SlideShare a Scribd company logo
© 2017 SPLUNK INC.
Splunk und die EU-DSGVO
Matthias Maier | Director Product Marketing EMEA
NOVEMBER 15 | FRANKFURT
© 2017 SPLUNK INC.
During the course of this presentation, we may make forward-looking statements regarding future events or
the expected performance of the company. We caution you that such statements reflect our current
expectations and estimates based on factors currently known to us and that actual events or results could
differ materially. For important factors that may cause actual results to differ from those contained in our
forward-looking statements, please review our filings with the SEC.
The forward-looking statements made in this presentation are being made as of the time and date of its live
presentation. If reviewed after its live presentation, this presentation may not contain current or accurate
information. We do not assume any obligation to update any forward looking statements we may make. In
addition, any information about our roadmap outlines our general product direction and is subject to change
at any time without notice. It is for informational purposes only and shall not be incorporated into any contract
or other commitment. Splunk undertakes no obligation either to develop the features or functionality
described or to include any such feature or functionality in a future release.
Splunk, Splunk>, Listen to Your Data, The Engine for Machine Data, Splunk Cloud, Splunk Light and SPL are trademarks and registered trademarks of Splunk Inc. in
the United States and other countries. All other brand names, product names, or trademarks belong to their respective owners. © 2017 Splunk Inc. All rights reserved.
Forward-Looking Statements
© 2017 SPLUNK INC.
GDPR Timelines
▶ The regulation is binding across all EU members states
January, 2012
Commissioner Proposed
reform to Data Protection
regulation
May, 2018
Effective Data Protection
Framework comes into
force (25th May, 2018)
April, 2016
EU Council adopted new
regulation
December, 2015
EU agreement on
regulation
© 2017 SPLUNK INC.
Key Features of GDPR/DSGVO
Applicable to any company doing business in the European Union
European Data
Protection
Harmonization
Fines up to
€20m or 4%
of turnover
Mandatory
Privacy Impact
Assessments
Privacy by
Design &
Default
72 Hour
Breach
Notification
Mandatory
Data Erasure
& Portability
Consent for
Personal Data
Profiling
© 2017 SPLUNK INC.
Ein Datendiebstahl
unter der neuen EU-
DSGVO
© 2017 SPLUNK INC.
What if
tomorrow is
© 2017 SPLUNK INC.
What if you’re
responsible
for Security?
© 2017 SPLUNK INC.
You wake up
in the morning
and you even
haven’t had
your coffee
© 2017 SPLUNK INC.
Your friendly
Data Privacy
Officer is on
the phone
© 2017 SPLUNK INC.
Someone
claims to sell
PI data you
hold
© 2017 SPLUNK INC.
There is data in the
deep web
It may be your
data!
© 2017 SPLUNK INC.
He hangs up!
What’s next?
© 2017 SPLUNK INC.
Your incident
investigation
plan kicks in
© 2017 SPLUNK INC.
DPO
IT
PR/Media Team
Legal
(CEO)
Coordination
© 2017 SPLUNK INC.
Emergency
call
Emergency
chatroom
© 2017 SPLUNK INC.
The fire alarm
button is
pulled down
© 2017 SPLUNK INC.
T- 72h
© 2017 SPLUNK INC.
Internal Leak
External Leak
Incident
commander
T- 70h
© 2017 SPLUNK INC.
“We need to
investigate!!!”
Reaching out
to your
security
operations
team
T- 65h
© 2017 SPLUNK INC.
People and
Processes
T- 60h
© 2017 SPLUNK INC.
Where is that
data stored in
your
environment?
T- 55h
© 2017 SPLUNK INC.
First Action
Is data still
leaking?
T- 45h
© 2017 SPLUNK INC.
How will you
watch them?
T- 40h
© 2017 SPLUNK INC.
Nice,
structured,
tidy data
T- 39h
© 2017 SPLUNK INC.
Diving deep into
the digital
infrastructure
T- 35h
© 2017 SPLUNK INC.
time series, in motion,
unstructured
Machine data
26
T- 34h
© 2017 SPLUNK INC.
It can be big
data…
T- 33h
© 2017 SPLUNK INC.
… it is lazy
T- 32h
© 2017 SPLUNK INC.
… and it is
hard to
understand…
T- 30h
© 2017 SPLUNK INC.
Take response
actions to stop
data leakage
T- 20h
© 2017 SPLUNK INC.
Understand
T- 15h
© 2017 SPLUNK INC.
How much
data will be
needed for
this?
© 2017 SPLUNK INC.
Who
processed
your
information?
T- 10h
© 2017 SPLUNK INC.
Which user or
systems was
involved?
T- 8h
© 2017 SPLUNK INC.
You know what you
know
You know what you
don’t know
Painting the
picture
T- 5h
© 2017 SPLUNK INC.
Maybe resulting in a
non event?
Puts the breach
data subjects at
risk?
© 2017 SPLUNK INC.
Do individuals need to
be informed
additionally?
How sensitive
was the data?
© 2017 SPLUNK INC.
before chatter explodes
• Inform Authority
• Inform affected
Individuals
• (Inform Public)
As an
organization
you want to
control the
story
T- 0h
© 2017 SPLUNK INC.
Worst
Practice:
German
Bundestag
"The Trojans are still active," confirmed SPIEGEL ONLINE. According to
data from several sources familiar with the case, Bundestag data from
the ”Parliament" network continue to flow in an unknown direction.
© 2017 SPLUNK INC.
Best Practice:
ABTA Breach
© 2017 SPLUNK INC.
Best Practice:
ABTA Breach
© 2017 SPLUNK INC.
© 2017 SPLUNK INC.
2+ weeks later out of
the news
Example
ABTA Breach
43
© 2017 SPLUNK INC.
© 2017 SPLUNK INC.
Someone
knocks on
your door
T+ 1 Week
© 2017 SPLUNK INC.
Have you deployed
“countermeasures
appropriate to the risk”?
Have you used “state
of the art” best
practices?
Data Privacy
Audits
T+ 1 Week
© 2017 SPLUNK INC.
Massive Fines
T+ 1 Week
© 2017 SPLUNK INC.
What did you know?
When did you know?
How did you know
about it?
Prove
T+ 2 Weeks
© 2017 SPLUNK INC.
Logs become
your digital
fingerprints
© 2017 SPLUNK INC.
Why Splunk?
Splunk can help
© 2017 SPLUNK INC.
Prove GDPR security
controls are enforced
Splunk helps to detect,
prevent and investigate
breaches
Search and report
on personal data
processing
What GDPR use cases does Splunk help solve?
Breach Investigation Notification: 72 Hours
© 2017 SPLUNK INC.
Three Use Cases that bring
different person’s on the
same level and speak
the same language,
each:
▶ Real World Scenario
(IT-Manager)
▶ Relevant GDPR Articles
and what they mean
(Data Privacy Officer)
▶ How machine data
helps with (Splunk
Champion)
Whitepaper: How machine data helps with GDPR
https://www.splunk.com/en_us/form/white-paper-how-machine-data-supports-gdpr-compliance.html
https://www.splunk.com/de_de/form/wie-maschinendaten-die-eu-dsgvo.html
https://www.splunk.com/fr_fr/form/les-donnees-machine-facilitent-la-conformite-au-rgpd.html
© 2017 SPLUNK INC.
Splunk Support for the GDPR Journey
How to use Machine
Data for GDPR
Whitepaper outlining how
machine data can support GDPR
Splunk Data
Obfuscation
How to protect data using anonymisation,
pseudonymisation & encryption in Splunk
.conf Session – Angelo Brancato and Dirk
Nitschke
Splunk GDPR
Support
GDPR Workshop
Map analytics capabilities to
GDPR security monitoring &
reporting needs
How to handle log data in
your SIEM under GDPR
FAQ’s answered from Freddy Dezeure,
Former Head of. CERT-EU
.conf Session
© 2017 SPLUNK INC.© 2017 SPLUNK INC.
NOVEMBER 15 | FRANKFURT

More Related Content

PPTX
Splunk Forum Frankfurt - 15th Nov 2017 - AI Ops
PPTX
Rage WITH the machine, not against it: Machine learning for Event Management
PPTX
Splunk Forum Frankfurt - 15th Nov 2017 - .conf2017 Update
PPTX
Splunk Discovery Dusseldorf: September 2017 - IT Ops Session
PPTX
A Day in the Life of a GDPR Breach - September 2017: Germany
PPTX
Financial Services Forum_New York, May 17, 2017
PPTX
Splunk Forum Frankfurt - 15th Nov 2017 - Building SOC with Splunk
PPTX
SplunkLive! Paris 2017: Plenary Session - Splunk Overview
Splunk Forum Frankfurt - 15th Nov 2017 - AI Ops
Rage WITH the machine, not against it: Machine learning for Event Management
Splunk Forum Frankfurt - 15th Nov 2017 - .conf2017 Update
Splunk Discovery Dusseldorf: September 2017 - IT Ops Session
A Day in the Life of a GDPR Breach - September 2017: Germany
Financial Services Forum_New York, May 17, 2017
Splunk Forum Frankfurt - 15th Nov 2017 - Building SOC with Splunk
SplunkLive! Paris 2017: Plenary Session - Splunk Overview

What's hot (20)

PDF
Splunk GDPR Security Roundtable: Zurich - 22 Nov 2017 PT2
PPTX
Splunk Discovery Brussels - September 2017
PPTX
SplunkLive! London 2017 - Build a Security Portfolio That Strengthens Your Se...
PPTX
SplunkLive! Zurich 2017 - Build a Security Portfolio That Strengthens Your Se...
PPTX
A Day in the Life of a GDPR Breach - September 2017: France
PPTX
Learn how to use an Analytics-Driven SIEM for your Security Operations
PDF
Splunk GDPR Security Roundtable: Zurich - 22 Nov 2017 PT1
PPTX
Splunk Forum Frankfurt - 15th Nov 2017 - Machine Learning For Event Management
PPTX
SplunkLive! Zurich 2017 - Splunk Add-ons and Alerts
PPTX
A Day in the Life of a GDPR Breach
PDF
Threat Hunting with Deceptive Defense and Splunk Enterprise Security
PPTX
SplunkLive! London 2017 - Splunk Overview
PDF
Using Splunk to Defend Against Advanced Threats - Webinar Slides: November 2017
PDF
Splunk Discovery Day Milwaukee 9-14-17
PPTX
SplunkLive! London 2017 - An End-To-End Approach: Detect via Behavious and Re...
PPTX
Partner Exec Summit 2018 - Frankfurt: Analytics-driven Security und SOAR
PPTX
SplunkLive! Zurich 2017 - Advanced Analytics / Machine Learning
PPTX
SplunkLive! Zurich 2017 - Data Obfuscation in Splunk Enterprise
PPTX
Machine Learning für Event Management
PDF
The Hitchhiker's Guide to Service Intelligence Workshop
Splunk GDPR Security Roundtable: Zurich - 22 Nov 2017 PT2
Splunk Discovery Brussels - September 2017
SplunkLive! London 2017 - Build a Security Portfolio That Strengthens Your Se...
SplunkLive! Zurich 2017 - Build a Security Portfolio That Strengthens Your Se...
A Day in the Life of a GDPR Breach - September 2017: France
Learn how to use an Analytics-Driven SIEM for your Security Operations
Splunk GDPR Security Roundtable: Zurich - 22 Nov 2017 PT1
Splunk Forum Frankfurt - 15th Nov 2017 - Machine Learning For Event Management
SplunkLive! Zurich 2017 - Splunk Add-ons and Alerts
A Day in the Life of a GDPR Breach
Threat Hunting with Deceptive Defense and Splunk Enterprise Security
SplunkLive! London 2017 - Splunk Overview
Using Splunk to Defend Against Advanced Threats - Webinar Slides: November 2017
Splunk Discovery Day Milwaukee 9-14-17
SplunkLive! London 2017 - An End-To-End Approach: Detect via Behavious and Re...
Partner Exec Summit 2018 - Frankfurt: Analytics-driven Security und SOAR
SplunkLive! Zurich 2017 - Advanced Analytics / Machine Learning
SplunkLive! Zurich 2017 - Data Obfuscation in Splunk Enterprise
Machine Learning für Event Management
The Hitchhiker's Guide to Service Intelligence Workshop
Ad

Viewers also liked (20)

PPTX
Splunk Forum Frankfurt - 15th Nov 2017 - Threat Hunting
PDF
Splunk Discovery Indianapolis - October 10, 2017
PPTX
Design, Build and Map IT and Business Services in Splunk
PPTX
Learn How to Design, Build and Map Services to Quantifiable Measurements in S...
PPTX
Splunk User Group: Toulouse, France - 26 September 2017
PPTX
SplunkLive! Customer Presentation - Cisco Systems, Inc.
PPTX
SplunkLive! London 2017 - Building an Analytics Driven Security Operation Cen...
PPTX
Danfoss - Splunk for Vulnerability Management
PPTX
SplunkLive! London 2017 - Using Machine Learning to Feed Hungry People
PPTX
SplunkLive! Customer Presentation--ServiceNow
PPTX
Cisco and Splunk: Under the Hood of Cisco IT Breakout Session
PPTX
SplunkLive! London 2017 - How to Earn a Seat and the Business Table with Splunk
PDF
Splunk Forum Financial Services Chicago 9/13/17
PPTX
Splunk Ninjas: New Features and Search Dojo
PDF
Splunk at Scotiabank
PPTX
SplunkLive! Milano 2016 - customer presentation - Unicredit
PDF
Reactive to Proactive: Intelligent Troubleshooting and Monitoring with Splunk
PPTX
Splunk Partner+ Program - Partner Marketing e-Learning - France August 2017
PPTX
Using Splunk at MoneyGram International
PPTX
Splunk for Enterprise Security featuring User Behavior Analytics
Splunk Forum Frankfurt - 15th Nov 2017 - Threat Hunting
Splunk Discovery Indianapolis - October 10, 2017
Design, Build and Map IT and Business Services in Splunk
Learn How to Design, Build and Map Services to Quantifiable Measurements in S...
Splunk User Group: Toulouse, France - 26 September 2017
SplunkLive! Customer Presentation - Cisco Systems, Inc.
SplunkLive! London 2017 - Building an Analytics Driven Security Operation Cen...
Danfoss - Splunk for Vulnerability Management
SplunkLive! London 2017 - Using Machine Learning to Feed Hungry People
SplunkLive! Customer Presentation--ServiceNow
Cisco and Splunk: Under the Hood of Cisco IT Breakout Session
SplunkLive! London 2017 - How to Earn a Seat and the Business Table with Splunk
Splunk Forum Financial Services Chicago 9/13/17
Splunk Ninjas: New Features and Search Dojo
Splunk at Scotiabank
SplunkLive! Milano 2016 - customer presentation - Unicredit
Reactive to Proactive: Intelligent Troubleshooting and Monitoring with Splunk
Splunk Partner+ Program - Partner Marketing e-Learning - France August 2017
Using Splunk at MoneyGram International
Splunk for Enterprise Security featuring User Behavior Analytics
Ad

Similar to Splunk Forum Frankfurt - 15th Nov 2017 - GDPR / EU-DSGVO (20)

PDF
Splunk: How Machine Data Supports GDPR Compliance
PPTX
GDPR Complaince: Don't Let SIEM BE Your Downfall
PDF
What you will take away from this session
PDF
Splunk Leadership Forum Wien - 20.05.2025
PPTX
Splunk Discovery Dusseldorf: September 2017 - Security Session
PPTX
SplunkLive! Munich 2018: Intro to Security Analytics Methods
PDF
March 2023 PNW User Group
PPTX
Best Practices For Sharing Data Across The Enteprrise
PPTX
Better Threat Analytics: From Getting Started to Cloud Security Analytics and...
PDF
Using Machine Learning and Analytics to Hunt for Security Threats - Webinar
PDF
Splunk Discovery: Warsaw 2018 - Intro to Security Analytics Methods
PPTX
Splunk Discovery: Milan 2018 - Get More From Your Machine Data with Splunk AI
PPTX
Security crawl walk run presentation mckay v1 2017
PPTX
SplunkLive! Paris 2018: Splunk Overview
PPTX
Elevate your Splunk Deployment by Better Understanding your Value Breakfast S...
PPTX
Make Your SOC Work Smarter, Not Harder
PPTX
The Splunk AISecOps Initiative - Splunk Security Roundtable: Zurich 2018
PPTX
SplunkLive! Zurich 2018: Get More From Your Machine Data with Splunk & AI
PPTX
Splunk Discovery: Milan 2018 - Intro to Security Analytics Methods
PPTX
Taking Splunk to the Next Level - Manager
Splunk: How Machine Data Supports GDPR Compliance
GDPR Complaince: Don't Let SIEM BE Your Downfall
What you will take away from this session
Splunk Leadership Forum Wien - 20.05.2025
Splunk Discovery Dusseldorf: September 2017 - Security Session
SplunkLive! Munich 2018: Intro to Security Analytics Methods
March 2023 PNW User Group
Best Practices For Sharing Data Across The Enteprrise
Better Threat Analytics: From Getting Started to Cloud Security Analytics and...
Using Machine Learning and Analytics to Hunt for Security Threats - Webinar
Splunk Discovery: Warsaw 2018 - Intro to Security Analytics Methods
Splunk Discovery: Milan 2018 - Get More From Your Machine Data with Splunk AI
Security crawl walk run presentation mckay v1 2017
SplunkLive! Paris 2018: Splunk Overview
Elevate your Splunk Deployment by Better Understanding your Value Breakfast S...
Make Your SOC Work Smarter, Not Harder
The Splunk AISecOps Initiative - Splunk Security Roundtable: Zurich 2018
SplunkLive! Zurich 2018: Get More From Your Machine Data with Splunk & AI
Splunk Discovery: Milan 2018 - Intro to Security Analytics Methods
Taking Splunk to the Next Level - Manager

More from Splunk (20)

PDF
Splunk Security Update | Public Sector Summit Germany 2025
PDF
Building Resilience with Energy Management for the Public Sector
PDF
IT-Lagebild: Observability for Resilience (SVA)
PDF
Nach dem SOC-Aufbau ist vor der Automatisierung (OFD Baden-Württemberg)
PDF
Monitoring einer Sicheren Inter-Netzwerk Architektur (SINA)
PDF
Praktische Erfahrungen mit dem Attack Analyser (gematik)
PDF
Cisco XDR & Splunk SIEM - stronger together (DATAGROUP Cyber Security)
PDF
Security - Mit Sicherheit zum Erfolg (Telekom)
PDF
One Cisco - Splunk Public Sector Summit Germany April 2025
PDF
.conf Go 2023 - Data analysis as a routine
PDF
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
PDF
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
PDF
.conf Go 2023 - Raiffeisen Bank International
PDF
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
PDF
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
PDF
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
PDF
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
PDF
.conf go 2023 - De NOC a CSIRT (Cellnex)
PDF
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
PPTX
Splunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk Security Update | Public Sector Summit Germany 2025
Building Resilience with Energy Management for the Public Sector
IT-Lagebild: Observability for Resilience (SVA)
Nach dem SOC-Aufbau ist vor der Automatisierung (OFD Baden-Württemberg)
Monitoring einer Sicheren Inter-Netzwerk Architektur (SINA)
Praktische Erfahrungen mit dem Attack Analyser (gematik)
Cisco XDR & Splunk SIEM - stronger together (DATAGROUP Cyber Security)
Security - Mit Sicherheit zum Erfolg (Telekom)
One Cisco - Splunk Public Sector Summit Germany April 2025
.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - De NOC a CSIRT (Cellnex)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
Splunk - BMW connects business and IT with data driven operations SRE and O11y

Recently uploaded (20)

PDF
GamePlan Trading System Review: Professional Trader's Honest Take
PDF
Chapter 2 Digital Image Fundamentals.pdf
PPTX
Cloud computing and distributed systems.
PDF
NewMind AI Monthly Chronicles - July 2025
PDF
Electronic commerce courselecture one. Pdf
PDF
Transforming Manufacturing operations through Intelligent Integrations
PDF
[발표본] 너의 과제는 클라우드에 있어_KTDS_김동현_20250524.pdf
PDF
CIFDAQ's Teaching Thursday: Moving Averages Made Simple
PDF
cuic standard and advanced reporting.pdf
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PDF
KodekX | Application Modernization Development
PPTX
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
PDF
Reimagining Insurance: Connected Data for Confident Decisions.pdf
PPTX
breach-and-attack-simulation-cybersecurity-india-chennai-defenderrabbit-2025....
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PDF
CIFDAQ's Market Wrap: Ethereum Leads, Bitcoin Lags, Institutions Shift
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PDF
Modernizing your data center with Dell and AMD
PDF
Smarter Business Operations Powered by IoT Remote Monitoring
GamePlan Trading System Review: Professional Trader's Honest Take
Chapter 2 Digital Image Fundamentals.pdf
Cloud computing and distributed systems.
NewMind AI Monthly Chronicles - July 2025
Electronic commerce courselecture one. Pdf
Transforming Manufacturing operations through Intelligent Integrations
[발표본] 너의 과제는 클라우드에 있어_KTDS_김동현_20250524.pdf
CIFDAQ's Teaching Thursday: Moving Averages Made Simple
cuic standard and advanced reporting.pdf
Chapter 3 Spatial Domain Image Processing.pdf
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
KodekX | Application Modernization Development
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
Reimagining Insurance: Connected Data for Confident Decisions.pdf
breach-and-attack-simulation-cybersecurity-india-chennai-defenderrabbit-2025....
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
CIFDAQ's Market Wrap: Ethereum Leads, Bitcoin Lags, Institutions Shift
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
Modernizing your data center with Dell and AMD
Smarter Business Operations Powered by IoT Remote Monitoring

Splunk Forum Frankfurt - 15th Nov 2017 - GDPR / EU-DSGVO

  • 1. © 2017 SPLUNK INC. Splunk und die EU-DSGVO Matthias Maier | Director Product Marketing EMEA NOVEMBER 15 | FRANKFURT
  • 2. © 2017 SPLUNK INC. During the course of this presentation, we may make forward-looking statements regarding future events or the expected performance of the company. We caution you that such statements reflect our current expectations and estimates based on factors currently known to us and that actual events or results could differ materially. For important factors that may cause actual results to differ from those contained in our forward-looking statements, please review our filings with the SEC. The forward-looking statements made in this presentation are being made as of the time and date of its live presentation. If reviewed after its live presentation, this presentation may not contain current or accurate information. We do not assume any obligation to update any forward looking statements we may make. In addition, any information about our roadmap outlines our general product direction and is subject to change at any time without notice. It is for informational purposes only and shall not be incorporated into any contract or other commitment. Splunk undertakes no obligation either to develop the features or functionality described or to include any such feature or functionality in a future release. Splunk, Splunk>, Listen to Your Data, The Engine for Machine Data, Splunk Cloud, Splunk Light and SPL are trademarks and registered trademarks of Splunk Inc. in the United States and other countries. All other brand names, product names, or trademarks belong to their respective owners. © 2017 Splunk Inc. All rights reserved. Forward-Looking Statements
  • 3. © 2017 SPLUNK INC. GDPR Timelines ▶ The regulation is binding across all EU members states January, 2012 Commissioner Proposed reform to Data Protection regulation May, 2018 Effective Data Protection Framework comes into force (25th May, 2018) April, 2016 EU Council adopted new regulation December, 2015 EU agreement on regulation
  • 4. © 2017 SPLUNK INC. Key Features of GDPR/DSGVO Applicable to any company doing business in the European Union European Data Protection Harmonization Fines up to €20m or 4% of turnover Mandatory Privacy Impact Assessments Privacy by Design & Default 72 Hour Breach Notification Mandatory Data Erasure & Portability Consent for Personal Data Profiling
  • 5. © 2017 SPLUNK INC. Ein Datendiebstahl unter der neuen EU- DSGVO
  • 6. © 2017 SPLUNK INC. What if tomorrow is
  • 7. © 2017 SPLUNK INC. What if you’re responsible for Security?
  • 8. © 2017 SPLUNK INC. You wake up in the morning and you even haven’t had your coffee
  • 9. © 2017 SPLUNK INC. Your friendly Data Privacy Officer is on the phone
  • 10. © 2017 SPLUNK INC. Someone claims to sell PI data you hold
  • 11. © 2017 SPLUNK INC. There is data in the deep web It may be your data!
  • 12. © 2017 SPLUNK INC. He hangs up! What’s next?
  • 13. © 2017 SPLUNK INC. Your incident investigation plan kicks in
  • 14. © 2017 SPLUNK INC. DPO IT PR/Media Team Legal (CEO) Coordination
  • 15. © 2017 SPLUNK INC. Emergency call Emergency chatroom
  • 16. © 2017 SPLUNK INC. The fire alarm button is pulled down
  • 17. © 2017 SPLUNK INC. T- 72h
  • 18. © 2017 SPLUNK INC. Internal Leak External Leak Incident commander T- 70h
  • 19. © 2017 SPLUNK INC. “We need to investigate!!!” Reaching out to your security operations team T- 65h
  • 20. © 2017 SPLUNK INC. People and Processes T- 60h
  • 21. © 2017 SPLUNK INC. Where is that data stored in your environment? T- 55h
  • 22. © 2017 SPLUNK INC. First Action Is data still leaking? T- 45h
  • 23. © 2017 SPLUNK INC. How will you watch them? T- 40h
  • 24. © 2017 SPLUNK INC. Nice, structured, tidy data T- 39h
  • 25. © 2017 SPLUNK INC. Diving deep into the digital infrastructure T- 35h
  • 26. © 2017 SPLUNK INC. time series, in motion, unstructured Machine data 26 T- 34h
  • 27. © 2017 SPLUNK INC. It can be big data… T- 33h
  • 28. © 2017 SPLUNK INC. … it is lazy T- 32h
  • 29. © 2017 SPLUNK INC. … and it is hard to understand… T- 30h
  • 30. © 2017 SPLUNK INC. Take response actions to stop data leakage T- 20h
  • 31. © 2017 SPLUNK INC. Understand T- 15h
  • 32. © 2017 SPLUNK INC. How much data will be needed for this?
  • 33. © 2017 SPLUNK INC. Who processed your information? T- 10h
  • 34. © 2017 SPLUNK INC. Which user or systems was involved? T- 8h
  • 35. © 2017 SPLUNK INC. You know what you know You know what you don’t know Painting the picture T- 5h
  • 36. © 2017 SPLUNK INC. Maybe resulting in a non event? Puts the breach data subjects at risk?
  • 37. © 2017 SPLUNK INC. Do individuals need to be informed additionally? How sensitive was the data?
  • 38. © 2017 SPLUNK INC. before chatter explodes • Inform Authority • Inform affected Individuals • (Inform Public) As an organization you want to control the story T- 0h
  • 39. © 2017 SPLUNK INC. Worst Practice: German Bundestag "The Trojans are still active," confirmed SPIEGEL ONLINE. According to data from several sources familiar with the case, Bundestag data from the ”Parliament" network continue to flow in an unknown direction.
  • 40. © 2017 SPLUNK INC. Best Practice: ABTA Breach
  • 41. © 2017 SPLUNK INC. Best Practice: ABTA Breach
  • 43. © 2017 SPLUNK INC. 2+ weeks later out of the news Example ABTA Breach 43
  • 45. © 2017 SPLUNK INC. Someone knocks on your door T+ 1 Week
  • 46. © 2017 SPLUNK INC. Have you deployed “countermeasures appropriate to the risk”? Have you used “state of the art” best practices? Data Privacy Audits T+ 1 Week
  • 47. © 2017 SPLUNK INC. Massive Fines T+ 1 Week
  • 48. © 2017 SPLUNK INC. What did you know? When did you know? How did you know about it? Prove T+ 2 Weeks
  • 49. © 2017 SPLUNK INC. Logs become your digital fingerprints
  • 50. © 2017 SPLUNK INC. Why Splunk? Splunk can help
  • 51. © 2017 SPLUNK INC. Prove GDPR security controls are enforced Splunk helps to detect, prevent and investigate breaches Search and report on personal data processing What GDPR use cases does Splunk help solve? Breach Investigation Notification: 72 Hours
  • 52. © 2017 SPLUNK INC. Three Use Cases that bring different person’s on the same level and speak the same language, each: ▶ Real World Scenario (IT-Manager) ▶ Relevant GDPR Articles and what they mean (Data Privacy Officer) ▶ How machine data helps with (Splunk Champion) Whitepaper: How machine data helps with GDPR https://www.splunk.com/en_us/form/white-paper-how-machine-data-supports-gdpr-compliance.html https://www.splunk.com/de_de/form/wie-maschinendaten-die-eu-dsgvo.html https://www.splunk.com/fr_fr/form/les-donnees-machine-facilitent-la-conformite-au-rgpd.html
  • 53. © 2017 SPLUNK INC. Splunk Support for the GDPR Journey How to use Machine Data for GDPR Whitepaper outlining how machine data can support GDPR Splunk Data Obfuscation How to protect data using anonymisation, pseudonymisation & encryption in Splunk .conf Session – Angelo Brancato and Dirk Nitschke Splunk GDPR Support GDPR Workshop Map analytics capabilities to GDPR security monitoring & reporting needs How to handle log data in your SIEM under GDPR FAQ’s answered from Freddy Dezeure, Former Head of. CERT-EU .conf Session
  • 54. © 2017 SPLUNK INC.© 2017 SPLUNK INC. NOVEMBER 15 | FRANKFURT