases. We are a little easier because we can work to define the use cases and then do the code. More complexity on the arcsight side – less on the Splunk ES COMPLIANCE/CERTIFICATIONS IMPORTANT   Really use this for security use cases   SPLUNK CLOUD – SOC 2 Type II certified Very important Very sensitive Certifications that attest to the protection of the data   100 PERCENT UPTIME Didn’t track that with others? SLA still going Never seen anywhere else offer that