SlideShare a Scribd company logo
1 of 18
Download to read offline
Jan-Jaap Oosterwijk
Technology Evangelist
Predictive Monitoring &
Efficient Incident Response
Tuesday, 20 November, 2018
DeFabrique, Utrecht, the Netherlands
Constantin Bajireanu
Manager, Service
Operations Center
70% OF EMPLOYEES ARE IN
ENGINEERING/RESEARCH/
DEVELOPMENT
+5 BILLION DEVICES AND
APPLICATIONS SECURED
SERVING 400+ CUSTOMERS
IN 75+ COUNTRIES
236 PATENTS & 268 PATENTS
PENDING
IRDETO IS THE WORLD
LEADER IN DIGITAL
PLATFORM SECURITY
NEARLY 1,000 SECURITY
EXPERTS EMPLOYED
+15 LOCATIONS COVERING
6 CONTINENTS
End-to-End Irdeto 360 Security Portfolio
Production Content Aggregation Distribution and
promotion
Consumption
Content Owners Broadcasters Distributors Devices ConsumerSport Rights Holders
IRDETO’S VISION
To build a secure future, where
people can embrace connectivity
without fear.
Irdeto protects platforms and
applications for media &
entertainment, games,
connected transport and IoT
connected industries.
6
Service Operations Center
Incident Management
▶ Incident registration
▶ Triaging and initial troubleshooting
▶ Standard resolution procedures
▶ Escalation
Monitoring
▶ Service availability
▶ Capacity
▶ Health-check and Performance
How We Got Started
▶ In 2013 we started offering access to our products as managed
service and established a 24/7 Service Operations Center.
▶ Build monitoring framework
▶ Define and implement incident management process
▶ Monitoring infrastructure is important... but not enough.. by far.
▶ Troubleshooting requires logs... logs... and more logs.
Our past monitoring framework
Applications
Networks
Servers
Public Cloud
Web
Services/Global
Events
Alerts
Logs
Service
Operations
Center
Monitoring
Incident
Logs
Logs
Troubleshooting
Metrics
Events
Logs
Our present monitoring framework
Applications
Networks
Servers
Public Cloud
Web
Services/Global
Logs
Service
Operations
Center
Monitoring
Logs
Logs
Metrics
Events
Logs
Alerts
Alerts
Events
Incident
Dashboards
Troubleshooting
10
Present
▶ Using Splunk since 2013
▶ Currently at 100Gb a day
▶ What’s in Splunk today
▶ Application logs
▶ Web-server logs
▶ AWS elb/alb logs
▶ Infrastructure logs
▶ Some metrics
Ingest
Measure
Investigate
Dashboard
Alert
Set Treshold
Observe Trend
Alert
Repeat
11
What’s been monitored
▶ Business metrics
▶ Number or requests
▶ Error rate
▶ Response time
▶ Trends
▶ Sudden drop in traffic
▶ Sudden increase in errors
Our Splunk Infrastructure - past
AWS
AWS Region A AWS Region B
Our Splunk Infrastructure - current
AWS
AWS Region A AWS Region B
Few facts
▶ 328 clients
▶ 340 dashboards
▶ 84k alerts-scheduled / day
▶ 1.44M searches / day
What’s next?
▶ More logs into Splunk
▶ Ingest metrics into Splunk
▶ Introduce ITSI
▶Correlation of events during incident
investigation
▶Dashboards, Dashboards, Dashboards
▶Anomaly detection
▶ML
▶ Enriched alerts with VictorOps
Machine
learning
Our future monitoring framework
Applications
Networks
Servers
Public Cloud
Web
Services/Global
Logs
Service
Operations
Center
Monitoring
Logs
Logs
Troubleshooting
Metrics
Events
Logs
Alerts
Events
Incident
Dashboards
Predictive
Analytics
Preventative
Maintenance
ITSI
© 2018 SPLUNK INC.
1. Monitor what’s important for your
customers
2. Use the top-down approach with KPI
definition.
3. Aggregate, Trend and Conquer
Key
Takeaways
THANK YOU

More Related Content

What's hot

What's hot (20)

Splunk IT Service Intelligence Overview - AIOps Roundtable Bern
Splunk IT Service Intelligence Overview - AIOps Roundtable BernSplunk IT Service Intelligence Overview - AIOps Roundtable Bern
Splunk IT Service Intelligence Overview - AIOps Roundtable Bern
 
AIOps Roundtable Munich 2018: Intro to Splunk's ML Technologies
AIOps Roundtable Munich 2018: Intro to Splunk's ML TechnologiesAIOps Roundtable Munich 2018: Intro to Splunk's ML Technologies
AIOps Roundtable Munich 2018: Intro to Splunk's ML Technologies
 
Travis Perkins at Gartner Risk and Security Management Summit Europe
Travis Perkins at Gartner Risk and Security Management Summit EuropeTravis Perkins at Gartner Risk and Security Management Summit Europe
Travis Perkins at Gartner Risk and Security Management Summit Europe
 
Splunk at Airbus
Splunk at AirbusSplunk at Airbus
Splunk at Airbus
 
Partner Exec Summit 2018 - Frankfurt: Partner Brauchen Wir Nicht
Partner Exec Summit 2018 - Frankfurt: Partner Brauchen Wir NichtPartner Exec Summit 2018 - Frankfurt: Partner Brauchen Wir Nicht
Partner Exec Summit 2018 - Frankfurt: Partner Brauchen Wir Nicht
 
SplunkLive! Utrecht 2018 - Customer presentation: POST Luxembourg
SplunkLive! Utrecht 2018 - Customer presentation: POST Luxembourg SplunkLive! Utrecht 2018 - Customer presentation: POST Luxembourg
SplunkLive! Utrecht 2018 - Customer presentation: POST Luxembourg
 
Splunk Discovery: Milan 2018 - Delivering New Visibility and Analytics for IT...
Splunk Discovery: Milan 2018 - Delivering New Visibility and Analytics for IT...Splunk Discovery: Milan 2018 - Delivering New Visibility and Analytics for IT...
Splunk Discovery: Milan 2018 - Delivering New Visibility and Analytics for IT...
 
SplunkLive! Paris 2018: Splunk Overview
SplunkLive! Paris 2018: Splunk OverviewSplunkLive! Paris 2018: Splunk Overview
SplunkLive! Paris 2018: Splunk Overview
 
SplunkLive! Stockholm 2019 - Customer presentation: ISS
SplunkLive! Stockholm 2019 - Customer presentation: ISS SplunkLive! Stockholm 2019 - Customer presentation: ISS
SplunkLive! Stockholm 2019 - Customer presentation: ISS
 
Splunk for ITOA Breakout Session
Splunk for ITOA Breakout SessionSplunk for ITOA Breakout Session
Splunk for ITOA Breakout Session
 
Splunk Discovery: Milan 2018 - Splunk Overview
Splunk Discovery: Milan 2018 - Splunk OverviewSplunk Discovery: Milan 2018 - Splunk Overview
Splunk Discovery: Milan 2018 - Splunk Overview
 
SplunkLive! Utrecht - Keynote - Rick Fitz
SplunkLive! Utrecht - Keynote - Rick FitzSplunkLive! Utrecht - Keynote - Rick Fitz
SplunkLive! Utrecht - Keynote - Rick Fitz
 
Splunk Internet of Things Roundtable 2015
Splunk Internet of Things Roundtable 2015Splunk Internet of Things Roundtable 2015
Splunk Internet of Things Roundtable 2015
 
Splunk Phantom SOAR Roundtable
Splunk Phantom SOAR RoundtableSplunk Phantom SOAR Roundtable
Splunk Phantom SOAR Roundtable
 
SplunkLive! Paris 2018: Integrating Metrics and Logs
SplunkLive! Paris 2018: Integrating Metrics and LogsSplunkLive! Paris 2018: Integrating Metrics and Logs
SplunkLive! Paris 2018: Integrating Metrics and Logs
 
Splunk for ITOA Breakout Session
Splunk for ITOA Breakout SessionSplunk for ITOA Breakout Session
Splunk for ITOA Breakout Session
 
SplunkLive! Paris 2018: Plenary Session
SplunkLive! Paris 2018: Plenary SessionSplunkLive! Paris 2018: Plenary Session
SplunkLive! Paris 2018: Plenary Session
 
Splunk for Industrial Data and the Internet of Things
Splunk for Industrial Data and the Internet of ThingsSplunk for Industrial Data and the Internet of Things
Splunk for Industrial Data and the Internet of Things
 
The Splunk AISecOps Initiative - Splunk Security Roundtable: Zurich 2018
The Splunk AISecOps Initiative - Splunk Security Roundtable: Zurich 2018The Splunk AISecOps Initiative - Splunk Security Roundtable: Zurich 2018
The Splunk AISecOps Initiative - Splunk Security Roundtable: Zurich 2018
 
Splunk Discovery: Milan 2018 - Intro to Security Analytics Methods
Splunk Discovery: Milan 2018 - Intro to Security Analytics MethodsSplunk Discovery: Milan 2018 - Intro to Security Analytics Methods
Splunk Discovery: Milan 2018 - Intro to Security Analytics Methods
 

Similar to SplunkLive! Utrecht 2018 - Customer presentation: Irdeto

Wed Sponsor Press Conf - 10.15
Wed Sponsor Press Conf - 10.15Wed Sponsor Press Conf - 10.15
Wed Sponsor Press Conf - 10.15
Bessie Wang
 
Io t analytics panel
Io t   analytics panelIo t   analytics panel
Io t analytics panel
MassTLC
 
How to maximize profit from IoT by using data platform - Albert Lewandowski, ...
How to maximize profit from IoT by using data platform - Albert Lewandowski, ...How to maximize profit from IoT by using data platform - Albert Lewandowski, ...
How to maximize profit from IoT by using data platform - Albert Lewandowski, ...
GetInData
 
Framework and Product Comparison for Big Data Log Analytics and ITOA
Framework and Product Comparison for Big Data Log Analytics and ITOA Framework and Product Comparison for Big Data Log Analytics and ITOA
Framework and Product Comparison for Big Data Log Analytics and ITOA
Kai Wähner
 

Similar to SplunkLive! Utrecht 2018 - Customer presentation: Irdeto (20)

Wed Sponsor Press Conf - 10.15
Wed Sponsor Press Conf - 10.15Wed Sponsor Press Conf - 10.15
Wed Sponsor Press Conf - 10.15
 
Io t analytics panel
Io t   analytics panelIo t   analytics panel
Io t analytics panel
 
IoT Cloud Service & Partner IoT Solution
IoT Cloud Service & Partner IoT Solution IoT Cloud Service & Partner IoT Solution
IoT Cloud Service & Partner IoT Solution
 
Steps to Scale Internet of Things (IoT)
Steps to Scale Internet of Things (IoT)Steps to Scale Internet of Things (IoT)
Steps to Scale Internet of Things (IoT)
 
SplunkLive! Zurich 2018: Integrating Metrics and Logs
SplunkLive! Zurich 2018: Integrating Metrics and LogsSplunkLive! Zurich 2018: Integrating Metrics and Logs
SplunkLive! Zurich 2018: Integrating Metrics and Logs
 
How to maximize profit from IoT by using data platform - Albert Lewandowski, ...
How to maximize profit from IoT by using data platform - Albert Lewandowski, ...How to maximize profit from IoT by using data platform - Albert Lewandowski, ...
How to maximize profit from IoT by using data platform - Albert Lewandowski, ...
 
The IoT Food Chain – Picking the Right Dining Partner is Important with Dean ...
The IoT Food Chain – Picking the Right Dining Partner is Important with Dean ...The IoT Food Chain – Picking the Right Dining Partner is Important with Dean ...
The IoT Food Chain – Picking the Right Dining Partner is Important with Dean ...
 
IoT World Forum Press Conference - 10.14.2014
IoT World Forum Press Conference - 10.14.2014IoT World Forum Press Conference - 10.14.2014
IoT World Forum Press Conference - 10.14.2014
 
Learn how to make your IoT pilot projects and POCs successful
Learn how to make your IoT pilot projects and POCs successfulLearn how to make your IoT pilot projects and POCs successful
Learn how to make your IoT pilot projects and POCs successful
 
IoT Implementation and Security Best Practices
IoT Implementation and Security Best PracticesIoT Implementation and Security Best Practices
IoT Implementation and Security Best Practices
 
Securing Your Digital Transformation: Cybersecurity and You
Securing Your Digital Transformation: Cybersecurity and YouSecuring Your Digital Transformation: Cybersecurity and You
Securing Your Digital Transformation: Cybersecurity and You
 
Bitrock manufacturing
Bitrock manufacturing Bitrock manufacturing
Bitrock manufacturing
 
Microservices: The Future-Proof Framework for IoT
Microservices: The Future-Proof Framework for IoTMicroservices: The Future-Proof Framework for IoT
Microservices: The Future-Proof Framework for IoT
 
Challenges & Applications in the Industrial Internet of Things (IoT)
Challenges & Applications in the Industrial Internet of Things (IoT)Challenges & Applications in the Industrial Internet of Things (IoT)
Challenges & Applications in the Industrial Internet of Things (IoT)
 
Oracle Cloud Café IOT 12 avril 2016
Oracle Cloud Café IOT 12 avril 2016Oracle Cloud Café IOT 12 avril 2016
Oracle Cloud Café IOT 12 avril 2016
 
Oracle Cloud Café IoT 12-APR-2016
Oracle Cloud Café IoT 12-APR-2016Oracle Cloud Café IoT 12-APR-2016
Oracle Cloud Café IoT 12-APR-2016
 
Successful Industrial IoT Patterns
Successful Industrial IoT PatternsSuccessful Industrial IoT Patterns
Successful Industrial IoT Patterns
 
Framework and Product Comparison for Big Data Log Analytics and ITOA
Framework and Product Comparison for Big Data Log Analytics and ITOA Framework and Product Comparison for Big Data Log Analytics and ITOA
Framework and Product Comparison for Big Data Log Analytics and ITOA
 
Challenges & Application In Industrial IoT by Sachin Pukale, machinepulse
Challenges & Application In Industrial IoT by Sachin Pukale, machinepulseChallenges & Application In Industrial IoT by Sachin Pukale, machinepulse
Challenges & Application In Industrial IoT by Sachin Pukale, machinepulse
 
Azure - a secure platform for source-to-pay
Azure - a secure platform for source-to-payAzure - a secure platform for source-to-pay
Azure - a secure platform for source-to-pay
 

More from Splunk

More from Splunk (20)

.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine
 
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
 
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica).conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
 
.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International
 
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett .conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
 
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär).conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
 
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu....conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
 
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever....conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
 
.conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex).conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex)
 
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
 
Splunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11ySplunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11y
 
Splunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go KölnSplunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go Köln
 
Splunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go KölnSplunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go Köln
 
Data foundations building success, at city scale – Imperial College London
 Data foundations building success, at city scale – Imperial College London Data foundations building success, at city scale – Imperial College London
Data foundations building success, at city scale – Imperial College London
 
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
 
SOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security WebinarSOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security Webinar
 
.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session
 
.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote
 
.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session
 
.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session
 

Recently uploaded

Recently uploaded (20)

Less Is More: Utilizing Ballerina to Architect a Cloud Data Platform
Less Is More: Utilizing Ballerina to Architect a Cloud Data PlatformLess Is More: Utilizing Ballerina to Architect a Cloud Data Platform
Less Is More: Utilizing Ballerina to Architect a Cloud Data Platform
 
Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..
 
WSO2 Micro Integrator for Enterprise Integration in a Decentralized, Microser...
WSO2 Micro Integrator for Enterprise Integration in a Decentralized, Microser...WSO2 Micro Integrator for Enterprise Integration in a Decentralized, Microser...
WSO2 Micro Integrator for Enterprise Integration in a Decentralized, Microser...
 
API Governance and Monetization - The evolution of API governance
API Governance and Monetization -  The evolution of API governanceAPI Governance and Monetization -  The evolution of API governance
API Governance and Monetization - The evolution of API governance
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
Design and Development of a Provenance Capture Platform for Data Science
Design and Development of a Provenance Capture Platform for Data ScienceDesign and Development of a Provenance Capture Platform for Data Science
Design and Development of a Provenance Capture Platform for Data Science
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital Adaptability
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
ChatGPT and Beyond - Elevating DevOps Productivity
ChatGPT and Beyond - Elevating DevOps ProductivityChatGPT and Beyond - Elevating DevOps Productivity
ChatGPT and Beyond - Elevating DevOps Productivity
 
JohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptxJohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptx
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Stronger Together: Developing an Organizational Strategy for Accessible Desig...
Stronger Together: Developing an Organizational Strategy for Accessible Desig...Stronger Together: Developing an Organizational Strategy for Accessible Desig...
Stronger Together: Developing an Organizational Strategy for Accessible Desig...
 

SplunkLive! Utrecht 2018 - Customer presentation: Irdeto

  • 1. Jan-Jaap Oosterwijk Technology Evangelist Predictive Monitoring & Efficient Incident Response Tuesday, 20 November, 2018 DeFabrique, Utrecht, the Netherlands Constantin Bajireanu Manager, Service Operations Center
  • 2.
  • 3. 70% OF EMPLOYEES ARE IN ENGINEERING/RESEARCH/ DEVELOPMENT +5 BILLION DEVICES AND APPLICATIONS SECURED SERVING 400+ CUSTOMERS IN 75+ COUNTRIES 236 PATENTS & 268 PATENTS PENDING IRDETO IS THE WORLD LEADER IN DIGITAL PLATFORM SECURITY NEARLY 1,000 SECURITY EXPERTS EMPLOYED +15 LOCATIONS COVERING 6 CONTINENTS
  • 4. End-to-End Irdeto 360 Security Portfolio Production Content Aggregation Distribution and promotion Consumption Content Owners Broadcasters Distributors Devices ConsumerSport Rights Holders
  • 5. IRDETO’S VISION To build a secure future, where people can embrace connectivity without fear. Irdeto protects platforms and applications for media & entertainment, games, connected transport and IoT connected industries.
  • 6. 6 Service Operations Center Incident Management ▶ Incident registration ▶ Triaging and initial troubleshooting ▶ Standard resolution procedures ▶ Escalation Monitoring ▶ Service availability ▶ Capacity ▶ Health-check and Performance
  • 7. How We Got Started ▶ In 2013 we started offering access to our products as managed service and established a 24/7 Service Operations Center. ▶ Build monitoring framework ▶ Define and implement incident management process ▶ Monitoring infrastructure is important... but not enough.. by far. ▶ Troubleshooting requires logs... logs... and more logs.
  • 8. Our past monitoring framework Applications Networks Servers Public Cloud Web Services/Global Events Alerts Logs Service Operations Center Monitoring Incident Logs Logs Troubleshooting Metrics Events Logs
  • 9. Our present monitoring framework Applications Networks Servers Public Cloud Web Services/Global Logs Service Operations Center Monitoring Logs Logs Metrics Events Logs Alerts Alerts Events Incident Dashboards Troubleshooting
  • 10. 10 Present ▶ Using Splunk since 2013 ▶ Currently at 100Gb a day ▶ What’s in Splunk today ▶ Application logs ▶ Web-server logs ▶ AWS elb/alb logs ▶ Infrastructure logs ▶ Some metrics Ingest Measure Investigate Dashboard Alert Set Treshold Observe Trend Alert Repeat
  • 11. 11 What’s been monitored ▶ Business metrics ▶ Number or requests ▶ Error rate ▶ Response time ▶ Trends ▶ Sudden drop in traffic ▶ Sudden increase in errors
  • 12. Our Splunk Infrastructure - past AWS AWS Region A AWS Region B
  • 13. Our Splunk Infrastructure - current AWS AWS Region A AWS Region B
  • 14. Few facts ▶ 328 clients ▶ 340 dashboards ▶ 84k alerts-scheduled / day ▶ 1.44M searches / day
  • 15. What’s next? ▶ More logs into Splunk ▶ Ingest metrics into Splunk ▶ Introduce ITSI ▶Correlation of events during incident investigation ▶Dashboards, Dashboards, Dashboards ▶Anomaly detection ▶ML ▶ Enriched alerts with VictorOps
  • 16. Machine learning Our future monitoring framework Applications Networks Servers Public Cloud Web Services/Global Logs Service Operations Center Monitoring Logs Logs Troubleshooting Metrics Events Logs Alerts Events Incident Dashboards Predictive Analytics Preventative Maintenance ITSI
  • 17. © 2018 SPLUNK INC. 1. Monitor what’s important for your customers 2. Use the top-down approach with KPI definition. 3. Aggregate, Trend and Conquer Key Takeaways