3. Safe Harbor Statement
During the course of this presentation,we may make forward looking statements regarding future events
or the expected performance of the company. We caution you that such statements reflect our current
expectations and estimates based on factors currently known to us and that actual events or results could
differ materially. For important factors that may cause actual results to differ from those contained in our
forward-looking statements, please review our filings with the SEC. The forward-looking statements
made in this presentation are being made as of the time and date of its live presentation. If reviewed
after its live presentation, this presentation may not contain current or accurate information. We do not
assume any obligation to update any forward looking statements we may make. In addition, any
information about our roadmap outlines our general product direction and is subject to change at any
time without notice. It is for informational purposes only and shall not be incorporated into any contract
or other commitment. Splunk undertakes no obligation either to develop the features or functionality
described orto includeany suchfeatureor functionalityina futurerelease.
3
5. Splunk Company Overview
5
Company
• Global HQs:
San Francisco
London
Hong Kong
• 1,800+ employees
globally
• Annual Revenue:
$450.9M (YoY +49%)
• NASDAQ: SPLK
Products
• Free trial to massive scale
• Splunk products:
Splunk Enterprise
Splunk Cloud
Hunk
Splunk Light
Splunk MINT
Premium Solutions
Customers
• 10,000+ customers
• Across 100 countries
• Small to large
organizations
• More than 80 of the
Fortune 100
• Largest license:
400+ Terabytes/day
6. Big Data Comes from Machines
Volume | Velocity | Variety | Variability
GPS,
RFID,
Hypervisor,
Web Servers,
Email, Messaging,
Clickstreams, Mobile,
Telephony, IVR, Databases,
Sensors, Telematics, Storage,
Servers, Security Devices, Desktops
6
7. Continuously develop
and deploy apps
Embrace cloud
and mobile
Move to software
defined infrastructure
Execute on new
business initiatives
Ensure 100% uptime
for critical apps
Manage services,
not silos
Identify & mitigate
advanced threats
Prevent fraud
Insights Deliver Competitive Advantage
7
KEY
PRIORITIES
10. 10
Turning Machine Data Into Business Value
Index Untapped Data: Any Source, Type, Volume
Online
Services Web
Services
Servers
Security GPS
Location
Storage
Desktops
Networks
Packaged
Applications
Custom
ApplicationsMessaging
Telecoms
Online
Shopping
Cart
Web
Clickstreams
Databases
Energy
Meters
Call Detail
Records
Smartphones
and Devices
RFID
On-
Premises
Private
Cloud
Public
Cloud
Ask Any Question
Application Delivery
Security, Compliance
and Fraud
IT Operations
Business Analytics
Industrial Data and
the Internet of Things
11. CIO
End User Computing
Infrastructure &
Operations
Security
Analytics / BI / EDW
Architecture
Application
Development
Mobile Apps
Web Ops /
Ecommerce
Cloud Computing Fraud
Compliance
Services and
Customer Support
Business & SaaS App
Management
Server, Storage,
Network
Sales & Marketing
Product and
Engineering
Finance, HR, Legal
Line of Business
11
Start Anywhere with Splunk
13. WhyUniCreditusesSplunkfor
Operational Intelligence
3TBs Daily Data from 100+ Data Sources
10,000 Branches, ATMs, Mobile Banking, Apps, Network
Business Planning - Customer Trends,
Market Share Analysis & Regional Business Distribution
Real-time Analytics of ATMs, Mobile Banking,
Transactions, Card Usage and Client Behavior
14. CITO Research - Operational Intelligence: What It Is and Why You Need It Now
14
15. 15
1. März 2016
Frankfurt
Robert Bosch
Mail.de
Helvetia Versicherungen
UniCredit
More info and registration:
www.splunklive.com
2. März 2016
Hamburg
GASCADE
Otto
Karstadt
9. März 2016
München
Bild
Datev
Rohde & Schwarz
Uni Credit
16. Thank you & QA
More info and registration:
www.splunklive.com
Editor's Notes
Splunk safe harbor statement.
Splunk has more than 1,800 employees worldwide, with our global headquarters in San Francisco. Our 10,000+ customers in 100 countries are using Splunk software and cloud services to improve service levels, reduce operations costs, mitigate security risks, enable compliance, enhance DevOps collaboration and create new product and service offerings.
Our products are designed to fit your needs and are built to be as frictionless to deploy as possible. Simple download Splunk software, or sign up for the online sandbox, point it at your data, and you’ll up and running in minutes.
Please always refer to latest company data found here: http://www.splunk.com/company.
What is this machine data, and why is it a big deal?
Well, it’s one of the fastest growing, most complex and most valuable segments of data.
All the webservers, applications, network devices, mobile devices, sensors – all of the technology infrastructure running your enterprise – generates massive streams of data, in an array of unpredictable formats that are difficult to process and analyze by traditional methods or in a timely manner.
Why is this “machine data” valuable? Because it contains a trace - a categorical record - of user behavior, cyber-security risks, application behavior, service levels, fraudulent activity and customer experience.
Characteristics of machine data – the four V’s - the last two are the most interesting / challenging.
Machine data insights deliver value across a range of CIO’s strategic priorities for IT and the business. CIOs need to increasingly balance the need for innovation, helping drive business growth with ongoing maintenance, improving security posture among other things. With better visibility from machine data, CIO effectively address broad range of needs – helping them create a meaningful competitive advantage for the business.
At Splunk, our mission is to make machine data accessible, usable and valuable to everyone. And this overarching mission is what drives our company and product priorities.
At it’s core, the Splunk platform enables you to:
Collect data from anywhere – with universal forwarding and indexing technology.
Search and analyze across all your data – with powerful search and schema-on-the-fly technology.
Rapidly deliver real-time insights from machine data to IT and business people – through a powerful UI and dashboards.
This is what we call Operational Intelligence.
Splunk products are being used for data volumes ranging from gigabytes to hundreds of terabytes per day. Splunk software and cloud services reliably collects and indexes machine data, from a single source to tens of thousands of sources. All in real time. Once data is in Splunk Enterprise, you can search, analyze, report on and share insights form your data. The Splunk Enterprise platform is optimized for real-time, low-latency and interactivity, making it easy to explore, analyze and visualize your data. This is described as Operational Intelligence.
The insights gained from machine data support a number of use cases and can drive value across your organization.
[In North America]
Splunk Cloud is available in North America and offers Splunk Enterprise as a cloud-based service – essentially empowering you with Operational Intelligence without any operational effort.
Because Splunk products can address a variety of use cases, you can start from virtually any line of business or department and grow the implementation to fit your needs. Customers that experience the most compelling ROI are the ones that realize that analyzing machine data provides insights for every part of the organization.
For example, simply pulling in web data allows your:
IT Operations & Applications teams to receive real-time information on how web infrastructure updates are working in production and resolve issues before they impact the customer
Marketing team to gain insight into usage trends on your website, allowing them to deliver the most impactful campaigns
Security team to identify the fingerprints of fraud and stop fraudulent activity before it impacts your company and customers
Business Analysts to identify and understand issues such as shopping cart abandonment
And that’s only using a single data source.
Industry: Financial Services
Use case: IT Operations and Analytics
More can be found at: http://conf.splunk.com/session/2015/conf2015_SGuidobaldi_MCarrara_Business_Analytics_UniCreditandVTServices.pdf
The Business
UniCredit Business Integrated Solutions (UBIS) is the UniCredit Group's global services company. Formed from the integration and consolidation of 16 Group companies and is dedicated to providing services in the sectors of Information and Communication Technology (ICT), Back Office and Middle Office, Real Estate, Security and Procurement. It is one of the first service companies to be created at a Pan-European level and its aim is to consolidate and reorganize those operational activities necessary for the correct functioning of the Group's business by leveraging on a more flexible delivery and improved response times. The Company includes about 11.000 people and oversees activities in 11 countries: Austria, Germany, Italy, Poland, Great Britain, Czech Republic, Romania, Slovakia, Hungary, the United States and Singapore.
Challenges
For a Financial Services (FSI) company, one of the key considerations when dealing with customers is their privacy and security. One of the most significant challenges faced by UniCredit Business Integrated Solutions in the context of its online banking offering was keeping pace with the consistently growing and massive amount of machine data generated across its infrastructure. The various banks in the corporation run approximately 1,000 applications on a variety of different operating platforms. Collecting, storing and analysing this data is critical for troubleshooting issues, identifying security concerns, detecting fraud and maintaining a positive customer experience. As there was no single point of access, a significant amount of time was required to analyse this large volume of machine data from a huge array of sources.
Enter Splunk
Compared to competitive products, Splunk software offered a far more innovative approach to managing the data challenge. Key features for UniCredit Business Integrated Solutions were real-time monitoring and incident investigations as a prerequisite for reducing the Mean Time To Investigate (MTTI) and the Mean Time To Resolve (MTTR) for security and IT performance issues. A further challenge was monitoring at the frontoffice application level: Splunk offers an overview of essential machine resources and transaction volumes (accounting). Using Splunk, UniCredit Business Integrated Solutions is able to access information extremely quickly and add new queries on the fly. Splunk software's ease of use has enabled a wide range of departments to access information relevant to their requirements without any special IT expertise.
UniCredit Business Integrated Solutions was also looking for a fast implementation, which was achieved working with a Splunk partner, Moviri. A small team of three, including one Moviri employee, were involved in the rapid deployment (approximately a month). The Splunk deployment is Pan-European and aligns with UniCredit Business Integrated Solutions' business units across the region. The deployment is currently in Italy and Germany and expanding into Austria and the Czech Republic. The company recently made the strategic decision to scale up its data collection volume from 250 GB to 2.8 TB per day.
Breakthroughs
Having initially used Splunk software purely for troubleshooting and application monitoring, following its positive experiences UniCredit Business Integrated Solutions slowly began adding further use cases, so that the software is now also deployed for Operational Intelligence as well as security analysis and analytics. This evolutionary approach to the Splunk implementation is typical of many companies, which start out using the solution for a specific use case and then gradually expand its use across the enterprise when they realise the full capabilities of Splunk.
Real-time and historical monitoring of data within Splunk has allowed UniCredit Business Integrated Solutions to instantly identify issues and proactively prevent incidents. Specifically, UniCredit Business Integrated Solutions is using Splunk to monitor transactions at regular intervals and send alerts based on specific thresholds and conditions. With proactive monitoring in place, the customer service team has seen a significant quality of service improvement and gained new efficiencies. For example, due to proactive incident management, about 40% of incidents can be managed before becoming evident to end users.
Today, problems are quickly localized and eliminated. They estimate that 25% of their time is now spent on troubleshooting and a full 75% can be directed towards other activities such as innovating. It's safe to conclude that this improved response (avg. MTTR is less than 15 minutes versus 1 hour in the past) directly enhances the customer experience and has had a positive impact on revenue. Thus, time spent on problem solving and troubleshooting has been reduced by as much as 70%.
By providing a single view into all of UniCredit Business Integrated Solutions' machine generated data, Splunk software has also simplified adherence to compliance requirements. The team responsible for production ability and readiness, troubleshooting and reports, now uses impact analyses to calculate the actual effects of operational and security incidents. In this way, the Splunk solution helps the organization meet Service Level Agreements (SLA) with its customers, thus avoiding potential compensation payments.
Time savings, improved adherence to guidelines and a reduction in downtimes have enabled UniCredit Business Integrated Solutions to achieve a important reduction in costs. And last but not least, the company has been able to reduce its storage costs, as all data is stored in Splunk.
About 700 UniCredit Business Integrated Solutions employees in 180 departments, including the system management and IT departments, are currently working with Splunk. The option of sharing information across all departments and business divisions forms the basis for the "Splunk Competence Center" currently being set up by UniCredit Business Integrated Solutions. In this knowledge pool, security and network employees collect and prioritise all queries, creating dashboards and reports. The troubleshooting and app performance monitoring team can create 24/7 alerts, check events for a wide range of tools and set bookmarks for the most frequent searches. This allows the entire infrastructure to be searched for frequent/recurring problems in under a minute and drilldowns can be engineered much faster. UniCredit Business Integrated Solutions business analysts are using Splunk software to create weekly reports for top management that provide real-time insights into key business metrics such as:
served clients by bank branches as well as via internet banking and mobile banking channels
number of new opened bank accounts
loans / revolving cards managed
payments / bank transactions executed
UniCredit Business Integrated Solutions is also visualising mobile banking transactions via the Google Maps for Splunk app, which is then showcased on custom dashboards. In addition to the Google Maps app, UniCredit Business Integrated Solutions is using a range of other apps provided via the Splunk community site, Splunkbase, including Splunk on Splunk (S.o.S.), Splunk for Windows, Splunk for Tibco BusinessWorks Engine and Splunk DB Connect, all of which have been customized to the company's requirements.