Author Archive

Splunk Expands Adaptive Response Initiative to Strengthen Enterprise Security

Splunk Inc. (NASDAQ: SPLK), provider of the leading software platform for real-time Operational Intelligence, today announced the expansion of the Adaptive Response Initiative. The initiative, announced earlier this year, brings together leading vendors, leveraging end-to-end context and automated response to help organizations better combat advanced attacks through a unified defense. Acalvio, Anomali, Cisco, CrowdStrike, DomainTools, ForeScout, Okta, Proofpoint, Qualys, Recorded Future and Symantec have now joined the Splunk initiative, bringing together many new capabilities to enterprise security.

“More and more organizations are embracing Splunk® Enterprise Security (ES) as the nerve center of their Security Operations Center (SOC). It is important that we enable collaborative architectures so our customers can extend analytics-driven decisions across a multi-vendor security technology stack,” said Haiyan Song, senior vice president of security markets, Splunk. “Splunk welcomes the new participants of the Adaptive Response Initiative and is excited to deliver the new framework in Splunk ES. This helps the security industry to work closer together while helping organizations to leverage intelligence and automation to better defend against attacks.”

Advanced cyber adversaries are continuously leveraging new attack methods that span multiple domains, launching devastating attacks that often leave enterprises vulnerable. Despite advancements in security technologies, most solutions are not designed to work together out-of-the-box, making it challenging to coordinate a response. By leveraging adaptive security architecture, the Adaptive Response framework in Splunk ES provides end-to-end context and automated response across twenty of the world’s leading security technologies – enabling customers to quickly detect threats and execute response.

“The pace and variety of today’s cyberattacks combined with a wide range of security tools in the typical enterprise make for a daunting challenge for security professionals. For real visibility and a truly actionable approach, enterprises demand a level of multi-vendor integration across silos and tools that goes beyond the efforts of the past,” said Scott Crawford, research director of Information Security, 451 Research. “The Adaptive Response capabilities in Splunk Enterprise Security provide the centerpiece of a flexible, ecosystem-driven approach to combat advanced attacks through a more coordinated, automated response.”

Splunk Empowers IT, Security and Business Teams with Better Data Decisions from Machine Learning

Machine Learning Capabilities Drive New Versions of Splunk Products

Splunk Inc. (NASDAQ: SPLK), provider of the leading software platform for real-time Operational Intelligence, today announced new versions of Splunk® Enterprise, Splunk IT Service Intelligence (ITSI), Splunk Enterprise Security (ES) and Splunk User Behavior Analytics (UBA). Available on-premises or in the cloud, the newest versions of Splunk solutions leverage machine learning to make it faster and easier to maximize the value machine data can deliver to organizations.

Machine learning is bringing big data analytics into a new era, and Splunk is enabling companies to use predictive analytics to help optimize IT, security and business operations. Machine learning is being integrated as a core capability of the Splunk portfolio with packaged or custom algorithms to operationalize machine data in a variety of valuable use cases such as:

Focused Investigation: Identify and resolve IT and security incidents by automatically detecting anomalies and patterns in data.
Intelligent Alerting: Reduce alert fatigue by identifying normal patterns for specific sets of circumstances.
Predictive Actions: Anticipate and react to circumstances such as proactive maintenance that might otherwise disrupt operations or revenue.
Business Optimization: Forecast demand, manage inventory and react to changing conditions through analysis of historical data and models.

“Digital transformation has changed the way that organizations work. The big secret is that all of the change is underpinned by machine data. Machine learning enables organizations to get deeper insights from their machine data and ultimately increases the opportunity our customers can gain from digital transformation,” said Doug Merritt, President and CEO, Splunk. “The enterprise machine data fabric is the foundation for managing and deriving insights from that data at scale – and only Splunk provides the end-to-end analytics platform and ecosystem to support it.”

“At Intuit, we have grown and thrived for over thirty years by constantly transforming and re-inventing ourselves. Splunk has been a key technology in our journey for nearly ten years,” said Brian Ellison, vice president and chief architect at Intuit. “Hundreds of our employees go to Splunk solutions every day for answers and insights into complex IT and business questions. Splunk’s use of machine learning will strengthen its platform and can drive more value for our employees and customers.”

“Splunk supports pre-packaged content and visualizations for a wide variety of use cases, including IT operations, security and business analytics,” said Jason Stamper, data platforms and analytics analyst, 451 Research. “This is making Splunk-based analytics available to an increasing variety of IT and business users. With a broad integration of machine learning, Splunk provides a comprehensive answer to one of the biggest challenges facing modern organizations: how to harness diverse, prevalent and increasingly profuse amounts of data to gain valuable business insights.”

Splunk Cloud and Splunk Enterprise 6.5: New Innovations in Machine Learning and Data Analysis

Splunk Cloud and Splunk Enterprise make it even faster and easier to maximize the value of machine data. Splunk Cloud and Splunk Enterprise 6.5, generally available today, now provide custom machine learning and deliver a totally new user experience for data analysis and preparation, and much more. With Splunk Enterprise 6.5, customers can:

– Harness the power of machine learning with advanced analytics delivered by a rich set of commands and a guided workbench to create custom machine learning models for IT, security and business use cases.
– Simplify data preparation and expand data analysis to a wider range of users with a new intuitive interface and table data views designed for both specialist and occasional users.
– Lower on-premises TCO through tighter integration with Hadoop. Organizations can now roll historical data to Hadoop and utilize hybrid search to analyze all of their data in Splunk.

Download Splunk Enterprise or try Splunk Cloud today. You can learn more about what’s new in Splunk Enterprise 6.5 and Splunk Cloud on the Splunk website.

Splunk ITSI: Simplify Operations, Prioritize Problems and Align IT Through Machine Learning

Splunk ITSI, built on the powerful Splunk Platform, is a machine learning-powered monitoring solution that employs analytics to help organizations find root cause faster and lower mean-time-to-resolution by providing unified service visibility, detecting emerging problems, and simplifying incident investigations and workflows. Splunk ITSI 2.4, generally available today, applies machine learning to event data to help improve productivity across IT and the business. Splunk ITSI can help organizations:

– Improve service operations with pre-built machine learning by baselining normal operational patterns to dynamically adapt thresholds, thereby reducing alert fatigue, improving analysis and increasing reliability.
– Present real-time service insights and drive decision making by prioritizing incidents through event analytics, such as multivariate anomaly detection, supported with business and services context.
– Gain a single view of operations with an intuitive interface that prevents costly customizations through the flexibility, speed and scale of the Splunk platform.

Sign up for a free online sandbox of Splunk ITSI or learn more about Splunk ITSI on the Splunk website.

Splunk ES and Splunk UBA: Advance Analytics-Driven Security with Adaptive Response and Improved Threat Detection

Splunk advances its analytics-driven security vision and security analytics leadership with the new releases of Splunk ES and Splunk UBA. Splunk ES 4.5 provides a common interface for automating retrieval, sharing and response in multi-vendor environments. Splunk UBA 3.0 delivers new machine learning models, additional data sources and content updates of use cases. Splunk security updates help customers:

– Improve detection, investigation and remediation times by centrally automating retrieval, sharing and response through Adaptive Response and analytics-driven decision making in Splunk ES.
– Simplify analysis by understanding the impact of security metrics within a logical or physical Glass Table view in Splunk ES.
– Improve threat detection with use case updates in Splunk UBA, and gain targeted detection by prioritizing outcomes generated by packaged machine learning-based anomaly detection.

Splunk ES 4.5 and Splunk UBA 3.0 will be generally available by October 31. Learn more about Splunk ES and Splunk UBA on the Splunk website.

Splunk Named a Leader in 2016 Gartner Magic Quadrant for SIEM

Splunk Positioned Furthest in Completeness of Vision in Security Information and Event Management (SIEM) Category

Splunk Inc., provider of the leading software platform for real-time Operational Intelligence, today announced it has been named a leader in Gartner’s 2016 Magic Quadrant for Security Information and Event Management (SIEM)* for the fourth straight year. Splunk is positioned as having the furthest completeness of vision in the Leaders quadrant. Gartner evaluated the Splunk security portfolio, including Splunk® Enterprise and Splunk Enterprise Security (ES). To view the report, go to the Splunk website.

“The need for early targeted attack detection and response is driving the expansion of new and existing SIEM deployments. Advanced users seek SIEM with advanced profiling, analytics and response features,” write Gartner report authors Kelly Kavanagh, principal research analyst, Toby Bussa, research director and Oliver Rochford, research director.

“After being named a leader in the Gartner Magic Quadrant for SIEM for four years running, Splunk is honored to now be positioned furthest for completeness of vision,” said Haiyan Song, senior vice president of security markets, Splunk. “We believe this industry-leading position is a reflection of the market fully embracing an analytics-driven approach to security, a testament to the strength of our security platform and the success our customers have achieved. As we continue to introduce new capabilities such as Adaptive Response, we will further strengthen the security posture of Splunk ES as the nerve center for security operations.”

To protect against advanced threats coming from motivated attackers, many modern enterprises are using Splunk as the nerve center of their Security Operations Center (SOC), and are complementing it with the addition of Splunk User Behavior Analytics (UBA) to automatically detect cyber attacks and insider threats. This expanded analytics-driven approach helps organizations to accelerate the analysis, detection and response to threats.

Splunk Wins Top Security Award at 2016 Computerworld Hong Kong Awards

Splunk Enterprise Security Named Best Security Information and Event Management Product

Splunk Inc., provider of the leading software platform for real-time Operational Intelligence, today announced that Splunk® Enterprise Security (ES) has been named the inaugural winner for best Security Information and Event Management (SIEM) product at the 2016 Computerworld Hong Kong Awards. The award recognizes software that provides real-time analysis of security alerts from network devices and applications.

“We are honored to be recognized by Computerworld Hong Kong and security professionals as the leader in SIEM,” said Haiyan Song, senior vice president of security markets, Splunk. “This award reflects our commitment to build products that help our customers gain end-to-end visibility into their data. By embracing a scalable and flexible SIEM solution, customers can use Splunk software as a nerve center for security and gain valuable insights through an analytics-driven security platform.”

Splunk solutions help identify threats and alerts in real time, enabling security teams to quickly contain, analyze and recover from threats. In addition to SIEM capabilities, Splunk solutions can be used for a wide range of IT operations use cases that touch security and compliance. These capabilities enable fast time-to-value and a strong ROI.

The Computerworld Hong Kong Awards, now in their 14th year, recognize the territory’s leading technology products, services and providers by giving IT users the opportunity to nominate and vote. For more information and a detailed list of categories and winners, please visit

Splunk Enterprise Selected as CDM Data Integration Solution for 25 Federal Civilian Government Agencies

Splunk Included in Five CDM Phase 1 Task Order Awards

Splunk Inc. (NASDAQ: SPLK), the leading software platform for real-time Operational Intelligence, today announced that Splunk® Enterprise will be used at the 25 largest civilian Departments and Agencies (D/As) covering 97 percent of the federal civilian government workforce. Splunk was included in task order awards 2A-2E under Phase 1 of the Department of Homeland Security (DHS) Continuous Diagnostic and Mitigation (CDM) Program, which is managed on DHS’s behalf by the General Services Administration (GSA) Federal Systems Integration and Management Center (FEDSIM). The integrators that won these awards are Knowledge Consulting Group, Booz Allen Hamilton, Northrop Grumman Corporation, and Hewlett-Packard Enterprise.

“Splunk is thrilled to be a part of the CDM program awards and to see Splunk Enterprise brought in as the core data integration tool to support federal civilian agencies,” said Kevin Davis, vice president of public sector, Splunk. “Federal organizations today are challenged more than ever with protecting their networks and data. The CDM mission is to help agencies navigate this challenge and reinforce cybersecurity defense capabilities. We are pleased to support this Phase 1 effort, and hope to be a part of CDM Phase 2 and Phase 3 awards over the next year.”

“We conducted an exhaustive evaluation of the best combination of technologies and services to meet the Phase 1 goals for DHS,” said Matthew Brown, vice president, cyber security services, Knowledge Consulting Group (now a wholly owned subsidiary of ManTech International Corporation). “As a cybersecurity leader, we immediately saw the value Splunk’s platform would offer to the CDM program. We are excited to work with Splunk to collaboratively support DHS and provide comprehensive, enterprise-wide capabilities to monitor its networks.”

“Government agencies today face an abundance of emerging threats. Our objective for CDM Task Orders 2B and 2D is to provide best-of-breed solutions to help civilian agencies proactively identify and mitigate vulnerabilities,” said Brad Medairy, senior vice president, Strategic Innovation Group, Booz Allen Hamilton. “Splunk Enterprise is an innovative machine data platform that will help improve agencies’ real-time monitoring capabilities and provide insights that would otherwise go unnoticed.”

Splunk Enterprise will help agencies aggregate, correlate, and analyze terabytes of CDM data and enable them to create a Master Device Record (MDR). A MDR compiles the data from an agency’s hardware, software and configuration management, and vulnerability management tools and brings it into a single, holistic view to provide full visibility into network activities and endpoint behaviors. Additionally, Splunk Enterprise will fully integrate endpoint, user behavior, and event management data and provide an enterprise view for leaders to monitor critical networks, systems and assets.

Phase 2 of the CDM program is focused on user privileges and behavior, while Phase 3 will aim to address event management, incident response and boundary protection.

For more information about how the Splunk analytics platform supports the Federal CDM program, read about it on Splunk Blogs and visit the Splunk website to learn more about how Splunk can make a difference to federal civilian agencies.

Splunk Enterprise Security 4.1 and Splunk User Behavior Analytics 2.2 Now Generally Available

New Versions of Splunk Enterprise Security and Splunk User Behavior Analytics Strengthen Analytics-driven Security

Splunk Inc. (NASDAQ: SPLK), provider of the leading software platform for real-time Operational Intelligence, today announced the general availability of Splunk® Enterprise Security 4.1 (ES) and Splunk User Behavior Analytics 2.2 (UBA). Together, Splunk ES and Splunk UBA provide customers with better machine learning, anomaly detection, context-enhanced correlation and rapid investigation capabilities. By extending user behavior analytics functionality into SIEM, Splunk continues to advance analytics-driven security solutions. Contact Splunk to purchase Splunk ES and Splunk UBA.

“We’re excited about these advanced capabilities that optimize how organizations detect, investigate and respond to threats,” said Haiyan Song, senior vice president of security markets, Splunk. “Customers now gain insights across the entire enterprise and take action more quickly by leveraging the combined power of machine learning, anomaly detection, correlation and ad-hoc investigation in an integrated solution.”

Organizations Can Now Leverage Splunk UBA Machine Learning Throughout the SIEM Workflow

Splunk UBA anomaly, threat and user context data are now available in Splunk ES. This integration includes the ability to:

  • Enhance detection and visibility of malicious attackers and insiders’ activities by combining and correlating behavioral analytics with data from enterprise and security technologies, such as threat intelligence, IPS and DLP.
  • Gain deeper context about anomalies relative to users, devices and applications in Splunk Enterprise and Splunk ES.

Splunk UBA Enhances Insider Threat and Cyberattack Detection Capabilities

Splunk UBA uses unsupervised machine learning and data science to enhance insider threat defense and cyberattack detection. New features and benefits delivered in UBA 2.2 include the ability to:

  • Define how threats are triggered from detected anomalies using the new Threat Detection Framework.
  • Increase data access and physical data loss coverage.
  • Improve precision, prioritization and correlation of threats with new data sources.

Learn more about Splunk UBA on the Splunk website. Splunk UBA can be run standalone or integrated with Splunk ES.

Splunk ES Powers Rapid Investigation of Advanced Threats

Splunk ES uses all machine data generated from security technologies such as network, endpoint, access, malware, vulnerability and identity information to gain organization-wide visibility and security intelligence. New features and benefits of ES 4.1 include the ability to:

  • Ingest Splunk UBA anomaly data with context for correlation against other alerts, feeds and data for more in-depth investigations.
  • Prioritize and speed investigations with risk scores added to the centralized incident review view.
  • Expand threat intelligence through the addition of Splunk Add-on for Facebook ThreatExchange.

Learn more about Splunk ES on the Splunk website. Splunk ES 4.1 requires Splunk Enterprise 6.3 or Splunk Cloud. Splunk ES can be run standalone or integrated with Splunk UBA.

New Splunk Enterprise Drives Down the Cost of Big Data Analytics

Reduces Historical Data Storage Costs Over 40 Percent; Splunk Cloud and Splunk Enterprise Introduce New Interactive Visualizations, Analytics and Cloud Apps

Splunk Inc., provider of the leading software platform for real-time Operational Intelligence, today announced the general availability (GA) of Splunk® Enterprise 6.4 and a new Splunk Cloud release. Splunk Enterprise customers can now drive down the cost of big data analytics by reducing the storage costs of historical data by 40 percent to 80 percent whether deployed on-premises or in the cloud. Both Splunk Cloud and Splunk Enterprise include new interactive visualizations and an open library on Splunkbase where customers and partners can develop and share their custom visualizations. Other new features in both platforms include enhanced big data analytics, improved query performance, platform security and management improvements. Additionally, new cloud analytics apps are now available for Akamai Content Delivery Network (CDN) services, Amazon Web Services (AWS) and ServiceNow. Go to the Splunk website to download Splunk Enterprise 6.4 or to sign up for Splunk Cloud.

As more and more organizations collect, analyze and retain data at an astounding rate, storage is increasingly becoming the most expensive aspect of data analytics. Long-term data retention is becoming a critical issue as companies grapple with regulatory compliance, security investigations and the need to better understand long-term business trends.

“Splunk is passionate about making big data analytics more affordable for organizations of every size. Reducing the cost of historical data retention and analysis is a major part of delivering that value to our customers,” said Shay Mowlem, vice president of product marketing and management, Splunk. “Splunk Enterprise customers can now reduce storage costs for historical data by up to 80 percent for on-premises, cloud and hybrid deployments. We are also engineering long-term data archiving functionality into Splunk Cloud, which we expect to deliver later this year.”

“For many organizations, data retention costs are the single biggest factor driving analytics TCO. Splunk Enterprise addresses this problem with the new storage optimizations for historical data,” said Jason Stamper, analyst, 451 Research. “The new visualizations, analysis enhancements and storage cost reductions support Splunk’s vision for cost-effective machine data analytics and platform strategy.”

“We are pleased Splunk is continuing to focus on innovating its platform to provide better visualization options and lower cost of ownership,” said Ed Bailey, enterprise architect, TransUnion. “The previous version of Splunk Enterprise doubled our performance, and now the new storage optimization abilities in Splunk Enterprise 6.4 can significantly lower our storage costs. We have compared costs to other solutions including open source and Splunk has a lower total cost of ownership.”

“We rely on Splunk Enterprise for real-time visibility into key business metrics such as order volume, value and completion rates to provide the smoothest possible customer experience,” said Andre Pietsch, product manager, Otto Group. “The new visualization library and developer framework in Splunk Enterprise 6.4 will make it even easier to create custom visualizations specific to our needs, especially around transaction monitoring. Ultimately, we will be able to make critical business decisions even faster.”

Customers benefit from several features in the new releases:

Lower Cost of Long-term Data Storage (Splunk Enterprise Only)

  • Cut historical data storage costs with Splunk Enterprise by 40-80 percent, whether deployed on-premises, in the cloud or in a hybrid environment.
  • Enables users to selectively optimize the cost/performance of queries on their historical data.

Interactive Visualizations and Enhanced Analytics

  • Leverage portfolio of new pre-built visualizations and a new visualization library on Splunkbase.
  • Easily create or customize visualizations using the new developer framework.
  • Improved query performance and flexible data sampling options.
  • Enhanced predictive analytics: More accurately forecast trends and predict missing values.

Platform Security and Management

  • New views in Splunk management console provide deeper visibility into Splunk system event collection and health.
  • Additional support for web single sign-on for OKTA, Azure Active Directory and Active Directory Federation Services (ADFS).
  • Increase management flexibility and security using delegated administration roles.

Operational Intelligence for Cloud Services

  • Monitor and analyze the real-time performance, availability and security of the Akamai CDN service with the Splunk App for Akamai.
  • Ensure security, efficiency and cost management of an AWS environment with the new version of the Splunk App for AWS.
  • Track incidents, changes and event management processes in ServiceNow with the updated Splunk App for ServiceNow.

Splunk Security Solutions Take Top Awards at 2016 SC Magazine Awards

Splunk Enterprise Security Wins Best SIEM Solution and Splunk Enterprise Named Best Fraud Prevention Solution

Splunk Inc., provider of the leading software platform for real-time Operational Intelligence, today announced Splunk® Enterprise Security (ES) has been recognized as the Best SIEM Solution at the 2016 SC Magazine Awards. Splunk Enterprise has also been named the Best Fraud Prevention Solution. This is the fifth consecutive year Splunk solutions have been honored by the U.S. SC Magazine Awards. Learn more about Splunk Enterprise and Splunk ES on the Splunk website.

“We are honored that SC Magazine has again recognized Splunk as a leader in the security industry. These awards reflect our commitment to build products that help our customers stay ahead of advanced security threats in a rapidly evolving landscape,” said Haiyan Song, senior vice president of security markets, Splunk. “Today’s cyberthreats are dynamic and attackers are constantly finding new ways to bypass even the top security systems. The key to combating fraud, theft and abuse detection, while keeping an eye on your security defense, lies within analytics-driven security. This is why so many organizations rely on Splunk security solutions.”

Enterprises require big data security solutions that can adapt to advanced threats and changing business demands. Simple monitoring of traditional security events is no longer enough. Splunk security solutions help organizations stay ahead of external attacks, malicious insiders and costly fraud demands by providing fast incident response and the ability to detect and respond to known, unknown and advanced threats. Additionally, Splunk ES goes beyond traditional SIEMs by arming security teams with deep investigative and rapid response capabilities, enabling them to quickly detect and respond to internal and external attacks. The newest version of Splunk ES further advances analytics-driven security solutions by extending behavior analytics into SIEM and enabling organizations to leverage Splunk User Behavior Analytics within Splunk ES.

Splunk ES won the Excellence Award for Best SIEM. The Excellence Awards honor the best the IT security industry has to offer. Splunk Enterprise won the Trust Award for Best Fraud Prevention Solution. The Trust Awards represent the voice of the people who use the solutions and honor security vendors’ dedication to improving the IT security industry.

“The Trust Award category is one of the most highly anticipated designations at the SC Awards ceremony because it represents the voice of the people who are really using the products. Splunk Enterprise was chosen as the Best Fraud Prevention Solution winner for its ability to meet and exceed the needs of its customers,” said Illena Armstrong, VP, editorial, SC Magazine. “As a winner in the Excellence Award category, Splunk proved its ability to execute comprehensive security measures to help protect the enterprise from data-stealing attacks.”

The SC Awards, now in its 19th year, are recognized throughout the security industry as the gold standard of excellence in cybersecurity. With the awards, SC Magazine recognizes the achievements of security professionals in the field, the innovations happening in the vendor and service provider communities, and the vigilant work of government, commercial and nonprofit entities. Vendors and service providers which offer a product and/or service for the commercial, government, educational, nonprofit or other industries are eligible for the Trust Award category in the SC Awards. For more information and a detailed list of categories and winners, please visit

Splunk Named Worldwide IT Operations Analytics Software Market Share Leader in New Report

Splunk Inc., provider of the leading software platform for real-time Operational Intelligence, today announced it has been named the worldwide IT Operations Analytics (ITOA) software market share leader for 2014 in a new report by IDC, a leading provider of global IT research and advice. The IDC report* states Splunk® software and cloud services claimed the top market share with 28.7 percent. This is IDC’s first study of vendor revenues and market shares in the emerging ITOA software market, which is experiencing rapid growth.

According to the IDC report authored by Tim Grieser and Mary Johnston Turner: “The company achieved rapid growth driven by expansion in log management and analysis capabilities delivered via its software and cloud service. The number of data sources and use cases continued to expand along with increases in customer data volumes, driving increased adoption. Splunk has invested in solutions for Hadoop, mobile, real-time wire, security and cloud, among other data sources.” Additionally, “Splunk supports pre-packaged content and visualization for a variety of analytics use cases including IT operations, APM, mobile and IoT. This is making Splunk-based analytics available to an increasing variety of IT and business users.”

“Splunk helped pioneer the ITOA market and we look forward to accelerating our ITOA leadership with the introduction of our newest solution — Splunk IT Service Intelligence,” said Rick Fitz, senior vice president of IT markets, Splunk. “IDC’s report validates our analytics-driven approach to address complex customer requirements across the enterprise. With IT Service Intelligence, Splunk Enterprise and Splunk Cloud, IT and business users can realize the value Splunk analytics can deliver from machine data that legacy solutions were not designed to handle.”

Splunk Enterprise and Splunk Cloud enable organizations to consolidate silos of machine data and use analytics to improve IT service health, reduce costs, resolve problems faster and drive critical business decisions. Splunk IT Service Intelligence (ITSI), an IT monitoring and analytics solution, provides new levels of visibility into key performance indicators of IT services. Splunk ITSI utilizes advanced analytics powered by machine learning to highlight anomalies, provide predictive insights, detect root causes and pinpoint areas of impact.

Visit the Splunk website to learn how Vodafone’s operations team uses analytics from Splunk ITSI to gain real-time insights in the Vodafone case study, and to learn more about IT Operations Analytics with Splunk Enterprise and Splunk Cloud.

* Worldwide IT Operations Analytics Software Market Shares, 2014: Special Report (doc #US40619915, November 2015)

Splunk Achieves ISO 27001 Certification for Splunk Cloud

Customers Continue to Win as Splunk Cloud Release Strategy Focuses on Agile, Cloud-First Releases

Splunk Inc., provider of the leading software platform for real-time Operational Intelligence, today announced it has achieved the International Organization for Standardization’s information security standard 27001 (ISO 27001) certification for Splunk® Cloud. The ISO/IEC 27001:2013 certification is an international standard that formally outlines requirements for an information security management system (ISMS) to help protect and secure organizations’ data. The certification is in addition to Splunk Cloud’s SOC2 Type II attestation and provides additional third-party validation of the security practices and procedures of Splunk Cloud. Splunk Cloud’s certifications for SOC2 Type II and ISO/IEC 27001:2013 currently apply to Splunk Cloud environments provisioned for data ingested over 20GB/day.

“Stringent data security and data integrity are fundamental design principles of Splunk Cloud,” said Marc Olesen, senior vice president and general manager of cloud solutions, Splunk. “Achievement of ISO 27001 certification is a result of our focus on information security management, compliance with international standards and delivery of an easy-to-use cloud service that helps customers worldwide quickly gain value with full confidence.”

Splunk Cloud Driving Customer Value

Splunk’s investment in building easy-to-use cloud services continues to drive significant value to customers on a journey to the cloud. Splunk’s cloud-first product release strategy enables rapid delivery of new features and increased functionality to Splunk Cloud customers. The latest cloud release includes increased security controls and enhancements to the HTTP Event Collector to give organizations expanded ability to collect cloud data sources. Customers can deploy Splunk Cloud alongside Splunk Enterprise for a single, centralized view across their machine data.

“From day one, Splunk Cloud has given us actionable, data-driven intelligence, and Splunk’s cloud-first release process ensures we always have the leading-edge cloud-based SIEM solution,” said George Do, CISO, Equinix. “With Splunk Enterprise Security in the cloud, we are getting comprehensive SIEM functionality, the economics and simplicity of software as a service, and outstanding availability and security. As a result, we are able to reduce roughly 20 billion raw events into about 20 actionable alerts per month and investigate security incidents 30 percent faster – all while realizing a 50 percent TCO savings compared to legacy SIEM solutions.”

Splunk Cloud Customers span a wide range of verticals, geographies and company sizes, and gain value across a diverse range of use cases including security, IT operations, fraud, business analytics and the Internet of Things.