Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Home Cybersecurity
    • Cybersecurity

    Splunk Updates Enterprise Security, User Behavior Analytics Platforms

    Written by

    Sean Michael Kerner
    Published September 27, 2016
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      Splunk announced the latest versions of its security technologies on Sept. 27 during the company’s .conf2016 event. Among the updated releases are Splunk Enterprise Security (ES) 4.5 and Splunk User Behavior Analytics (UBA) 3.0. The new releases are designed to make it easier for enterprises to collect and identify potential security risks and incidents.

      “We’re continuing to take a very analytics-driven approach to security,” Haiyan Song, senior vice president of security markets at Splunk, told eWEEK.

      The Splunk ES product is a security information and event management (SIEM) platform that can help organizations derive insights collected from log, endpoint and network information. Among the new features in ES 4.5 is a capability the company is calling a “Glass Tables” view for improved data visualization. The Glass Tables technology originated in the Splunk IT Service Intelligence platform as a way to enable organizations to generate multi-layer views of services and operations.

      “Glass Tables really gives the business users that don’t want to get into the bits an at-a-glance view to understand the key metrics,” Song said.

      The Splunk UBA product came to the company by way of the $190 million acquisition of behavioral analytics vendor Caspida in July 2015. In a video interview with eWEEK in 2015, Muddu Sudhakar, former CEO of Caspida, explained that in order to do behavioral analytics, there needs to be data, which is what Splunk’s platform provides. Since the acquisition, Splunk has enhanced the Caspida technology.

      “When Caspida was acquired, it was a small startup, and we had to elevate the enterprise readiness of the product,” Song said.

      In the last year, Splunk has been working on improving scalability and reliability. The Splunk UBA 3.0 release continues to improve upon the technology with additional integrations and the ability to be updated quicker than before. Song said that there is a need to rapidly update UBA with new content more often than a typical enterprise will want to update the underlying software. To that end, UBA 3.0 now separates out the content—that is, the behavioral and policy models—from the underlying platform. The content can now be iterated more rapidly via a subscription-based model that provides regular updates.

      “The content piece includes things that people can author without needing to have a developer change the product,” Song explained.

      Items that can be authored include new detection rules as well as data connectors; that said, the new content piece of UBA 3.0 does not currently enable a user to author a new user behavior detection algorithm, though Song said that could be part of a future update, Song said.

      “We want to help customers to build a security nerve center, and Splunk can be a big piece of that,” Song said. You will see us adding automation and integration, and we’ll continue to tighten up the integration between ES and UBA.”

      One example is that UBA today has the capability to understand and correlate user sessions across multiple devices; that same user context can be helpful for security investigation conducted using ES, Song said.

      Sean Michael Kerner is a senior editor at eWEEK and InternetNews.com. Follow him on Twitter @TechJournalist.

      Sean Michael Kerner
      Sean Michael Kerner
      Sean Michael Kerner is an Internet consultant, strategist, and writer for several leading IT business web sites.

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×