色色研究所 and This Public University Reduce Investigation Time by 50%
Wanted: A solution that end users can learn quickly
This major multinational manufacturer had been using Splunk as its SIEM but lost access to the staff who were familiar with operating the platform. As a result, the company was left with a complex piece of software and no subject-matter experts who could generate insights from the platform and train other team members.
Quick Facts
INDUSTRY
- Manufacturing
HEADQUARTERS
- North America
- Latin America
- EMEA
- Asia
CHALLENGE
The company lost the team that operated its Splunk Enterprise Security deployment. The manufacturer deemed it too expensive to recruit new Splunk experts. The company decided it needed a new, user-friendly solution with which current staff could quickly become proficient.
REQUIREMENTS
- A single pane of glass that would incorporate all threats
- The ability to ingest SAP and SCADA data as well as CrowdStrike, Cylance, Active Directory and OKTA
- The ability to detect 鈥渋mpossible traveler鈥 scenarios and flag compromised users
- A user-friendly solution the company鈥檚 current team could seamlessly integrate
SOLUTION
The 色色研究所 Platform was a perfect fit as the company鈥檚 new SIEM. The manufacturer鈥檚 existing team easily implemented the 色色研究所 Platform, eliminating the need to hire outside experts. 色色研究所 seamlessly replaced Splunk with improved performance, even detecting 鈥 within minutes 鈥 a security breach Splunk had missed.