12
Copyright © 2016 Splunk Inc. Splunk your Cloud for a better Security Dominique Dessy, CISSP Senior Sales Engineer

Splunk for AWS (Bagels and Bytes)

Embed Size (px)

Citation preview

Page 1: Splunk for AWS (Bagels and Bytes)

Copyright©2016SplunkInc.

SplunkyourCloudforabetterSecurity

DominiqueDessy,CISSPSeniorSalesEngineer

Page 2: Splunk for AWS (Bagels and Bytes)
Page 3: Splunk for AWS (Bagels and Bytes)

3

Page 4: Splunk for AWS (Bagels and Bytes)

FINRAFINRA—theFinancialIndustryRegulatoryAuthority—isanindependent,non-governmentalregulatorforallsecuritiesfirmsdoingbusinesswiththepublicintheUnitedStates.FINRAprotectsinvestorsbyregulatingbrokersandbrokeragefirmsandbymonitoringtradingonU.S.stockmarkets.FINRAwatchesover6billionsharestradedonthestockmarketeachdayFINRAhandlesmore‘bigdata’onadailybasisthantheLibraryofCongressorVisa—tobuildaholisticpictureofthetradingmarketFINRA– Deter,Detect,Discipline

4

Page 5: Splunk for AWS (Bagels and Bytes)

FINRA(before)

5

FINRAonPremDataCenterLocationA

FINRAonPremDataCenterLocationB

LOTSOFHARDWARE

DRREQUIREDCONFIGCHANGES

TRADIONALSIEMsONLYKNOWMESSAGESTHATTHEYKNOWABOUT

SIEMsTHINKONLYSECURITYWILLNEEDLOGS

CANNEDALERTS;MOREMARKETINGTHANREALITY

LACKOFUSERCOMMUNITYKNOWLEDGEBASE

Page 6: Splunk for AWS (Bagels and Bytes)

FINRA(Cloud)

6

OnPrem A&B

FINRAVPCs

Page 7: Splunk for AWS (Bagels and Bytes)

7

TurningMachineDataIntoBusinessValueIndexUntappedData:AnySource,Type,Volume

OnlineServices Web

Services

ServersSecurity GPS

Location

StorageDesktops

Networks

PackagedApplications

CustomApplicationsMessaging

TelecomsOnlineShoppingCart

WebClickstreams

Databases

EnergyMeters

CallDetailRecords

SmartphonesandDevices

RFID

On-Premises

PrivateCloud

PublicCloud

AskAnyQuestion

ApplicationDelivery

Security,ComplianceandFraud

ITOperations

BusinessAnalytics

IndustrialDataandtheInternetofThings

Security,ComplianceandFraud

Page 8: Splunk for AWS (Bagels and Bytes)

8

SplunkAppforAWSEC2

EMR

Kinesis

R53

VPC

ELB

S3

CloudFront

CloudTrail

CloudWatch

RedshiftSNS

API Gateway

Config

RDS

CF

IAM

Lambda

Explore Analyze Dashboard Alert Act

AWSDataSources

ComprehensiveAWSVisibility

Page 9: Splunk for AWS (Bagels and Bytes)

9

CompleteHybridVisibilityIndexUntappedData:AnySource,Type,Volume

OnlineServices Web

Services

ServersSecurity GPS

Location

StorageDesktops

Networks

Messaging

TelecomsOnlineShoppingCart

WebClickstreams

Databases

EnergyMeters

RFID

On-Premises

PrivateCloud

PublicCloud

End-to-EndVisibility

ApplicationDelivery

Security,Compliance,andFraud

ITOperations

BusinessAnalytics

IndustrialDataandtheInternetofThings

CloudTrail

Config

Lambda

EC2

Page 10: Splunk for AWS (Bagels and Bytes)

Let’ssee…

10

Page 11: Splunk for AWS (Bagels and Bytes)

ComprehensiveSecurityVisibilityLeveragingAWSCloudTrail

CorrelatingDataAcrossHybridEnvironmentSpanningAWSandOn-Premises

Real-timeAWSCostManagementReducingSpendonSelectAWSWorkloadsbyOver50%

FINRAUsesSplunkCloudforTransparencyandEnd-To-EndVisibilityinAWS

Page 12: Splunk for AWS (Bagels and Bytes)

Thankyou