Follow Datanami:
November 10, 2015

Splunk Delivers Security Analytics and Threat Prevention to Integra Customers

SAN FRANCISCO, Calif., Nov. 10 — Splunk Inc. (NASDAQ:SPLK), provider of the leading software platform for real-time Operational Intelligence, today announced Splunk Enterprise and Splunk Enterprise Security (ES) are at the heart of an expanded security operations center (SOC) for Integra. Integra’s SOC is utilizing Splunk ES to detect, prevent and respond to attacks, and to provide customers with 24/7 security analysis for the Integra network and services. Integra is also using Splunk Enterprise to enhance its operations in ways that will deliver significant benefits to customers.

Integra is one of the largest regional providers of networking, communications and technology solutions in the western United States. Through its two business units, Electric Lightwave and Integra Business, the company provides critical data networking, unified communications, cloud and security services to domestic and international customers, including enterprise, government and wholesale customers.

“Security of the network is critically important to our customers. For many of them, security is the primary reason why they choose to work with Integra. They want their data and communications services delivered on a network that has a level of security that goes beyond what other providers and the public Internet can provide,” said Steve Fisher, vice president of network planning and security, Integra. “Splunk software is playing a central role in helping Integra’s SOC and our suite of services set the highest standards for protection against threats, thanks to Splunk software’s ability to perform real-time and historical analysis for massive volumes of data. That helps enable Integra to ensure an exceptional level of threat neutralization and incident response rate.”

Splunk Enterprise and Splunk ES help enable security teams to detect, prevent and respond to internal and external attacks by analyzing machine data streaming from security technologies, such as endpoints, servers and networks—a dynamic that creates significant challenges for legacy security products. The end result for Integra and its customers is higher detection rates for threats, faster responses to emerging security situations and more effective shielding from security issues that create downtime and operational interruptions for other companies.

Integra’s dedicated SOC in Vancouver, Washington has had several successes, such as the following examples:

  • Detecting potentially compromised accounts: Splunk ES alerted security teams when an employee’s administrative account was attempting to route data through a country in which Integra does not operate networks.
  • Detecting compromised systems: Splunk ES alerted Integra when a laser printer was sending out SSL traffic and played a critical role as the investigative team isolated the printer and its network – eventually discovering it had been compromised and needed a firmware update.
  • Detecting malware infections: Integra has detected several instances of malware and malware attempts.
  • Detecting malicious activity missed by other solutions: Splunk has helped Integra to detect previously unseen suspicious security events in customers’ networks.

Integra’s IT team also uses Splunk Enterprise to minimize downtime and deliver business value in IT and network operations. Teams monitor, analyze and visualize data from nearly all critical IT systems. Integra’s use cases include application delivery across all internal applications, capacity planning in VMware environments with the Splunk App for VMware, and monitoring and troubleshooting the company’s Microsoft Exchange environment.

“The telecommunications industry faces a big data challenge as it grapples with immense datasets streaming off of networks 24/7. Splunk technology shines in these environments, where a single platform uses the same data to support multiple use cases and deliver value to distinct teams and departments,” said Shay Mowlem, vice president of product management, Splunk. “Splunk solutions can help telecommunications companies like Integra accelerate service delivery and provisioning, improve the customer experience, strengthen their security posture and reduce fraud. We are excited to be helping Integra protect the business and increase revenues.”

Go to the Splunk website to learn more about Splunk Enterprise and Splunk Enterprise Security.

About Splunk Inc.

Splunk Inc. (NASDAQ: SPLK) is the market-leading platform that powers Operational Intelligence. We pioneer innovative, disruptive solutions that make machine data accessible, usable and valuable to everyone. More than 10,000 customers in over 100 countries use Splunk software and cloud services to make business, government and education more efficient, secure and profitable. Join hundreds of thousands of passionate users by trying Splunk solutions for free: http://www.splunk.com/free-trials.

Source: Splunk

Datanami