SlideShare a Scribd company logo
© 2024 SPLUNK INC.
Public Sector Summit 2024
Die Rolle von KI
in der digitalen
Widerstandsfähigkeit
© 2024 SPLUNK INC.
Philipp Drieger
Global Principal Machine Learning Architect
09+ years with Splunk
14+ years specialization in “AI”
21+ years experience in software
04 splunkbase apps with 36k+ downloads
04 patent contributions
Forward-
looking
statements
This presentation may contain forward-looking statements regarding future events, plans or the expected financial
performance of our company, including our expectations regarding our products, technology, strategy, customers,
markets, acquisitions and investments. These statements reflect management’s current expectations, estimates and
assumptions based on the information currently available to us. These forward-looking statements are not
guarantees of future performance and involve significant risks, uncertainties and other factors that may cause our
actual results, performance or achievements to be materially different from results, performance or achievements
expressed or implied by the forward-looking statements contained in this presentation.
For additional information about factors that could cause actual results to differ materially from those described in
the forward-looking statements made in this presentation, please refer to our periodic reports and other filings with
the SEC, including the risk factors identified in our most recent quarterly reports on Form 10-Q and annual reports on
Form 10-K, copies of which may be obtained by visiting the Splunk Investor Relations website at
www.investors.splunk.com or the SEC's website at www.sec.gov. The forward-looking statements made in this
presentation are made as of the time and date of this presentation. If reviewed after the initial presentation, even if
made available by us, on our website or otherwise, it may not contain current or accurate information. We disclaim
any obligation to update or revise any forward-looking statement based on new information, future events or
otherwise, except as required by applicable law.
In addition, any information about our roadmap outlines our general product direction and is subject to change at
any time without notice. It is for informational purposes only and shall not be incorporated into any contract or other
commitment. We undertake no obligation either to develop the features or functionalities described, in beta or in
preview (used interchangeably), or to include any such feature or functionality in a future release.
Splunk, Splunk> and Turn Data Into Doing are trademarks and registered trademarks of Splunk Inc. in the United
States and other countries. All other brand names, product names or trademarks belong to their respective owners.
© 2024 Splunk Inc. All rights reserved.
© 2024 SPLUNK INC.
© 2024 SPLUNK INC.
What is AI and Machine Learning?
Artificial Intelligence (AI) - capability of a computer system to mimic
human cognitive functions such as learning and problem-solving
Machine Learning (ML) - subset of AI that uses mathematical models
of data to help a computer learn without direct instruction
Deep Learning (DL) - subset of ML that uses computationally intense
ML models inspired by the “deep” layers of the biological neural
network of the human brain to accomplish complex goals like image
recognition Example: Self driving car recognizes stop sign
Generative AI - subset of DL that involves the use of algorithms and
techniques to generate new data, things that have not existed in the
world before being created by the models Example: OpenAI’s ChatGPT
Definitions
Machine
Learning (ML)
Deep Learning
(DL)
Generative AI
(GenAI)
Artificial
Intelligence
(AI)
© 2024 SPLUNK INC.
AI Brings Both New Threats and
Opportunities
● Data Privacy
● Inaccurate Model Outputs
● Expanded Attack Surface Area
● Detect Important Events
● Provide Context
● Free Users from Basic Tasks
Threats Opportunities
© 2024 SPLUNK INC.
Generative AI
is just one of
many AI tools
for common
SecOps,
ITOps, and
engineering
challenges
Embedded
capabilities within
products
Customizable
ML, Deep
Learning, and
Data Science
Tools
AI Libraries
and APIs
for
Developers
Generative
AI Chatbots
Guided
Assistive
Workflows
Today’s generative AI
may not always be the
best tool for the job
AI
Tools
© 2024 SPLUNK INC.
© 2024 SPLUNK INC.
Why should
you use
Splunk AI?
© 2023 SPLUNK INC.
Companies that adopt
machine learning are
twice as likely (66%) to
be prepared for the
demands of a recession,
compared to those that
do not (34%)
Taken from the Digital Resilience Pays Off report
Driving Digital
Resilience
© 2024 SPLUNK INC.
Benefits of Using Machine Learning
Common outcomes from successful ML projects
Increase Efficiency
Reduce Manual
Processes
Identify ‘Unknown
Unknowns’
© 2024 SPLUNK INC.
We have been implementing AI for
years… and so did our customers!
Splunk has long been committed to helping customers use AI
Leader in 2022
GigaOm Radar
for AIOps
A Leader in the
AIOps Radar for
4 consecutive
years
Highest Scoring
Product in
Selecting an
AIOps Solution for
2 years
Leader in 2022
GigaOm Radar
for AIOps
Market Leader:
Vendor Selection
Matrix™ AIOps
Solutions
© 2024 SPLUNK INC.
Our Approach to AI is
Driven by Three Principles
© 2024 SPLUNK INC.
Foundational and Generative AI
Combining predictive analytics, accelerated investigation, and workflow enhancements
Correlate and
Diagnose
Aggregate and analyze all
data to investigate and identify
root causes
Detect and
Predict
Real-time, streaming
analysis to detect
anomalies and
forecast trends
Make Everyone an
Expert
Reduce need for environment
and tool expertise by simplifying
content creation and investigation
workflows
Foundational AI Capabilities
Generative AI Capabilities
© 2024 SPLUNK INC.
Using AI
for Security
© 2024 SPLUNK INC.
— CISO, Higher Education,
26,000 employees
“We learn in cyber after
the fact, with AI and GAI
we can be more
proactive, and it may
help us with skills
shortages.”
Love it or hate it
— AI is here to stay
● 70% of CISOs believe AI gives the advantage
to attackers over defenders. Yet,
● Automation is underway, and AI will accelerate it
further.
are already experimenting with it for
cyber defense.
of CISOs have extensively or
moderately automated their
processes, and AI will only increase
that percentage in the future.
Source: Splunk CISO Report 2023
© 2024 SPLUNK INC.
Identifying User
Access Anomalies Using ML for
Threat Hunting
Detecting
Malicious
Patterns of
Network
Traffic
Detecting
Domain
Generating
Algorithms
(DGAs)
Finding
Command Line
Anomalies
Detecting
Fraudulent
Activity
AI for Security
Predicting Data
Downtime
Spotting
Potential Insider
Threats
Demystifying
Security Searches
with the Splunk AI
Assistant
© 2024 SPLUNK INC.
Model Assisted Threat Hunting
Prepare, Execute and Act with Knowledge
Prepare Act
Execute
Knowledge
Select Topic
Research Topic
Identify Datasets
Select Algorithms
Gather Data
Pre-process Data
Develop Model
Apply Model
Analyse
Refine
Escalate Critical Findings
Preserve Hunt
Document findings
Create Detections
Re-add Topic to Backlog
Communicate Findings
© 2024 SPLUNK INC.
© 2024 SPLUNK INC.
© 2024 SPLUNK INC.
Using AI for
Observability
© 2024 SPLUNK INC.
Forecasting
Resource
Utilization
Detecting Service
Performance
Issues
User
Experience
Monitoring
Cell Tower
Monitoring
Predictive
Maintenance
Noise
Reduction
AI for Observability
Predicting Data
Downtime
Geohazards
Monitoring
https://www.splunk.com/en_us/form/splunk-machine-learning-for-observability-use-case-guide.html
© 2024 SPLUNK INC.
Detecting
Service
Performance
Issues
https://www.splunk.com/en_us/form/digital-resilience-pays-off.html
Each hour of
downtime can cost
$365,000
© 2024 SPLUNK INC.
Send
data from systems,
devices, and people
Define KPIs
in iterations as you
explore and
understand your data
Baseline
with AI assistants and
react quickly to
changing circumstances
Detecting Service Performance Issues
Splunk’s Approach
Predict
negative impacts
before they
happen with AI
Take Actions
that drive impact
across your
business
© 2024 SPLUNK INC.
Sounds great,
what’s the
catch?
78% of Machine
Learning
Projects:
© 2024 SPLUNK INC.
Developing a Model
Collect/refine data
Feature
engineering
Label, visualise,
analyze data
Build, buy, train
or customise a
model
Assess the
business problem
and value
Continuously assess
model & infrastructure
performance
Deploy model
to production
Re-train
production
model
Optimise the
model,
assess
infrastructure
What Operationalisation actually looks like
© 2024 SPLUNK INC.
Complexity
Value
Develop /
train a
model
Label,
visualise,
analyse data
Feature
engineering
Collect /
refine data
Deploy
model to
production
Re-train
production
model
Continuously
assess
performance
Experimentation
Productionisation
Optimise &
assess
Developing a Model
What Operationalisation actually looks like
© 2024 SPLUNK INC.
Complexity
Value
Collect /
refine data
Deploy
model to
production
Re-train
production
model
Continuously
assess
performance
Productionisation
Develop /
train a
model
Label,
visualise,
analyse data
Feature
engineering
Experimentation
Optimise &
assess
Mind the
gap
Developing a Model
What Operationalisation actually looks like
© 2024 SPLUNK INC.
So What Should I Do About It?
Set clear
objectives
Assess
integration
points
Keep it
simple
What are the
outcomes you are
trying to achieve?
Make sure you are
adopting AI in places
that benefit the
business
Make sure what you
develop during an
experiment will
translate into
production code
Quite often simple
statistics can provide
approximations that
are almost as good as
an advanced deep
learning algorithm
© 2024 SPLUNK INC.
https://www.splunk.com/en_us/form/security-use-case-enhanced-by-ai-and-ml.html
© 2024 SPLUNK INC.
Thank You

More Related Content

Similar to Die Rolle von KI in der digitalen Widerstandsfähigkeit - Splunk Public Sector Summit 2024

SplunkLive! Zurich 2018: Get More From Your Machine Data with Splunk & AI
SplunkLive! Zurich 2018: Get More From Your Machine Data with Splunk & AISplunkLive! Zurich 2018: Get More From Your Machine Data with Splunk & AI
SplunkLive! Zurich 2018: Get More From Your Machine Data with Splunk & AI
Splunk
 
Power the SOC of the Future with scale, speed and choice - Splunk Public Sect...
Power the SOC of the Future with scale, speed and choice - Splunk Public Sect...Power the SOC of the Future with scale, speed and choice - Splunk Public Sect...
Power the SOC of the Future with scale, speed and choice - Splunk Public Sect...
Splunk EMEA
 
DN18 | Applied Machine Learning in Cybersecurity: Detect malicious DGA Domain...
DN18 | Applied Machine Learning in Cybersecurity: Detect malicious DGA Domain...DN18 | Applied Machine Learning in Cybersecurity: Detect malicious DGA Domain...
DN18 | Applied Machine Learning in Cybersecurity: Detect malicious DGA Domain...
Dataconomy Media
 
Splunk-Presentation
Splunk-Presentation Splunk-Presentation
Splunk-Presentation
PrasadThorat23
 
IoT Analytics @ splunk
IoT Analytics @ splunkIoT Analytics @ splunk
IoT Analytics @ splunk
Splunk
 
SplunkLive! Zurich 2017 - Advanced Analytics / Machine Learning
SplunkLive! Zurich 2017 - Advanced Analytics / Machine LearningSplunkLive! Zurich 2017 - Advanced Analytics / Machine Learning
SplunkLive! Zurich 2017 - Advanced Analytics / Machine Learning
Splunk
 
SplunkLive! Munich 2018: Predictive, Proactive, and Collaborative ML with IT ...
SplunkLive! Munich 2018: Predictive, Proactive, and Collaborative ML with IT ...SplunkLive! Munich 2018: Predictive, Proactive, and Collaborative ML with IT ...
SplunkLive! Munich 2018: Predictive, Proactive, and Collaborative ML with IT ...
Splunk
 
December Bengaluru Splunk User Group Meetup
December Bengaluru Splunk User Group MeetupDecember Bengaluru Splunk User Group Meetup
December Bengaluru Splunk User Group Meetup
kamlesh2410
 
Splunk Überblick
Splunk ÜberblickSplunk Überblick
Splunk Überblick
Splunk
 
Using Machine Learning and Analytics to Hunt for Security Threats - Webinar
Using Machine Learning and Analytics to Hunt for Security Threats - WebinarUsing Machine Learning and Analytics to Hunt for Security Threats - Webinar
Using Machine Learning and Analytics to Hunt for Security Threats - Webinar
Splunk
 
SplunkLive! Overview
SplunkLive! OverviewSplunkLive! Overview
SplunkLive! Overview
Georg Knon
 
Splunk enterprise security_splunk_bengaluru_user_group_2020_10_03
Splunk enterprise security_splunk_bengaluru_user_group_2020_10_03Splunk enterprise security_splunk_bengaluru_user_group_2020_10_03
Splunk enterprise security_splunk_bengaluru_user_group_2020_10_03
NiketNilay
 
SplunkLive! Frankfurt 2018 - Predictive, Proactive, and Collaborative ML with...
SplunkLive! Frankfurt 2018 - Predictive, Proactive, and Collaborative ML with...SplunkLive! Frankfurt 2018 - Predictive, Proactive, and Collaborative ML with...
SplunkLive! Frankfurt 2018 - Predictive, Proactive, and Collaborative ML with...
Splunk
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
Splunk
 
SplunkLive! Paris 2016 - Plenary session
SplunkLive! Paris 2016 - Plenary sessionSplunkLive! Paris 2016 - Plenary session
SplunkLive! Paris 2016 - Plenary session
Splunk
 
SplunkLive! Paris 2018: Delivering New Visibility And Analytics For IT Operat...
SplunkLive! Paris 2018: Delivering New Visibility And Analytics For IT Operat...SplunkLive! Paris 2018: Delivering New Visibility And Analytics For IT Operat...
SplunkLive! Paris 2018: Delivering New Visibility And Analytics For IT Operat...
Splunk
 
How to Move from Monitoring to Observability, On-Premises and in a Multi-Clou...
How to Move from Monitoring to Observability, On-Premises and in a Multi-Clou...How to Move from Monitoring to Observability, On-Premises and in a Multi-Clou...
How to Move from Monitoring to Observability, On-Premises and in a Multi-Clou...
Splunk
 
SplunkLive! What's New in Splunk 6 Session
SplunkLive! What's New in Splunk 6 SessionSplunkLive! What's New in Splunk 6 Session
SplunkLive! What's New in Splunk 6 Session
Splunk
 
Mission possible splunk+paloaltonetworks_6_2015
Mission possible splunk+paloaltonetworks_6_2015Mission possible splunk+paloaltonetworks_6_2015
Mission possible splunk+paloaltonetworks_6_2015
Splunk
 
Mission Possible: Detect and Prevent CyberAttacks with Splunk and Palo Alto N...
Mission Possible: Detect and Prevent CyberAttacks with Splunk and Palo Alto N...Mission Possible: Detect and Prevent CyberAttacks with Splunk and Palo Alto N...
Mission Possible: Detect and Prevent CyberAttacks with Splunk and Palo Alto N...
Erin Sweeney
 

Similar to Die Rolle von KI in der digitalen Widerstandsfähigkeit - Splunk Public Sector Summit 2024 (20)

SplunkLive! Zurich 2018: Get More From Your Machine Data with Splunk & AI
SplunkLive! Zurich 2018: Get More From Your Machine Data with Splunk & AISplunkLive! Zurich 2018: Get More From Your Machine Data with Splunk & AI
SplunkLive! Zurich 2018: Get More From Your Machine Data with Splunk & AI
 
Power the SOC of the Future with scale, speed and choice - Splunk Public Sect...
Power the SOC of the Future with scale, speed and choice - Splunk Public Sect...Power the SOC of the Future with scale, speed and choice - Splunk Public Sect...
Power the SOC of the Future with scale, speed and choice - Splunk Public Sect...
 
DN18 | Applied Machine Learning in Cybersecurity: Detect malicious DGA Domain...
DN18 | Applied Machine Learning in Cybersecurity: Detect malicious DGA Domain...DN18 | Applied Machine Learning in Cybersecurity: Detect malicious DGA Domain...
DN18 | Applied Machine Learning in Cybersecurity: Detect malicious DGA Domain...
 
Splunk-Presentation
Splunk-Presentation Splunk-Presentation
Splunk-Presentation
 
IoT Analytics @ splunk
IoT Analytics @ splunkIoT Analytics @ splunk
IoT Analytics @ splunk
 
SplunkLive! Zurich 2017 - Advanced Analytics / Machine Learning
SplunkLive! Zurich 2017 - Advanced Analytics / Machine LearningSplunkLive! Zurich 2017 - Advanced Analytics / Machine Learning
SplunkLive! Zurich 2017 - Advanced Analytics / Machine Learning
 
SplunkLive! Munich 2018: Predictive, Proactive, and Collaborative ML with IT ...
SplunkLive! Munich 2018: Predictive, Proactive, and Collaborative ML with IT ...SplunkLive! Munich 2018: Predictive, Proactive, and Collaborative ML with IT ...
SplunkLive! Munich 2018: Predictive, Proactive, and Collaborative ML with IT ...
 
December Bengaluru Splunk User Group Meetup
December Bengaluru Splunk User Group MeetupDecember Bengaluru Splunk User Group Meetup
December Bengaluru Splunk User Group Meetup
 
Splunk Überblick
Splunk ÜberblickSplunk Überblick
Splunk Überblick
 
Using Machine Learning and Analytics to Hunt for Security Threats - Webinar
Using Machine Learning and Analytics to Hunt for Security Threats - WebinarUsing Machine Learning and Analytics to Hunt for Security Threats - Webinar
Using Machine Learning and Analytics to Hunt for Security Threats - Webinar
 
SplunkLive! Overview
SplunkLive! OverviewSplunkLive! Overview
SplunkLive! Overview
 
Splunk enterprise security_splunk_bengaluru_user_group_2020_10_03
Splunk enterprise security_splunk_bengaluru_user_group_2020_10_03Splunk enterprise security_splunk_bengaluru_user_group_2020_10_03
Splunk enterprise security_splunk_bengaluru_user_group_2020_10_03
 
SplunkLive! Frankfurt 2018 - Predictive, Proactive, and Collaborative ML with...
SplunkLive! Frankfurt 2018 - Predictive, Proactive, and Collaborative ML with...SplunkLive! Frankfurt 2018 - Predictive, Proactive, and Collaborative ML with...
SplunkLive! Frankfurt 2018 - Predictive, Proactive, and Collaborative ML with...
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
SplunkLive! Paris 2016 - Plenary session
SplunkLive! Paris 2016 - Plenary sessionSplunkLive! Paris 2016 - Plenary session
SplunkLive! Paris 2016 - Plenary session
 
SplunkLive! Paris 2018: Delivering New Visibility And Analytics For IT Operat...
SplunkLive! Paris 2018: Delivering New Visibility And Analytics For IT Operat...SplunkLive! Paris 2018: Delivering New Visibility And Analytics For IT Operat...
SplunkLive! Paris 2018: Delivering New Visibility And Analytics For IT Operat...
 
How to Move from Monitoring to Observability, On-Premises and in a Multi-Clou...
How to Move from Monitoring to Observability, On-Premises and in a Multi-Clou...How to Move from Monitoring to Observability, On-Premises and in a Multi-Clou...
How to Move from Monitoring to Observability, On-Premises and in a Multi-Clou...
 
SplunkLive! What's New in Splunk 6 Session
SplunkLive! What's New in Splunk 6 SessionSplunkLive! What's New in Splunk 6 Session
SplunkLive! What's New in Splunk 6 Session
 
Mission possible splunk+paloaltonetworks_6_2015
Mission possible splunk+paloaltonetworks_6_2015Mission possible splunk+paloaltonetworks_6_2015
Mission possible splunk+paloaltonetworks_6_2015
 
Mission Possible: Detect and Prevent CyberAttacks with Splunk and Palo Alto N...
Mission Possible: Detect and Prevent CyberAttacks with Splunk and Palo Alto N...Mission Possible: Detect and Prevent CyberAttacks with Splunk and Palo Alto N...
Mission Possible: Detect and Prevent CyberAttacks with Splunk and Palo Alto N...
 

More from Splunk EMEA

Zentrales Logdaten-Management in der KfW - Splunk Public Sector Summit 2024
Zentrales Logdaten-Management in der KfW - Splunk Public Sector Summit 2024Zentrales Logdaten-Management in der KfW - Splunk Public Sector Summit 2024
Zentrales Logdaten-Management in der KfW - Splunk Public Sector Summit 2024
Splunk EMEA
 
Transparenz? Leicht und zentral - Splunk Public Sector Summit 2024
Transparenz? Leicht und zentral - Splunk Public Sector Summit 2024Transparenz? Leicht und zentral - Splunk Public Sector Summit 2024
Transparenz? Leicht und zentral - Splunk Public Sector Summit 2024
Splunk EMEA
 
Splunk für alle: Optimierte Prozesse für eine zuverlässige und störungsfreie ...
Splunk für alle: Optimierte Prozesse für eine zuverlässige und störungsfreie ...Splunk für alle: Optimierte Prozesse für eine zuverlässige und störungsfreie ...
Splunk für alle: Optimierte Prozesse für eine zuverlässige und störungsfreie ...
Splunk EMEA
 
Splunk als zentrale Datendrehscheibe zur Dienstleistersteuerung - Splunk Publ...
Splunk als zentrale Datendrehscheibe zur Dienstleistersteuerung - Splunk Publ...Splunk als zentrale Datendrehscheibe zur Dienstleistersteuerung - Splunk Publ...
Splunk als zentrale Datendrehscheibe zur Dienstleistersteuerung - Splunk Publ...
Splunk EMEA
 
SOC ist kein Allheilmittel! - Splunk Public Sector Summit 2024
SOC ist kein Allheilmittel! - Splunk Public Sector Summit 2024SOC ist kein Allheilmittel! - Splunk Public Sector Summit 2024
SOC ist kein Allheilmittel! - Splunk Public Sector Summit 2024
Splunk EMEA
 
Private Cloud Monitoring, Security Monitoring & DevOps - Splunk Public Sector...
Private Cloud Monitoring, Security Monitoring & DevOps - Splunk Public Sector...Private Cloud Monitoring, Security Monitoring & DevOps - Splunk Public Sector...
Private Cloud Monitoring, Security Monitoring & DevOps - Splunk Public Sector...
Splunk EMEA
 
Mandantenfähigkeit mit Splunk für den öffentlichen Bereich - Splunk Public Se...
Mandantenfähigkeit mit Splunk für den öffentlichen Bereich - Splunk Public Se...Mandantenfähigkeit mit Splunk für den öffentlichen Bereich - Splunk Public Se...
Mandantenfähigkeit mit Splunk für den öffentlichen Bereich - Splunk Public Se...
Splunk EMEA
 
Ein Umbrella Monitoring für die e-Akte Hessen - Splunk Public Sector Summit 2024
Ein Umbrella Monitoring für die e-Akte Hessen - Splunk Public Sector Summit 2024Ein Umbrella Monitoring für die e-Akte Hessen - Splunk Public Sector Summit 2024
Ein Umbrella Monitoring für die e-Akte Hessen - Splunk Public Sector Summit 2024
Splunk EMEA
 
Compliance-Anforderungen erfüllen: Von der Standardlösung zur kundenspezifisc...
Compliance-Anforderungen erfüllen: Von der Standardlösung zur kundenspezifisc...Compliance-Anforderungen erfüllen: Von der Standardlösung zur kundenspezifisc...
Compliance-Anforderungen erfüllen: Von der Standardlösung zur kundenspezifisc...
Splunk EMEA
 
Aktuelles aus der Cybercrime Ermittlungswelt - Splunk Public Sector Summit
Aktuelles aus der Cybercrime Ermittlungswelt - Splunk Public Sector SummitAktuelles aus der Cybercrime Ermittlungswelt - Splunk Public Sector Summit
Aktuelles aus der Cybercrime Ermittlungswelt - Splunk Public Sector Summit
Splunk EMEA
 
Cisco & Splunk: Better Together - Splunk Public Sector Summit 2024
Cisco & Splunk: Better Together - Splunk Public Sector Summit 2024Cisco & Splunk: Better Together - Splunk Public Sector Summit 2024
Cisco & Splunk: Better Together - Splunk Public Sector Summit 2024
Splunk EMEA
 

More from Splunk EMEA (11)

Zentrales Logdaten-Management in der KfW - Splunk Public Sector Summit 2024
Zentrales Logdaten-Management in der KfW - Splunk Public Sector Summit 2024Zentrales Logdaten-Management in der KfW - Splunk Public Sector Summit 2024
Zentrales Logdaten-Management in der KfW - Splunk Public Sector Summit 2024
 
Transparenz? Leicht und zentral - Splunk Public Sector Summit 2024
Transparenz? Leicht und zentral - Splunk Public Sector Summit 2024Transparenz? Leicht und zentral - Splunk Public Sector Summit 2024
Transparenz? Leicht und zentral - Splunk Public Sector Summit 2024
 
Splunk für alle: Optimierte Prozesse für eine zuverlässige und störungsfreie ...
Splunk für alle: Optimierte Prozesse für eine zuverlässige und störungsfreie ...Splunk für alle: Optimierte Prozesse für eine zuverlässige und störungsfreie ...
Splunk für alle: Optimierte Prozesse für eine zuverlässige und störungsfreie ...
 
Splunk als zentrale Datendrehscheibe zur Dienstleistersteuerung - Splunk Publ...
Splunk als zentrale Datendrehscheibe zur Dienstleistersteuerung - Splunk Publ...Splunk als zentrale Datendrehscheibe zur Dienstleistersteuerung - Splunk Publ...
Splunk als zentrale Datendrehscheibe zur Dienstleistersteuerung - Splunk Publ...
 
SOC ist kein Allheilmittel! - Splunk Public Sector Summit 2024
SOC ist kein Allheilmittel! - Splunk Public Sector Summit 2024SOC ist kein Allheilmittel! - Splunk Public Sector Summit 2024
SOC ist kein Allheilmittel! - Splunk Public Sector Summit 2024
 
Private Cloud Monitoring, Security Monitoring & DevOps - Splunk Public Sector...
Private Cloud Monitoring, Security Monitoring & DevOps - Splunk Public Sector...Private Cloud Monitoring, Security Monitoring & DevOps - Splunk Public Sector...
Private Cloud Monitoring, Security Monitoring & DevOps - Splunk Public Sector...
 
Mandantenfähigkeit mit Splunk für den öffentlichen Bereich - Splunk Public Se...
Mandantenfähigkeit mit Splunk für den öffentlichen Bereich - Splunk Public Se...Mandantenfähigkeit mit Splunk für den öffentlichen Bereich - Splunk Public Se...
Mandantenfähigkeit mit Splunk für den öffentlichen Bereich - Splunk Public Se...
 
Ein Umbrella Monitoring für die e-Akte Hessen - Splunk Public Sector Summit 2024
Ein Umbrella Monitoring für die e-Akte Hessen - Splunk Public Sector Summit 2024Ein Umbrella Monitoring für die e-Akte Hessen - Splunk Public Sector Summit 2024
Ein Umbrella Monitoring für die e-Akte Hessen - Splunk Public Sector Summit 2024
 
Compliance-Anforderungen erfüllen: Von der Standardlösung zur kundenspezifisc...
Compliance-Anforderungen erfüllen: Von der Standardlösung zur kundenspezifisc...Compliance-Anforderungen erfüllen: Von der Standardlösung zur kundenspezifisc...
Compliance-Anforderungen erfüllen: Von der Standardlösung zur kundenspezifisc...
 
Aktuelles aus der Cybercrime Ermittlungswelt - Splunk Public Sector Summit
Aktuelles aus der Cybercrime Ermittlungswelt - Splunk Public Sector SummitAktuelles aus der Cybercrime Ermittlungswelt - Splunk Public Sector Summit
Aktuelles aus der Cybercrime Ermittlungswelt - Splunk Public Sector Summit
 
Cisco & Splunk: Better Together - Splunk Public Sector Summit 2024
Cisco & Splunk: Better Together - Splunk Public Sector Summit 2024Cisco & Splunk: Better Together - Splunk Public Sector Summit 2024
Cisco & Splunk: Better Together - Splunk Public Sector Summit 2024
 

Recently uploaded

Programming Foundation Models with DSPy - Meetup Slides
Programming Foundation Models with DSPy - Meetup SlidesProgramming Foundation Models with DSPy - Meetup Slides
Programming Foundation Models with DSPy - Meetup Slides
Zilliz
 
UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5
DianaGray10
 
Essentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FMEEssentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FME
Safe Software
 
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
Edge AI and Vision Alliance
 
Video Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the FutureVideo Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the Future
Alpen-Adria-Universität
 
How to use Firebase Data Connect For Flutter
How to use Firebase Data Connect For FlutterHow to use Firebase Data Connect For Flutter
How to use Firebase Data Connect For Flutter
Daiki Mogmet Ito
 
Cosa hanno in comune un mattoncino Lego e la backdoor XZ?
Cosa hanno in comune un mattoncino Lego e la backdoor XZ?Cosa hanno in comune un mattoncino Lego e la backdoor XZ?
Cosa hanno in comune un mattoncino Lego e la backdoor XZ?
Speck&Tech
 
Let's Integrate MuleSoft RPA, COMPOSER, APM with AWS IDP along with Slack
Let's Integrate MuleSoft RPA, COMPOSER, APM with AWS IDP along with SlackLet's Integrate MuleSoft RPA, COMPOSER, APM with AWS IDP along with Slack
Let's Integrate MuleSoft RPA, COMPOSER, APM with AWS IDP along with Slack
shyamraj55
 
Infrastructure Challenges in Scaling RAG with Custom AI models
Infrastructure Challenges in Scaling RAG with Custom AI modelsInfrastructure Challenges in Scaling RAG with Custom AI models
Infrastructure Challenges in Scaling RAG with Custom AI models
Zilliz
 
AI 101: An Introduction to the Basics and Impact of Artificial Intelligence
AI 101: An Introduction to the Basics and Impact of Artificial IntelligenceAI 101: An Introduction to the Basics and Impact of Artificial Intelligence
AI 101: An Introduction to the Basics and Impact of Artificial Intelligence
IndexBug
 
Mind map of terminologies used in context of Generative AI
Mind map of terminologies used in context of Generative AIMind map of terminologies used in context of Generative AI
Mind map of terminologies used in context of Generative AI
Kumud Singh
 
Building Production Ready Search Pipelines with Spark and Milvus
Building Production Ready Search Pipelines with Spark and MilvusBuilding Production Ready Search Pipelines with Spark and Milvus
Building Production Ready Search Pipelines with Spark and Milvus
Zilliz
 
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
Neo4j
 
Full-RAG: A modern architecture for hyper-personalization
Full-RAG: A modern architecture for hyper-personalizationFull-RAG: A modern architecture for hyper-personalization
Full-RAG: A modern architecture for hyper-personalization
Zilliz
 
How to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptxHow to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptx
danishmna97
 
Removing Uninteresting Bytes in Software Fuzzing
Removing Uninteresting Bytes in Software FuzzingRemoving Uninteresting Bytes in Software Fuzzing
Removing Uninteresting Bytes in Software Fuzzing
Aftab Hussain
 
GenAI Pilot Implementation in the organizations
GenAI Pilot Implementation in the organizationsGenAI Pilot Implementation in the organizations
GenAI Pilot Implementation in the organizations
kumardaparthi1024
 
Driving Business Innovation: Latest Generative AI Advancements & Success Story
Driving Business Innovation: Latest Generative AI Advancements & Success StoryDriving Business Innovation: Latest Generative AI Advancements & Success Story
Driving Business Innovation: Latest Generative AI Advancements & Success Story
Safe Software
 
20240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 202420240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 2024
Matthew Sinclair
 
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
Neo4j
 

Recently uploaded (20)

Programming Foundation Models with DSPy - Meetup Slides
Programming Foundation Models with DSPy - Meetup SlidesProgramming Foundation Models with DSPy - Meetup Slides
Programming Foundation Models with DSPy - Meetup Slides
 
UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5
 
Essentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FMEEssentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FME
 
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
 
Video Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the FutureVideo Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the Future
 
How to use Firebase Data Connect For Flutter
How to use Firebase Data Connect For FlutterHow to use Firebase Data Connect For Flutter
How to use Firebase Data Connect For Flutter
 
Cosa hanno in comune un mattoncino Lego e la backdoor XZ?
Cosa hanno in comune un mattoncino Lego e la backdoor XZ?Cosa hanno in comune un mattoncino Lego e la backdoor XZ?
Cosa hanno in comune un mattoncino Lego e la backdoor XZ?
 
Let's Integrate MuleSoft RPA, COMPOSER, APM with AWS IDP along with Slack
Let's Integrate MuleSoft RPA, COMPOSER, APM with AWS IDP along with SlackLet's Integrate MuleSoft RPA, COMPOSER, APM with AWS IDP along with Slack
Let's Integrate MuleSoft RPA, COMPOSER, APM with AWS IDP along with Slack
 
Infrastructure Challenges in Scaling RAG with Custom AI models
Infrastructure Challenges in Scaling RAG with Custom AI modelsInfrastructure Challenges in Scaling RAG with Custom AI models
Infrastructure Challenges in Scaling RAG with Custom AI models
 
AI 101: An Introduction to the Basics and Impact of Artificial Intelligence
AI 101: An Introduction to the Basics and Impact of Artificial IntelligenceAI 101: An Introduction to the Basics and Impact of Artificial Intelligence
AI 101: An Introduction to the Basics and Impact of Artificial Intelligence
 
Mind map of terminologies used in context of Generative AI
Mind map of terminologies used in context of Generative AIMind map of terminologies used in context of Generative AI
Mind map of terminologies used in context of Generative AI
 
Building Production Ready Search Pipelines with Spark and Milvus
Building Production Ready Search Pipelines with Spark and MilvusBuilding Production Ready Search Pipelines with Spark and Milvus
Building Production Ready Search Pipelines with Spark and Milvus
 
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
 
Full-RAG: A modern architecture for hyper-personalization
Full-RAG: A modern architecture for hyper-personalizationFull-RAG: A modern architecture for hyper-personalization
Full-RAG: A modern architecture for hyper-personalization
 
How to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptxHow to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptx
 
Removing Uninteresting Bytes in Software Fuzzing
Removing Uninteresting Bytes in Software FuzzingRemoving Uninteresting Bytes in Software Fuzzing
Removing Uninteresting Bytes in Software Fuzzing
 
GenAI Pilot Implementation in the organizations
GenAI Pilot Implementation in the organizationsGenAI Pilot Implementation in the organizations
GenAI Pilot Implementation in the organizations
 
Driving Business Innovation: Latest Generative AI Advancements & Success Story
Driving Business Innovation: Latest Generative AI Advancements & Success StoryDriving Business Innovation: Latest Generative AI Advancements & Success Story
Driving Business Innovation: Latest Generative AI Advancements & Success Story
 
20240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 202420240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 2024
 
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
 

Die Rolle von KI in der digitalen Widerstandsfähigkeit - Splunk Public Sector Summit 2024

  • 1. © 2024 SPLUNK INC. Public Sector Summit 2024 Die Rolle von KI in der digitalen Widerstandsfähigkeit
  • 2. © 2024 SPLUNK INC. Philipp Drieger Global Principal Machine Learning Architect 09+ years with Splunk 14+ years specialization in “AI” 21+ years experience in software 04 splunkbase apps with 36k+ downloads 04 patent contributions
  • 3. Forward- looking statements This presentation may contain forward-looking statements regarding future events, plans or the expected financial performance of our company, including our expectations regarding our products, technology, strategy, customers, markets, acquisitions and investments. These statements reflect management’s current expectations, estimates and assumptions based on the information currently available to us. These forward-looking statements are not guarantees of future performance and involve significant risks, uncertainties and other factors that may cause our actual results, performance or achievements to be materially different from results, performance or achievements expressed or implied by the forward-looking statements contained in this presentation. For additional information about factors that could cause actual results to differ materially from those described in the forward-looking statements made in this presentation, please refer to our periodic reports and other filings with the SEC, including the risk factors identified in our most recent quarterly reports on Form 10-Q and annual reports on Form 10-K, copies of which may be obtained by visiting the Splunk Investor Relations website at www.investors.splunk.com or the SEC's website at www.sec.gov. The forward-looking statements made in this presentation are made as of the time and date of this presentation. If reviewed after the initial presentation, even if made available by us, on our website or otherwise, it may not contain current or accurate information. We disclaim any obligation to update or revise any forward-looking statement based on new information, future events or otherwise, except as required by applicable law. In addition, any information about our roadmap outlines our general product direction and is subject to change at any time without notice. It is for informational purposes only and shall not be incorporated into any contract or other commitment. We undertake no obligation either to develop the features or functionalities described, in beta or in preview (used interchangeably), or to include any such feature or functionality in a future release. Splunk, Splunk> and Turn Data Into Doing are trademarks and registered trademarks of Splunk Inc. in the United States and other countries. All other brand names, product names or trademarks belong to their respective owners. © 2024 Splunk Inc. All rights reserved. © 2024 SPLUNK INC.
  • 4. © 2024 SPLUNK INC. What is AI and Machine Learning? Artificial Intelligence (AI) - capability of a computer system to mimic human cognitive functions such as learning and problem-solving Machine Learning (ML) - subset of AI that uses mathematical models of data to help a computer learn without direct instruction Deep Learning (DL) - subset of ML that uses computationally intense ML models inspired by the “deep” layers of the biological neural network of the human brain to accomplish complex goals like image recognition Example: Self driving car recognizes stop sign Generative AI - subset of DL that involves the use of algorithms and techniques to generate new data, things that have not existed in the world before being created by the models Example: OpenAI’s ChatGPT Definitions Machine Learning (ML) Deep Learning (DL) Generative AI (GenAI) Artificial Intelligence (AI)
  • 5. © 2024 SPLUNK INC. AI Brings Both New Threats and Opportunities ● Data Privacy ● Inaccurate Model Outputs ● Expanded Attack Surface Area ● Detect Important Events ● Provide Context ● Free Users from Basic Tasks Threats Opportunities
  • 6. © 2024 SPLUNK INC. Generative AI is just one of many AI tools for common SecOps, ITOps, and engineering challenges Embedded capabilities within products Customizable ML, Deep Learning, and Data Science Tools AI Libraries and APIs for Developers Generative AI Chatbots Guided Assistive Workflows Today’s generative AI may not always be the best tool for the job AI Tools
  • 7. © 2024 SPLUNK INC. © 2024 SPLUNK INC. Why should you use Splunk AI?
  • 8. © 2023 SPLUNK INC. Companies that adopt machine learning are twice as likely (66%) to be prepared for the demands of a recession, compared to those that do not (34%) Taken from the Digital Resilience Pays Off report Driving Digital Resilience
  • 9. © 2024 SPLUNK INC. Benefits of Using Machine Learning Common outcomes from successful ML projects Increase Efficiency Reduce Manual Processes Identify ‘Unknown Unknowns’
  • 10. © 2024 SPLUNK INC. We have been implementing AI for years… and so did our customers! Splunk has long been committed to helping customers use AI Leader in 2022 GigaOm Radar for AIOps A Leader in the AIOps Radar for 4 consecutive years Highest Scoring Product in Selecting an AIOps Solution for 2 years Leader in 2022 GigaOm Radar for AIOps Market Leader: Vendor Selection Matrix™ AIOps Solutions
  • 11. © 2024 SPLUNK INC. Our Approach to AI is Driven by Three Principles
  • 12. © 2024 SPLUNK INC. Foundational and Generative AI Combining predictive analytics, accelerated investigation, and workflow enhancements Correlate and Diagnose Aggregate and analyze all data to investigate and identify root causes Detect and Predict Real-time, streaming analysis to detect anomalies and forecast trends Make Everyone an Expert Reduce need for environment and tool expertise by simplifying content creation and investigation workflows Foundational AI Capabilities Generative AI Capabilities
  • 13. © 2024 SPLUNK INC. Using AI for Security
  • 14. © 2024 SPLUNK INC. — CISO, Higher Education, 26,000 employees “We learn in cyber after the fact, with AI and GAI we can be more proactive, and it may help us with skills shortages.” Love it or hate it — AI is here to stay ● 70% of CISOs believe AI gives the advantage to attackers over defenders. Yet, ● Automation is underway, and AI will accelerate it further. are already experimenting with it for cyber defense. of CISOs have extensively or moderately automated their processes, and AI will only increase that percentage in the future. Source: Splunk CISO Report 2023
  • 15. © 2024 SPLUNK INC. Identifying User Access Anomalies Using ML for Threat Hunting Detecting Malicious Patterns of Network Traffic Detecting Domain Generating Algorithms (DGAs) Finding Command Line Anomalies Detecting Fraudulent Activity AI for Security Predicting Data Downtime Spotting Potential Insider Threats Demystifying Security Searches with the Splunk AI Assistant
  • 16. © 2024 SPLUNK INC. Model Assisted Threat Hunting Prepare, Execute and Act with Knowledge Prepare Act Execute Knowledge Select Topic Research Topic Identify Datasets Select Algorithms Gather Data Pre-process Data Develop Model Apply Model Analyse Refine Escalate Critical Findings Preserve Hunt Document findings Create Detections Re-add Topic to Backlog Communicate Findings
  • 19. © 2024 SPLUNK INC. Using AI for Observability
  • 20. © 2024 SPLUNK INC. Forecasting Resource Utilization Detecting Service Performance Issues User Experience Monitoring Cell Tower Monitoring Predictive Maintenance Noise Reduction AI for Observability Predicting Data Downtime Geohazards Monitoring https://www.splunk.com/en_us/form/splunk-machine-learning-for-observability-use-case-guide.html
  • 21. © 2024 SPLUNK INC. Detecting Service Performance Issues https://www.splunk.com/en_us/form/digital-resilience-pays-off.html Each hour of downtime can cost $365,000
  • 22. © 2024 SPLUNK INC. Send data from systems, devices, and people Define KPIs in iterations as you explore and understand your data Baseline with AI assistants and react quickly to changing circumstances Detecting Service Performance Issues Splunk’s Approach Predict negative impacts before they happen with AI Take Actions that drive impact across your business
  • 23. © 2024 SPLUNK INC. Sounds great, what’s the catch?
  • 25. © 2024 SPLUNK INC. Developing a Model Collect/refine data Feature engineering Label, visualise, analyze data Build, buy, train or customise a model Assess the business problem and value Continuously assess model & infrastructure performance Deploy model to production Re-train production model Optimise the model, assess infrastructure What Operationalisation actually looks like
  • 26. © 2024 SPLUNK INC. Complexity Value Develop / train a model Label, visualise, analyse data Feature engineering Collect / refine data Deploy model to production Re-train production model Continuously assess performance Experimentation Productionisation Optimise & assess Developing a Model What Operationalisation actually looks like
  • 27. © 2024 SPLUNK INC. Complexity Value Collect / refine data Deploy model to production Re-train production model Continuously assess performance Productionisation Develop / train a model Label, visualise, analyse data Feature engineering Experimentation Optimise & assess Mind the gap Developing a Model What Operationalisation actually looks like
  • 28. © 2024 SPLUNK INC. So What Should I Do About It? Set clear objectives Assess integration points Keep it simple What are the outcomes you are trying to achieve? Make sure you are adopting AI in places that benefit the business Make sure what you develop during an experiment will translate into production code Quite often simple statistics can provide approximations that are almost as good as an advanced deep learning algorithm
  • 29. © 2024 SPLUNK INC. https://www.splunk.com/en_us/form/security-use-case-enhanced-by-ai-and-ml.html
  • 30. © 2024 SPLUNK INC. Thank You