SplunkLive! São Paulo - Overview by markus zirn

40
Markus Zirn VP Product Management Delivering Operational Intelligence Copyright © 2014 Splunk Inc.

description

 

Transcript of SplunkLive! São Paulo - Overview by markus zirn

Page 1: SplunkLive! São Paulo -  Overview by markus zirn

Markus  Zirn  VP  Product  Management  

Delivering Operational Intelligence

Copyright © 2014 Splunk Inc.

Page 2: SplunkLive! São Paulo -  Overview by markus zirn

COMPANIES WHO COMPETE WITH DATA WILL WIN

Page 3: SplunkLive! São Paulo -  Overview by markus zirn

Mar 01 19:18:50:000 aaa2 radiusd[12548]:[ID 959576 local1.info] INFO RADOP(13) acct start for [email protected] 10.164.232.181 from 12.130.60.5 recorded OK.!2013-03-01 19:18:50:150 10.2.1.34 GET /sync/addtolibrary/01011207201000005652000000000053 - 80 - 10.164.232.181 "Mozilla/5.0 (iPhone; CPU iPhone OS 5_0_1 like Mac OS X) AppleWebKit/534.46 (KHTML, like Gecko) Version/5.1 Mobile/9A405 Safari/7534.48.3" 503 0 0 825 1680!Mar 01 19:18:50:163 aaa2 radiusd[12548]:[ID 959576 local1.info] INFO RADOP(13) acct stop for [email protected] 10.164.232.181 from 12.130.60.5 recorded OK.!

MACHINE DATA HAS VALUE

IP  Address  

Phone  Number  

Track  ID  

Error  Code  

Page 4: SplunkLive! São Paulo -  Overview by markus zirn

YOU COULD MAKE MACHINE DATA ACCESSIBLE, USABLE AND VALUABLE FOR EVERYONE

WHAT IF…

Page 5: SplunkLive! São Paulo -  Overview by markus zirn

THE POWER OF

COLLECT DATA FROM ANYWHERE

SEARCH AND ANALYZE

EVERYTHING

GAIN REAL-TIME OPERATIONAL INTELLIGENCE

Page 6: SplunkLive! São Paulo -  Overview by markus zirn

DEMO #1 Operational Intelligence

Page 7: SplunkLive! São Paulo -  Overview by markus zirn

Store  Data  

   Structure  Data  

Search,  Explore  

 

Analyze,  Mine    

Report,  Visualize  

 

Page 8: SplunkLive! São Paulo -  Overview by markus zirn

Store  Data  

   Structure  Data  

Search,  Explore  

 

Analyze,  Mine    

Report,  Visualize  

 

Business Intelligence

Page 9: SplunkLive! São Paulo -  Overview by markus zirn

Store  Data  

   Structure  Data  

Search,  Explore  

 

Analyze,  Mine    

Report,  Visualize  

 

ANALYTICS STORE

DATA MODEL

PIVOT

Page 10: SplunkLive! São Paulo -  Overview by markus zirn

Feed  Data  

Store  Data  

   Structure  Data  

Search,  Explore  

 

Analyze,  Mine    

Report,  Visualize  

 

Alert  &  Ac?on  

 

ANALYTICS STORE

DATA MODEL

PIVOT

Oprational Intelligence

Page 11: SplunkLive! São Paulo -  Overview by markus zirn

Feed  Data  

Store  Data  

   Structure  Data  

Search,  Explore  

 

Analyze,  Mine    

Report,  Visualize  

 

Alert  &  Ac?on  

 

ANALYTICS STORE

DATA MODEL

PIVOT

Oprational Intelligence

HA  /  DR   Admin   Data  Security   Apps   API  Scale  

Page 12: SplunkLive! São Paulo -  Overview by markus zirn

DE FACTO FABRIC FOR UNSTRUCTURED DATA

Page 13: SplunkLive! São Paulo -  Overview by markus zirn

SEARCH WILL BE THE DE FACTO DATA QUERY LANGUAGE

Todd Papaioannou Jan 27, 2014, 11:59 PM! Image?!

Page 14: SplunkLive! São Paulo -  Overview by markus zirn

SCHEMA AT READ NOT AT WRITE TIME

Todd Papaioannou Jan 27, 2014, 11:59 PM! Image? Or fancy fonts!

Page 15: SplunkLive! São Paulo -  Overview by markus zirn

Educa?on  

Healthcare  

Technology  

Energy  and  U?li?es  

Manufacturing  

Telecommunica?ons  

Cloud  and  Online  Services  

Government  

Retail  

Financial  Services  and  Insurance  

Media  

Travel  and  Leisure  

Proven at 7,400+ Customers in 90+ Countries Over 2/3 the Fortune 100

Page 16: SplunkLive! São Paulo -  Overview by markus zirn

Why Apollo Group Uses Splunk

Developers  finding  root  cause  

5-­‐10x  faster!  

Product  Lifecycle  

Monitoring  

Fraud  preven?on    

Ac?vity  tracking  

Produc@on  Applica@on  Analy@cs  

Reduced  down?me  

Capacity  planning  

Mobile  Applica@on  Monitoring  

Reduced    costs!  

Cloud  Monitoring  

Saves  security  team  20  hours  every  day    

Security  &  Digital  

intelligence  

Page 17: SplunkLive! São Paulo -  Overview by markus zirn

IT  Opera@ons  

Security,    Compliance  &  

Fraud  

App  Dev  &    App  

Management  

Developer  PlaHorm  (REST  API,  SDKs)  

Business  Analy@cs  

Industrial  Data  and  Internet  of  

Things  

Delivers Value Across IT and the Business

Copyright © 2014 Splunk Inc.

Page 18: SplunkLive! São Paulo -  Overview by markus zirn

Platform for Application Delivery & IT Operations

PROACTIVE  MONITORING  &  

REAL  TIME  ALERTING  

DELIVER  BETTER  QUALITY  CODE  

FASTER  

MOBILE  APP  TROUBLESHOOTING  

ROOT  CAUSE  &  ISSUE  

RESOLUTION  

CLOUD    APP  &  INFRASTRUCTURE  MONITORING  

USER  AND  USAGE  ANALYTICS  

Page 19: SplunkLive! São Paulo -  Overview by markus zirn

Better Code, Faster Development & Migration to Cloud

Reduced error rates by 2 orders of magnitude in a couple of weeks

Rapidly found and fixed one line of code responsible for 30,000+ errors

Real-time dashboards on error rates & production impact

In-depth visibility as they strategically migrate apps to AWS Cloud

Copyright © 2014 Splunk Inc.

Page 20: SplunkLive! São Paulo -  Overview by markus zirn

Faster Troubleshooting – Reduced Severity 1 & 2 by 43%

Real-time Visibility Across 1,200+ Applications

CIO Dashboards on KPIs and Trends by Store

Health Status of Entire Application Infrastructure

Why Home Depot Uses Splunk for App and IT Management

Copyright © 2014 Splunk Inc.

Page 21: SplunkLive! São Paulo -  Overview by markus zirn

Apps for Application Management & IT Ops

Splunk  Apps    for  VMware  and  

Exchange  

300+  IT  ops  and  App  Management  Apps  

*nix

Cloud  Service  for  Mobile  Developers  

Page 22: SplunkLive! São Paulo -  Overview by markus zirn

IT  Opera@ons  

Security,    Compliance  &  

Fraud  

App  Dev  &    App  

Management  

Developer  PlaHorm  (REST  API,  SDKs)  

Business  Analy@cs  

Industrial  Data  and  Internet  of  

Things  

Delivers Value Across IT and the Business

Copyright © 2014 Splunk Inc.

Page 23: SplunkLive! São Paulo -  Overview by markus zirn

Single Platform for Security Intelligence

SECURITY  &                    COMPLIANCE  REPORTING  

REAL-­‐TIME  MONITORING  OF  KNOWN  THREATS  

DETECT    UNKNOWN  THREATS  

INCIDENT  INVESTIGATIONS  &  FORENSICS  

FRAUD    DETECTION  

INSIDER    THREAT  

Splunk Complements, Replaces, and Goes Beyond Existing SIEMs

Page 24: SplunkLive! São Paulo -  Overview by markus zirn

Prevent security breaches and protect patient privacy

Operational analytics for connected medical devices

Comply with HIPAA regulatory requirements

How HCA Uses Splunk for Security and Medical Informatics

Copyright © 2014 Splunk Inc.

Page 25: SplunkLive! São Paulo -  Overview by markus zirn

Apps for Security Splunk App for

Enterprise Security 130+

Security Apps

Page 26: SplunkLive! São Paulo -  Overview by markus zirn

DEMO #2 Splunk for Security / ES 3.1

Page 27: SplunkLive! São Paulo -  Overview by markus zirn

2014  Gartner  SIEM  Magic  Quadrant  

27  

Page 28: SplunkLive! São Paulo -  Overview by markus zirn

IT  Opera@ons  

Security,    Compliance  &  

Fraud  

App  Dev  &    App  

Management  

Developer  PlaHorm  (REST  API,  SDKs)  

Business  Analy@cs  

Industrial  Data  and  Internet  of  

Things  

Delivers Value Across IT and the Business

Copyright © 2014 Splunk Inc.

Page 29: SplunkLive! São Paulo -  Overview by markus zirn

Extending Splunk for Business Analytics

CUSTOMER  EXPERIENCE  

PRODUCT  ANALYTICS  

BUSINESS  PROCESS  ANALYTICS  

DIGITAL  MARKETING  

Splunk  Complements  Exis?ng  BI  Solu?ons  

Page 30: SplunkLive! São Paulo -  Overview by markus zirn

Why Domino’s uses Splunk for Application Management and Business Analytics

Copyright © 2014 Splunk Inc.

30  

Understand  device  and  app  usage  trends  for  

orders  

Real-­‐?me  revenue  

insights  from  store  data  

Visibility  into  online  &  

mobile  coupon  redemp?on  

Refine    campaigns    for  higher    conversion  

Page 31: SplunkLive! São Paulo -  Overview by markus zirn

Apps & Capabilities for Business Analytics

• DB  Connect  • Stream  

• ODBC  Driver  • Data  Models  

• Pivot  

Apps,  Features  &  Partners  

Page 32: SplunkLive! São Paulo -  Overview by markus zirn

BREAKTHROUGH IN BIG DATA: HUNK

9 YEARS OF SPLUNK ENTERPRISE SOFTWARE R&D

ON TOP OF HADOOP

Page 33: SplunkLive! São Paulo -  Overview by markus zirn

IT  Opera@ons  

Security,    Compliance  &  

Fraud  

App  Dev  &    App  

Management  

Developer  PlaHorm  (REST  API,  SDKs)  

Business  Analy@cs  

Industrial  Data  and  Internet  of  

Things  

Delivers Value Across IT and the Business

Copyright © 2014 Splunk Inc.

Page 34: SplunkLive! São Paulo -  Overview by markus zirn

Splunk for Industrial Data & Internet of Things

REMOTE  TROUBLESHOOTING  &  PREVENTIVE  MAINTENANCE  

SECURITY  &  COMPLIANCE  

DEVICE  USAGE  &  

CUSTOMER  ANALYTICS  

OPERATIONAL  

EFFICIENCY  

Page 35: SplunkLive! São Paulo -  Overview by markus zirn

Building Smarter Transportation

Improving Safety

Reducing Fuel Costs

Improving On-Time Operations

Over  $1  Billion  in  Poten@al  Savings  

Copyright © 2014 Splunk Inc.

Page 36: SplunkLive! São Paulo -  Overview by markus zirn

Apps & Capabilities for Industrial Data & Internet of Things

• DBConnect  • REST  API  &  SNMP  Modular  Inputs  

• Universal  Forwarder  for  Raspberry  Pi  

Apps,  Features  &  Partners  

REST  

Page 37: SplunkLive! São Paulo -  Overview by markus zirn

VMware  

PlaHorm  for  Machine  Data  

Making Splunk Adoption Easier

Exchange   PCI   Security  

Forwarders   DB  Connect   Mobile  Syslog  /    TCP  /  Other  

Sensors/Control  Systems  

500+  Ecosystem  Apps  

Across Data Sources, Use Cases & Consumption Models

Copyright © 2014 Splunk Inc.

Stream  

Page 38: SplunkLive! São Paulo -  Overview by markus zirn

Free    Online  Sandbox  

Easy to Get Started

Copyright © 2014 Splunk Inc.

Free    Download  

Free    Amazon  Machine  

Images  (AMI)  

Page 39: SplunkLive! São Paulo -  Overview by markus zirn

Thriving Community

6  SDKs  with  documenta?on  and  

examples  

40,000+  ques?ons  

and  answers  

500+  apps  Local  User  Groups    and  

SplunkLive!  events  

Page 40: SplunkLive! São Paulo -  Overview by markus zirn

5th Annual Splunk WWUC •  October 4-6, 2014 •  MGM Grand, Las Vegas •  3 days of Splunk University - Get

Certified! •  3 days of Technical Content •  140+ sessions •  50+ Customer Speakers •  30+ Technology Partners •  30+ Apps in Apps Showcase •  Ask the Experts, Business Value ROI

Booth, and more

conf.splunk.com