SlideShare a Scribd company logo
Jan-Jaap Oosterwijk
Technology Evangelist
Predictive Monitoring &
Efficient Incident Response
Tuesday, 20 November, 2018
DeFabrique, Utrecht, the Netherlands
Constantin Bajireanu
Manager, Service
Operations Center
SplunkLive! Utrecht 2018 - Customer presentation: Irdeto
70% OF EMPLOYEES ARE IN
ENGINEERING/RESEARCH/
DEVELOPMENT
+5 BILLION DEVICES AND
APPLICATIONS SECURED
SERVING 400+ CUSTOMERS
IN 75+ COUNTRIES
236 PATENTS & 268 PATENTS
PENDING
IRDETO IS THE WORLD
LEADER IN DIGITAL
PLATFORM SECURITY
NEARLY 1,000 SECURITY
EXPERTS EMPLOYED
+15 LOCATIONS COVERING
6 CONTINENTS
End-to-End Irdeto 360 Security Portfolio
Production Content Aggregation Distribution and
promotion
Consumption
Content Owners Broadcasters Distributors Devices ConsumerSport Rights Holders
IRDETO’S VISION
To build a secure future, where
people can embrace connectivity
without fear.
Irdeto protects platforms and
applications for media &
entertainment, games,
connected transport and IoT
connected industries.
6
Service Operations Center
Incident Management
▶ Incident registration
▶ Triaging and initial troubleshooting
▶ Standard resolution procedures
▶ Escalation
Monitoring
▶ Service availability
▶ Capacity
▶ Health-check and Performance
How We Got Started
▶ In 2013 we started offering access to our products as managed
service and established a 24/7 Service Operations Center.
▶ Build monitoring framework
▶ Define and implement incident management process
▶ Monitoring infrastructure is important... but not enough.. by far.
▶ Troubleshooting requires logs... logs... and more logs.
Our past monitoring framework
Applications
Networks
Servers
Public Cloud
Web
Services/Global
Events
Alerts
Logs
Service
Operations
Center
Monitoring
Incident
Logs
Logs
Troubleshooting
Metrics
Events
Logs
Our present monitoring framework
Applications
Networks
Servers
Public Cloud
Web
Services/Global
Logs
Service
Operations
Center
Monitoring
Logs
Logs
Metrics
Events
Logs
Alerts
Alerts
Events
Incident
Dashboards
Troubleshooting
10
Present
▶ Using Splunk since 2013
▶ Currently at 100Gb a day
▶ What’s in Splunk today
▶ Application logs
▶ Web-server logs
▶ AWS elb/alb logs
▶ Infrastructure logs
▶ Some metrics
Ingest
Measure
Investigate
Dashboard
Alert
Set Treshold
Observe Trend
Alert
Repeat
11
What’s been monitored
▶ Business metrics
▶ Number or requests
▶ Error rate
▶ Response time
▶ Trends
▶ Sudden drop in traffic
▶ Sudden increase in errors
Our Splunk Infrastructure - past
AWS
AWS Region A AWS Region B
Our Splunk Infrastructure - current
AWS
AWS Region A AWS Region B
Few facts
▶ 328 clients
▶ 340 dashboards
▶ 84k alerts-scheduled / day
▶ 1.44M searches / day
What’s next?
▶ More logs into Splunk
▶ Ingest metrics into Splunk
▶ Introduce ITSI
▶Correlation of events during incident
investigation
▶Dashboards, Dashboards, Dashboards
▶Anomaly detection
▶ML
▶ Enriched alerts with VictorOps
Machine
learning
Our future monitoring framework
Applications
Networks
Servers
Public Cloud
Web
Services/Global
Logs
Service
Operations
Center
Monitoring
Logs
Logs
Troubleshooting
Metrics
Events
Logs
Alerts
Events
Incident
Dashboards
Predictive
Analytics
Preventative
Maintenance
ITSI
© 2018 SPLUNK INC.
1. Monitor what’s important for your
customers
2. Use the top-down approach with KPI
definition.
3. Aggregate, Trend and Conquer
Key
Takeaways
THANK YOU

More Related Content

PPTX
Partner Exec Summit 2018 - Frankfurt: AIOps
PPTX
SplunkLive! Utrecht 2018 - Customer presentation: Dutch Tax Office
PPTX
How a Leading Saudi Bank Matured Security to Better Partner the Business
PPTX
Partner Exec Summit 2018 - Frankfurt: Splunk for Industrial IoT
PPTX
Partner Exec Summit 2018 - Frankfurt: Splunk Business Flow Beta
PPTX
SplunkLive! Stockholm 2018 - Customer presentation: Telia
PPTX
Partner Exec Summit 2018 - Frankfurt: Analytics-driven Security und SOAR
PPTX
Gartner Symposium 2018: BMW Group Presentation
Partner Exec Summit 2018 - Frankfurt: AIOps
SplunkLive! Utrecht 2018 - Customer presentation: Dutch Tax Office
How a Leading Saudi Bank Matured Security to Better Partner the Business
Partner Exec Summit 2018 - Frankfurt: Splunk for Industrial IoT
Partner Exec Summit 2018 - Frankfurt: Splunk Business Flow Beta
SplunkLive! Stockholm 2018 - Customer presentation: Telia
Partner Exec Summit 2018 - Frankfurt: Analytics-driven Security und SOAR
Gartner Symposium 2018: BMW Group Presentation

What's hot (20)

PDF
Splunk IT Service Intelligence Overview - AIOps Roundtable Bern
PDF
AIOps Roundtable Munich 2018: Intro to Splunk's ML Technologies
PPTX
Travis Perkins at Gartner Risk and Security Management Summit Europe
PPTX
Splunk at Airbus
PPTX
Partner Exec Summit 2018 - Frankfurt: Partner Brauchen Wir Nicht
PPTX
SplunkLive! Utrecht 2018 - Customer presentation: POST Luxembourg
PPTX
Splunk Discovery: Milan 2018 - Delivering New Visibility and Analytics for IT...
PPTX
SplunkLive! Paris 2018: Splunk Overview
PPTX
SplunkLive! Stockholm 2019 - Customer presentation: ISS
PPTX
Splunk for ITOA Breakout Session
PPTX
Splunk Discovery: Milan 2018 - Splunk Overview
PPTX
SplunkLive! Utrecht - Keynote - Rick Fitz
PPTX
Splunk Internet of Things Roundtable 2015
PPTX
Splunk Phantom SOAR Roundtable
PPTX
SplunkLive! Paris 2018: Integrating Metrics and Logs
PPTX
Splunk for ITOA Breakout Session
PPTX
SplunkLive! Paris 2018: Plenary Session
PDF
Splunk for Industrial Data and the Internet of Things
PPTX
The Splunk AISecOps Initiative - Splunk Security Roundtable: Zurich 2018
PPTX
Splunk Discovery: Milan 2018 - Intro to Security Analytics Methods
Splunk IT Service Intelligence Overview - AIOps Roundtable Bern
AIOps Roundtable Munich 2018: Intro to Splunk's ML Technologies
Travis Perkins at Gartner Risk and Security Management Summit Europe
Splunk at Airbus
Partner Exec Summit 2018 - Frankfurt: Partner Brauchen Wir Nicht
SplunkLive! Utrecht 2018 - Customer presentation: POST Luxembourg
Splunk Discovery: Milan 2018 - Delivering New Visibility and Analytics for IT...
SplunkLive! Paris 2018: Splunk Overview
SplunkLive! Stockholm 2019 - Customer presentation: ISS
Splunk for ITOA Breakout Session
Splunk Discovery: Milan 2018 - Splunk Overview
SplunkLive! Utrecht - Keynote - Rick Fitz
Splunk Internet of Things Roundtable 2015
Splunk Phantom SOAR Roundtable
SplunkLive! Paris 2018: Integrating Metrics and Logs
Splunk for ITOA Breakout Session
SplunkLive! Paris 2018: Plenary Session
Splunk for Industrial Data and the Internet of Things
The Splunk AISecOps Initiative - Splunk Security Roundtable: Zurich 2018
Splunk Discovery: Milan 2018 - Intro to Security Analytics Methods
Ad

Similar to SplunkLive! Utrecht 2018 - Customer presentation: Irdeto (20)

PPTX
Wed Sponsor Press Conf - 10.15
PPTX
Io t analytics panel
PDF
IoT Cloud Service & Partner IoT Solution
PDF
Steps to Scale Internet of Things (IoT)
PPTX
SplunkLive! Zurich 2018: Integrating Metrics and Logs
PDF
How to maximize profit from IoT by using data platform - Albert Lewandowski, ...
PDF
The IoT Food Chain – Picking the Right Dining Partner is Important with Dean ...
PPTX
IoT World Forum Press Conference - 10.14.2014
PPTX
Learn how to make your IoT pilot projects and POCs successful
PPTX
IoT Implementation and Security Best Practices
PDF
Securing Your Digital Transformation: Cybersecurity and You
PDF
Bitrock manufacturing
PPTX
Microservices: The Future-Proof Framework for IoT
PDF
Challenges & Applications in the Industrial Internet of Things (IoT)
PDF
Oracle Cloud Café IOT 12 avril 2016
PDF
Oracle Cloud Café IoT 12-APR-2016
PDF
Successful Industrial IoT Patterns
PDF
Framework and Product Comparison for Big Data Log Analytics and ITOA
PDF
Challenges & Application In Industrial IoT by Sachin Pukale, machinepulse
PPTX
Azure - a secure platform for source-to-pay
Wed Sponsor Press Conf - 10.15
Io t analytics panel
IoT Cloud Service & Partner IoT Solution
Steps to Scale Internet of Things (IoT)
SplunkLive! Zurich 2018: Integrating Metrics and Logs
How to maximize profit from IoT by using data platform - Albert Lewandowski, ...
The IoT Food Chain – Picking the Right Dining Partner is Important with Dean ...
IoT World Forum Press Conference - 10.14.2014
Learn how to make your IoT pilot projects and POCs successful
IoT Implementation and Security Best Practices
Securing Your Digital Transformation: Cybersecurity and You
Bitrock manufacturing
Microservices: The Future-Proof Framework for IoT
Challenges & Applications in the Industrial Internet of Things (IoT)
Oracle Cloud Café IOT 12 avril 2016
Oracle Cloud Café IoT 12-APR-2016
Successful Industrial IoT Patterns
Framework and Product Comparison for Big Data Log Analytics and ITOA
Challenges & Application In Industrial IoT by Sachin Pukale, machinepulse
Azure - a secure platform for source-to-pay
Ad

More from Splunk (20)

PDF
Splunk Leadership Forum Wien - 20.05.2025
PDF
Splunk Security Update | Public Sector Summit Germany 2025
PDF
Building Resilience with Energy Management for the Public Sector
PDF
IT-Lagebild: Observability for Resilience (SVA)
PDF
Nach dem SOC-Aufbau ist vor der Automatisierung (OFD Baden-Württemberg)
PDF
Monitoring einer Sicheren Inter-Netzwerk Architektur (SINA)
PDF
Praktische Erfahrungen mit dem Attack Analyser (gematik)
PDF
Cisco XDR & Splunk SIEM - stronger together (DATAGROUP Cyber Security)
PDF
Security - Mit Sicherheit zum Erfolg (Telekom)
PDF
One Cisco - Splunk Public Sector Summit Germany April 2025
PDF
.conf Go 2023 - Data analysis as a routine
PDF
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
PDF
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
PDF
.conf Go 2023 - Raiffeisen Bank International
PDF
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
PDF
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
PDF
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
PDF
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
PDF
.conf go 2023 - De NOC a CSIRT (Cellnex)
PDF
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
Splunk Leadership Forum Wien - 20.05.2025
Splunk Security Update | Public Sector Summit Germany 2025
Building Resilience with Energy Management for the Public Sector
IT-Lagebild: Observability for Resilience (SVA)
Nach dem SOC-Aufbau ist vor der Automatisierung (OFD Baden-Württemberg)
Monitoring einer Sicheren Inter-Netzwerk Architektur (SINA)
Praktische Erfahrungen mit dem Attack Analyser (gematik)
Cisco XDR & Splunk SIEM - stronger together (DATAGROUP Cyber Security)
Security - Mit Sicherheit zum Erfolg (Telekom)
One Cisco - Splunk Public Sector Summit Germany April 2025
.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - De NOC a CSIRT (Cellnex)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)

Recently uploaded (20)

PDF
agentic-ai-and-the-future-of-autonomous-systems.pdf
PDF
Cloud-Migration-Best-Practices-A-Practical-Guide-to-AWS-Azure-and-Google-Clou...
PPTX
breach-and-attack-simulation-cybersecurity-india-chennai-defenderrabbit-2025....
PDF
Transforming Manufacturing operations through Intelligent Integrations
PDF
Building High-Performance Oracle Teams: Strategic Staffing for Database Manag...
PDF
Why Endpoint Security Is Critical in a Remote Work Era?
PDF
Orbitly Pitch Deck|A Mission-Driven Platform for Side Project Collaboration (...
PDF
solutions_manual_-_materials___processing_in_manufacturing__demargo_.pdf
PDF
How Onsite IT Support Drives Business Efficiency, Security, and Growth.pdf
PPTX
The-Ethical-Hackers-Imperative-Safeguarding-the-Digital-Frontier.pptx
PPTX
Comunidade Salesforce São Paulo - Desmistificando o Omnistudio (Vlocity)
PPTX
Telecom Fraud Prevention Guide | Hyperlink InfoSystem
PPTX
ABU RAUP TUGAS TIK kelas 8 hjhgjhgg.pptx
PDF
Software Development Methodologies in 2025
PDF
Security features in Dell, HP, and Lenovo PC systems: A research-based compar...
PDF
madgavkar20181017ppt McKinsey Presentation.pdf
PDF
A Day in the Life of Location Data - Turning Where into How.pdf
PDF
Doc9.....................................
PDF
Event Presentation Google Cloud Next Extended 2025
PDF
This slide provides an overview Technology
agentic-ai-and-the-future-of-autonomous-systems.pdf
Cloud-Migration-Best-Practices-A-Practical-Guide-to-AWS-Azure-and-Google-Clou...
breach-and-attack-simulation-cybersecurity-india-chennai-defenderrabbit-2025....
Transforming Manufacturing operations through Intelligent Integrations
Building High-Performance Oracle Teams: Strategic Staffing for Database Manag...
Why Endpoint Security Is Critical in a Remote Work Era?
Orbitly Pitch Deck|A Mission-Driven Platform for Side Project Collaboration (...
solutions_manual_-_materials___processing_in_manufacturing__demargo_.pdf
How Onsite IT Support Drives Business Efficiency, Security, and Growth.pdf
The-Ethical-Hackers-Imperative-Safeguarding-the-Digital-Frontier.pptx
Comunidade Salesforce São Paulo - Desmistificando o Omnistudio (Vlocity)
Telecom Fraud Prevention Guide | Hyperlink InfoSystem
ABU RAUP TUGAS TIK kelas 8 hjhgjhgg.pptx
Software Development Methodologies in 2025
Security features in Dell, HP, and Lenovo PC systems: A research-based compar...
madgavkar20181017ppt McKinsey Presentation.pdf
A Day in the Life of Location Data - Turning Where into How.pdf
Doc9.....................................
Event Presentation Google Cloud Next Extended 2025
This slide provides an overview Technology

SplunkLive! Utrecht 2018 - Customer presentation: Irdeto

  • 1. Jan-Jaap Oosterwijk Technology Evangelist Predictive Monitoring & Efficient Incident Response Tuesday, 20 November, 2018 DeFabrique, Utrecht, the Netherlands Constantin Bajireanu Manager, Service Operations Center
  • 3. 70% OF EMPLOYEES ARE IN ENGINEERING/RESEARCH/ DEVELOPMENT +5 BILLION DEVICES AND APPLICATIONS SECURED SERVING 400+ CUSTOMERS IN 75+ COUNTRIES 236 PATENTS & 268 PATENTS PENDING IRDETO IS THE WORLD LEADER IN DIGITAL PLATFORM SECURITY NEARLY 1,000 SECURITY EXPERTS EMPLOYED +15 LOCATIONS COVERING 6 CONTINENTS
  • 4. End-to-End Irdeto 360 Security Portfolio Production Content Aggregation Distribution and promotion Consumption Content Owners Broadcasters Distributors Devices ConsumerSport Rights Holders
  • 5. IRDETO’S VISION To build a secure future, where people can embrace connectivity without fear. Irdeto protects platforms and applications for media & entertainment, games, connected transport and IoT connected industries.
  • 6. 6 Service Operations Center Incident Management ▶ Incident registration ▶ Triaging and initial troubleshooting ▶ Standard resolution procedures ▶ Escalation Monitoring ▶ Service availability ▶ Capacity ▶ Health-check and Performance
  • 7. How We Got Started ▶ In 2013 we started offering access to our products as managed service and established a 24/7 Service Operations Center. ▶ Build monitoring framework ▶ Define and implement incident management process ▶ Monitoring infrastructure is important... but not enough.. by far. ▶ Troubleshooting requires logs... logs... and more logs.
  • 8. Our past monitoring framework Applications Networks Servers Public Cloud Web Services/Global Events Alerts Logs Service Operations Center Monitoring Incident Logs Logs Troubleshooting Metrics Events Logs
  • 9. Our present monitoring framework Applications Networks Servers Public Cloud Web Services/Global Logs Service Operations Center Monitoring Logs Logs Metrics Events Logs Alerts Alerts Events Incident Dashboards Troubleshooting
  • 10. 10 Present ▶ Using Splunk since 2013 ▶ Currently at 100Gb a day ▶ What’s in Splunk today ▶ Application logs ▶ Web-server logs ▶ AWS elb/alb logs ▶ Infrastructure logs ▶ Some metrics Ingest Measure Investigate Dashboard Alert Set Treshold Observe Trend Alert Repeat
  • 11. 11 What’s been monitored ▶ Business metrics ▶ Number or requests ▶ Error rate ▶ Response time ▶ Trends ▶ Sudden drop in traffic ▶ Sudden increase in errors
  • 12. Our Splunk Infrastructure - past AWS AWS Region A AWS Region B
  • 13. Our Splunk Infrastructure - current AWS AWS Region A AWS Region B
  • 14. Few facts ▶ 328 clients ▶ 340 dashboards ▶ 84k alerts-scheduled / day ▶ 1.44M searches / day
  • 15. What’s next? ▶ More logs into Splunk ▶ Ingest metrics into Splunk ▶ Introduce ITSI ▶Correlation of events during incident investigation ▶Dashboards, Dashboards, Dashboards ▶Anomaly detection ▶ML ▶ Enriched alerts with VictorOps
  • 16. Machine learning Our future monitoring framework Applications Networks Servers Public Cloud Web Services/Global Logs Service Operations Center Monitoring Logs Logs Troubleshooting Metrics Events Logs Alerts Events Incident Dashboards Predictive Analytics Preventative Maintenance ITSI
  • 17. © 2018 SPLUNK INC. 1. Monitor what’s important for your customers 2. Use the top-down approach with KPI definition. 3. Aggregate, Trend and Conquer Key Takeaways