SlideShare a Scribd company logo
April 9, 2015
Northrop Grumman Information
Systems (NGIS)
End-to-End Monitoring
Unified Performance
Dashboard
Approved for Public Release #15-0413; Unlimited Distribution
UPD E2E Team
Calvin Smith
Jason Liu
Rich Galloway
Michael Rodriguez
About Northrop Grumman
2
• Global provider of advanced solutions that deliver timely,
enabling information to where it is needed most for our
military, intelligence, civilian, state and local, and
commercial customers.
• NGIS Vision/Mission: Our mission is to be at the forefront
of technology and innovation, delivering superior capability
and performance in tandem with maximized cost
efficiencies.
• 17,000+ employees, 50 states, 18 countries
• Headquarters in McLean, VA
Approved for Public Release #15-0413; Unlimited Distribution
About Us
The End-to-End Monitoring team supports federal,
state and local government programs, specializing in
cyber and performance monitoring.
 Cal - 28+ years in networking & cyber, 10 years in
continuous & end-to-end monitoring architectures. In his
spare time he is an avid music collector, IT cloud tech
enthusiast and road warrior.
 Rich – 27 years in fault-tolerant, high-volume computing; 3
years in continuous and end-to-end monitoring. 20-year
Habitat for Humanity volunteer.
 Michael – 8 years in .com engineering and advanced
analytics; 4 years in continuous and end-to-end
monitoring. Supporter of Central Texas Dachshund
Rescue and member of Extra Life. An organization that
raises money through gaming for Dell Children’s Medical
Center of Texas.
3
Top 3 Agency IT Initiatives
4
• Enterprise Application Reliability and Availability
• Visibility into Enterprise Application Performance issues from the End-
User Perspective
• Dynamic End-to-End Monitoring and Reporting
Approved for Public Release #15-0413; Unlimited Distribution
Agency IT Challenges
5
Complex IT Environment
– State-wide presence
– 11 Regions
– 1,000+ field sites
– Thousands of users
– Thousands of infrastructure devices and servers
Data Difficulties
– Many disparate data sources, highly complex network environment
– Siloed information
– Hard to aggregate, correlate and analyze information in real time
Availability Issues
– Impacts end-user productivity within agency
– Disrupts delivery of public-facing citizen services
Approved for Public Release #15-0413; Unlimited Distribution
Solution CONOPS
Dynamic Dashboards inside a Correlated Fused Data Environment
6
• Splunk-based dashboard application written in Python using DB-Connect
(SQL calls), Splunk forwarders, and custom APIs for data ingest
• Currently integrating 15+ vendor tools using Splunk as a correlated event-
driven, fused data environment providing contextual visual analytics,
dynamic baseline and trending with prediction-based knowledge-base
• Agency Data sources:
 Syslog and event data from enterprise vendor toolsets used for monitoring of
endpoints, network routers and switches, application servers and data center
infrastructure
 Web or enterprise application transaction data
 Agency legacy systems supporting systems and infrastructure management,
change management, trouble ticket, change management: CA, BMC, Oracle,
EMC, Hitachi, Microsoft, HP, Precise, et.al.
• Dashboards unique to Key Stakeholders
 Executive – Business insight on citizen service delivery, customer activity
 Operations – Real-time KPI tracking, dynamic baseline, trending & prediction
 Technical – Device detail of endpoints, network, application & data center
Approved for Public Release #15-0413; Unlimited Distribution
UPD Application CONOPS
• Acceptable Performance Range (APR) – The APR is dynamically determined based
on advanced analytics and machine-learning algorithms. It is continuously generated
based on historical and real-time data. There are no static, defined thresholds.
• Advanced Analytics – A moving average is used to calculate and analyze data points
through a series of minute-to-minute averages within a given timeframe. This process is
used to create UPD metric baselines and detect hidden performance patterns.
• Dynamic Color Coding and Letter Grades – A color scheme using green, yellow and
red applied to dashboard metrics and maps based on dynamic changes in the APR.
Similarly, letter grades ‘A-B-C-D-F’ are used for easier understanding of complex data.
• Predictive Analytics (Machine-Learning) – The dashboard dynamically extracts and
learns from application performance information (i.e., historical and real-time) in order to
determine patterns and predict future events.
• Quality of Experience – A derived metric capturing end-to-end performance across an
enterprise network. KPIs are calculated, combined and weighted to measure potential
risk factors contributing to application slowness from the end-user perspective.
7
8
“Our
dashboards
provide
integrated
visual analytics
allowing
customers to
visually interact
with their data
to better
collaborate and
share results”
Performance Dashboard Visual Analytics
Texas Interactive “Geo-map” drill-down to regions, cities, field-sites, devices
Executive Performance Dashboard
Business Insight & Intelligence driving service delivery
9
“Provides key
insight and
intelligence by
transforming
raw data into
visually
meaningful &
useful
information to
better manage
the business”
Approved for Public Release #15-0413; Unlimited Distribution
Operations Performance Dashboard
Baseline & Trending, Correlated Alerts, Prediction, Capacity Planning
10
“Provides easy
access to key
information at
scale for
correlated
alerts, dynamic
baseline &
trending
analysis,
prediction
analysis and
capacity
planning”
Approved for Public Release #15-0413; Unlimited Distribution
11
Technical Performance Dashboard
Detailed device and traffic situational awareness
“Ability to
investigate,
correlate and
mitigate issues
in real-time;
comprehensive
situational
awareness at
the device level
for proactive
response”
Approved for Public Release #15-0413; Unlimited Distribution
End-to-End Monitoring Capabilities
12
• Visibility into end user issues with the application
• Dashboards allow reporting to various agency
stakeholders – can determine what’s going on in
their network at a glance
• Reliability and uptime of the applications –
increased availability
• State operation centers – teams become more
efficient and proactive
“Our solution
helps Data Center
Operations staff
to proactively
monitor the
security,
availability and
performance of
critical
applications that
provide critical
e-gov services.”
Approved for Public Release #15-0413; Unlimited Distribution
Solution Benefits
Bring Immediate Value to Customer
13
• Leverages existing IT Investments
• Data consistency & Relevance
– All stakeholders view the same enterprise source data
– Dashboards present data that is tailored and targeted for different stakeholders
• Baseline and Trending Analysis
– Baseline, then trend up or down based on configurable time intervals
– Predictions based on historical information mapped to current events
• Troubleshooting Efficiency
– Timely triage – determine root cause and engage right people faster
– Decrease MTTR from hours to minutes
– Proactive vs. Reactive ability to avoid outages and lessen impact
• Interactive Visual Analytics
– Situational awareness for cross-team collaboration and increased understanding
– Allows stakeholders to visually interact with data to better collaborate and share
– Reporting based on role-based access
– Hidden pattern detection to discover unknown anomalies and speed remediation
Approved for Public Release #15-0413; Unlimited Distribution
Next Steps
• Continuous Improvement – Data Interfaces and data feeds, Splunk
saved searches requires continual maintenance and upkeep
• Continue to expand current end-to-monitoring capabilities into other
enterprise organizational components to provide complete “end-to-end
visibility” to support efficient delivery of key enterprise services
• Expand in other areas:
– Enhanced Network Monitoring
– Security Operations Monitoring
– Enterprise Application Performance Monitoring
– Extend current monitoring to other key Enterprise Network Environments
• Add additional data sources to provide greater Big Data Fidelity & Visual
Analytics thereby reducing complexity and improving collaboration
14
Approved for Public Release #15-0413; Unlimited Distribution
Points of Contact
Karen Wilson
Program Manager
Office: 512-374-4199
Email: Karen.Wilson@ngc.com
Calvin Smith
Cyber Technologist, Solutions Architect & Project Lead
Office: 512-374-4136
Email: ch.smith@ngc.com
Dawn Doyle
Senior Consultant, Strategic Partnerships, Inc.
Office: 512-531-3943
Email: ddoyle@spartnerships.com
15
Gov Day Austin Customer Presentation - Northrop Grumman Information Systems

More Related Content

What's hot

Gross, Steven 2016
Gross, Steven 2016Gross, Steven 2016
Gross, Steven 2016Steven Gross
 
NZS-4555 - IT Analytics Keynote - IT Analytics for the Enterprise
NZS-4555 - IT Analytics Keynote - IT Analytics for the EnterpriseNZS-4555 - IT Analytics Keynote - IT Analytics for the Enterprise
NZS-4555 - IT Analytics Keynote - IT Analytics for the Enterprise
IBM z Systems Software - IT Service Management
 
Mobile GIS - Enabling Field Workers and Managers
Mobile GIS - Enabling Field Workers and ManagersMobile GIS - Enabling Field Workers and Managers
Mobile GIS - Enabling Field Workers and Managers
Tata Consultancy Services
 
The ZDLC Brief
The ZDLC BriefThe ZDLC Brief
The ZDLC Brief
Dr. Bippin Makoond
 
Honam petrochemic
Honam petrochemicHonam petrochemic
Honam petrochemic
niz73
 
GIS applications - General
GIS applications - GeneralGIS applications - General
GIS applications - General
Lingaraja Sahu
 
Trak eye intro
Trak eye introTrak eye intro
Trak eye intro
Tresbu Technologies
 
BDPA Cincinnati: 'Big Data - Friend or Foe?'
BDPA Cincinnati: 'Big Data - Friend or Foe?' BDPA Cincinnati: 'Big Data - Friend or Foe?'
BDPA Cincinnati: 'Big Data - Friend or Foe?'
BDPA Education and Technology Foundation
 
How to Get to ‘One Source of Truth’ on Large, Multi-Year Programs
How to Get to ‘One Source of Truth’ on Large, Multi-Year ProgramsHow to Get to ‘One Source of Truth’ on Large, Multi-Year Programs
How to Get to ‘One Source of Truth’ on Large, Multi-Year Programs
Jeffrey Lydon
 
Kofax TotalAgility for Trailblazers
Kofax TotalAgility for TrailblazersKofax TotalAgility for Trailblazers
Kofax TotalAgility for Trailblazers
Kofax
 
CreditDimensions - Data Management Specialist {e-book}
CreditDimensions - Data Management Specialist {e-book}CreditDimensions - Data Management Specialist {e-book}
CreditDimensions - Data Management Specialist {e-book}
CreditDimensions
 
5063 - IT Operations Analytics Bridging Business and IT
5063 - IT Operations Analytics  Bridging Business and IT5063 - IT Operations Analytics  Bridging Business and IT
5063 - IT Operations Analytics Bridging Business and IT
IBM z Systems Software - IT Service Management
 
Improving the Accuracy of Variable Sales Compensation Forecasts
Improving the Accuracy of Variable Sales Compensation ForecastsImproving the Accuracy of Variable Sales Compensation Forecasts
Improving the Accuracy of Variable Sales Compensation ForecastsCallidus Software
 
Netcool OMNIbus Customer Case
Netcool OMNIbus Customer CaseNetcool OMNIbus Customer Case
Netcool OMNIbus Customer Case
IBM Danmark
 
Implementing a cpms as part of an overall it strategy master works vers...
Implementing a cpms as part of an overall it strategy   master works vers...Implementing a cpms as part of an overall it strategy   master works vers...
Implementing a cpms as part of an overall it strategy master works vers...aurigo
 
Michael Marcus Resume JAN 2015
Michael Marcus Resume JAN 2015Michael Marcus Resume JAN 2015
Michael Marcus Resume JAN 2015Michael Marcus
 
Just Say No to Spreadsheets: A Practical Approach to Automating Capacity Mana...
Just Say No to Spreadsheets: A Practical Approach to Automating Capacity Mana...Just Say No to Spreadsheets: A Practical Approach to Automating Capacity Mana...
Just Say No to Spreadsheets: A Practical Approach to Automating Capacity Mana...
Precisely
 

What's hot (18)

Gross, Steven 2016
Gross, Steven 2016Gross, Steven 2016
Gross, Steven 2016
 
NZS-4555 - IT Analytics Keynote - IT Analytics for the Enterprise
NZS-4555 - IT Analytics Keynote - IT Analytics for the EnterpriseNZS-4555 - IT Analytics Keynote - IT Analytics for the Enterprise
NZS-4555 - IT Analytics Keynote - IT Analytics for the Enterprise
 
Mobile GIS - Enabling Field Workers and Managers
Mobile GIS - Enabling Field Workers and ManagersMobile GIS - Enabling Field Workers and Managers
Mobile GIS - Enabling Field Workers and Managers
 
The ZDLC Brief
The ZDLC BriefThe ZDLC Brief
The ZDLC Brief
 
Honam petrochemic
Honam petrochemicHonam petrochemic
Honam petrochemic
 
GIS applications - General
GIS applications - GeneralGIS applications - General
GIS applications - General
 
Trak eye intro
Trak eye introTrak eye intro
Trak eye intro
 
BDPA Cincinnati: 'Big Data - Friend or Foe?'
BDPA Cincinnati: 'Big Data - Friend or Foe?' BDPA Cincinnati: 'Big Data - Friend or Foe?'
BDPA Cincinnati: 'Big Data - Friend or Foe?'
 
How to Get to ‘One Source of Truth’ on Large, Multi-Year Programs
How to Get to ‘One Source of Truth’ on Large, Multi-Year ProgramsHow to Get to ‘One Source of Truth’ on Large, Multi-Year Programs
How to Get to ‘One Source of Truth’ on Large, Multi-Year Programs
 
Kofax TotalAgility for Trailblazers
Kofax TotalAgility for TrailblazersKofax TotalAgility for Trailblazers
Kofax TotalAgility for Trailblazers
 
CreditDimensions - Data Management Specialist {e-book}
CreditDimensions - Data Management Specialist {e-book}CreditDimensions - Data Management Specialist {e-book}
CreditDimensions - Data Management Specialist {e-book}
 
5063 - IT Operations Analytics Bridging Business and IT
5063 - IT Operations Analytics  Bridging Business and IT5063 - IT Operations Analytics  Bridging Business and IT
5063 - IT Operations Analytics Bridging Business and IT
 
Improving the Accuracy of Variable Sales Compensation Forecasts
Improving the Accuracy of Variable Sales Compensation ForecastsImproving the Accuracy of Variable Sales Compensation Forecasts
Improving the Accuracy of Variable Sales Compensation Forecasts
 
Netcool OMNIbus Customer Case
Netcool OMNIbus Customer CaseNetcool OMNIbus Customer Case
Netcool OMNIbus Customer Case
 
Implementing a cpms as part of an overall it strategy master works vers...
Implementing a cpms as part of an overall it strategy   master works vers...Implementing a cpms as part of an overall it strategy   master works vers...
Implementing a cpms as part of an overall it strategy master works vers...
 
Michael Marcus Resume JAN 2015
Michael Marcus Resume JAN 2015Michael Marcus Resume JAN 2015
Michael Marcus Resume JAN 2015
 
Just Say No to Spreadsheets: A Practical Approach to Automating Capacity Mana...
Just Say No to Spreadsheets: A Practical Approach to Automating Capacity Mana...Just Say No to Spreadsheets: A Practical Approach to Automating Capacity Mana...
Just Say No to Spreadsheets: A Practical Approach to Automating Capacity Mana...
 
DenisePierceResume
DenisePierceResumeDenisePierceResume
DenisePierceResume
 

Similar to Gov Day Austin Customer Presentation - Northrop Grumman Information Systems

Splunk MINT and Stream Breakout
Splunk MINT and Stream BreakoutSplunk MINT and Stream Breakout
Splunk MINT and Stream Breakout
Splunk
 
Implementing Advanced Analytics Platform
Implementing Advanced Analytics PlatformImplementing Advanced Analytics Platform
Implementing Advanced Analytics Platform
Arvind Sathi
 
Anshuman sahu
Anshuman sahuAnshuman sahu
Anshuman sahu
Anshuman Sahu
 
Big Data Everywhere Chicago: Platfora - Practices for Customer Analytics on H...
Big Data Everywhere Chicago: Platfora - Practices for Customer Analytics on H...Big Data Everywhere Chicago: Platfora - Practices for Customer Analytics on H...
Big Data Everywhere Chicago: Platfora - Practices for Customer Analytics on H...
BigDataEverywhere
 
Leverage Sage Business Intelligence for Your Organization
Leverage Sage Business Intelligence for Your OrganizationLeverage Sage Business Intelligence for Your Organization
Leverage Sage Business Intelligence for Your Organization
RKLeSolutions
 
Esouag r12 presentation
Esouag r12 presentationEsouag r12 presentation
Esouag r12 presentation
Ishtiaq Khan
 
Anshuman sahu
Anshuman sahuAnshuman sahu
Anshuman sahu
Anshuman Sahu
 
CIO Event - Info vista - Application Transformation
CIO Event - Info vista - Application TransformationCIO Event - Info vista - Application Transformation
CIO Event - Info vista - Application Transformation
Global Business Intel
 
Splunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
Splunk Webinar: IT Operations Demo für Troubleshooting & DashboardingSplunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
Splunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
Georg Knon
 
FINAL_Autumn 2015 Global AR Council Member Meeting Presentation - Optimizing ...
FINAL_Autumn 2015 Global AR Council Member Meeting Presentation - Optimizing ...FINAL_Autumn 2015 Global AR Council Member Meeting Presentation - Optimizing ...
FINAL_Autumn 2015 Global AR Council Member Meeting Presentation - Optimizing ...Larry Yokell
 
Splunk
SplunkSplunk
Splunk
Deep Mehta
 
Splunk MINT for Mobile Intelligence and Splunk App for Stream for Enhanced Op...
Splunk MINT for Mobile Intelligence and Splunk App for Stream for Enhanced Op...Splunk MINT for Mobile Intelligence and Splunk App for Stream for Enhanced Op...
Splunk MINT for Mobile Intelligence and Splunk App for Stream for Enhanced Op...
Splunk
 
Android Based Water Meter Reader for Water Comoanies
Android Based Water Meter Reader for Water ComoaniesAndroid Based Water Meter Reader for Water Comoanies
Android Based Water Meter Reader for Water Comoanies
COMPUTING DEV STRATEGIES
 
Cloud-Scale BGP and NetFlow Analysis
Cloud-Scale BGP and NetFlow AnalysisCloud-Scale BGP and NetFlow Analysis
Cloud-Scale BGP and NetFlow Analysis
Alex Henthorn-Iwane
 
What’s New: Splunk App for Stream and Splunk MINT
What’s New: Splunk App for Stream and Splunk MINTWhat’s New: Splunk App for Stream and Splunk MINT
What’s New: Splunk App for Stream and Splunk MINT
Splunk
 
KI_res_24_yrs_exp_big_6
KI_res_24_yrs_exp_big_6KI_res_24_yrs_exp_big_6
KI_res_24_yrs_exp_big_6keith inman
 
Transpara Visual KPI Overview - March 2017
Transpara Visual KPI Overview - March 2017Transpara Visual KPI Overview - March 2017
Transpara Visual KPI Overview - March 2017
Transpara
 
SISG Services - Overview 2016
SISG Services - Overview 2016SISG Services - Overview 2016
SISG Services - Overview 2016Dave Getty
 

Similar to Gov Day Austin Customer Presentation - Northrop Grumman Information Systems (20)

Splunk MINT and Stream Breakout
Splunk MINT and Stream BreakoutSplunk MINT and Stream Breakout
Splunk MINT and Stream Breakout
 
Implementing Advanced Analytics Platform
Implementing Advanced Analytics PlatformImplementing Advanced Analytics Platform
Implementing Advanced Analytics Platform
 
Anshuman sahu
Anshuman sahuAnshuman sahu
Anshuman sahu
 
Big Data Everywhere Chicago: Platfora - Practices for Customer Analytics on H...
Big Data Everywhere Chicago: Platfora - Practices for Customer Analytics on H...Big Data Everywhere Chicago: Platfora - Practices for Customer Analytics on H...
Big Data Everywhere Chicago: Platfora - Practices for Customer Analytics on H...
 
Leverage Sage Business Intelligence for Your Organization
Leverage Sage Business Intelligence for Your OrganizationLeverage Sage Business Intelligence for Your Organization
Leverage Sage Business Intelligence for Your Organization
 
Esouag r12 presentation
Esouag r12 presentationEsouag r12 presentation
Esouag r12 presentation
 
Krrushnan Resume - Mainframe (2)
Krrushnan Resume - Mainframe (2)Krrushnan Resume - Mainframe (2)
Krrushnan Resume - Mainframe (2)
 
Anshuman sahu
Anshuman sahuAnshuman sahu
Anshuman sahu
 
CIO Event - Info vista - Application Transformation
CIO Event - Info vista - Application TransformationCIO Event - Info vista - Application Transformation
CIO Event - Info vista - Application Transformation
 
Splunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
Splunk Webinar: IT Operations Demo für Troubleshooting & DashboardingSplunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
Splunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
 
FINAL_Autumn 2015 Global AR Council Member Meeting Presentation - Optimizing ...
FINAL_Autumn 2015 Global AR Council Member Meeting Presentation - Optimizing ...FINAL_Autumn 2015 Global AR Council Member Meeting Presentation - Optimizing ...
FINAL_Autumn 2015 Global AR Council Member Meeting Presentation - Optimizing ...
 
Splunk
SplunkSplunk
Splunk
 
Splunk MINT for Mobile Intelligence and Splunk App for Stream for Enhanced Op...
Splunk MINT for Mobile Intelligence and Splunk App for Stream for Enhanced Op...Splunk MINT for Mobile Intelligence and Splunk App for Stream for Enhanced Op...
Splunk MINT for Mobile Intelligence and Splunk App for Stream for Enhanced Op...
 
Android Based Water Meter Reader for Water Comoanies
Android Based Water Meter Reader for Water ComoaniesAndroid Based Water Meter Reader for Water Comoanies
Android Based Water Meter Reader for Water Comoanies
 
Cloud-Scale BGP and NetFlow Analysis
Cloud-Scale BGP and NetFlow AnalysisCloud-Scale BGP and NetFlow Analysis
Cloud-Scale BGP and NetFlow Analysis
 
What’s New: Splunk App for Stream and Splunk MINT
What’s New: Splunk App for Stream and Splunk MINTWhat’s New: Splunk App for Stream and Splunk MINT
What’s New: Splunk App for Stream and Splunk MINT
 
KI_res_24_yrs_exp_big_6
KI_res_24_yrs_exp_big_6KI_res_24_yrs_exp_big_6
KI_res_24_yrs_exp_big_6
 
Transpara Visual KPI Overview - March 2017
Transpara Visual KPI Overview - March 2017Transpara Visual KPI Overview - March 2017
Transpara Visual KPI Overview - March 2017
 
Sandeep_Rampalle_Resume
Sandeep_Rampalle_ResumeSandeep_Rampalle_Resume
Sandeep_Rampalle_Resume
 
SISG Services - Overview 2016
SISG Services - Overview 2016SISG Services - Overview 2016
SISG Services - Overview 2016
 

More from Splunk

.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine
Splunk
 
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
Splunk
 
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica).conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
Splunk
 
.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International
Splunk
 
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett .conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
Splunk
 
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär).conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
Splunk
 
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu....conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
Splunk
 
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever....conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
Splunk
 
.conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex).conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex)
Splunk
 
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
Splunk
 
Splunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11ySplunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk
 
Splunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go KölnSplunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go Köln
Splunk
 
Splunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go KölnSplunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go Köln
Splunk
 
Data foundations building success, at city scale – Imperial College London
 Data foundations building success, at city scale – Imperial College London Data foundations building success, at city scale – Imperial College London
Data foundations building success, at city scale – Imperial College London
Splunk
 
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk
 
SOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security WebinarSOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security Webinar
Splunk
 
.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session
Splunk
 
.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote
Splunk
 
.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session
Splunk
 
.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session
Splunk
 

More from Splunk (20)

.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine
 
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
 
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica).conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
 
.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International
 
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett .conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
 
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär).conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
 
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu....conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
 
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever....conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
 
.conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex).conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex)
 
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
 
Splunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11ySplunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11y
 
Splunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go KölnSplunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go Köln
 
Splunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go KölnSplunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go Köln
 
Data foundations building success, at city scale – Imperial College London
 Data foundations building success, at city scale – Imperial College London Data foundations building success, at city scale – Imperial College London
Data foundations building success, at city scale – Imperial College London
 
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
 
SOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security WebinarSOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security Webinar
 
.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session
 
.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote
 
.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session
 
.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session
 

Recently uploaded

Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
James Anderson
 
UiPath Test Automation using UiPath Test Suite series, part 6
UiPath Test Automation using UiPath Test Suite series, part 6UiPath Test Automation using UiPath Test Suite series, part 6
UiPath Test Automation using UiPath Test Suite series, part 6
DianaGray10
 
Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !
KatiaHIMEUR1
 
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
Neo4j
 
UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5
DianaGray10
 
20240607 QFM018 Elixir Reading List May 2024
20240607 QFM018 Elixir Reading List May 202420240607 QFM018 Elixir Reading List May 2024
20240607 QFM018 Elixir Reading List May 2024
Matthew Sinclair
 
Video Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the FutureVideo Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the Future
Alpen-Adria-Universität
 
How to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptxHow to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptx
danishmna97
 
Free Complete Python - A step towards Data Science
Free Complete Python - A step towards Data ScienceFree Complete Python - A step towards Data Science
Free Complete Python - A step towards Data Science
RinaMondal9
 
Essentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FMEEssentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FME
Safe Software
 
Artificial Intelligence for XMLDevelopment
Artificial Intelligence for XMLDevelopmentArtificial Intelligence for XMLDevelopment
Artificial Intelligence for XMLDevelopment
Octavian Nadolu
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
DanBrown980551
 
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdfObservability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Paige Cruz
 
Microsoft - Power Platform_G.Aspiotis.pdf
Microsoft - Power Platform_G.Aspiotis.pdfMicrosoft - Power Platform_G.Aspiotis.pdf
Microsoft - Power Platform_G.Aspiotis.pdf
Uni Systems S.M.S.A.
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
Guy Korland
 
zkStudyClub - Reef: Fast Succinct Non-Interactive Zero-Knowledge Regex Proofs
zkStudyClub - Reef: Fast Succinct Non-Interactive Zero-Knowledge Regex ProofszkStudyClub - Reef: Fast Succinct Non-Interactive Zero-Knowledge Regex Proofs
zkStudyClub - Reef: Fast Succinct Non-Interactive Zero-Knowledge Regex Proofs
Alex Pruden
 
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
James Anderson
 
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptxSecstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
nkrafacyberclub
 
Elizabeth Buie - Older adults: Are we really designing for our future selves?
Elizabeth Buie - Older adults: Are we really designing for our future selves?Elizabeth Buie - Older adults: Are we really designing for our future selves?
Elizabeth Buie - Older adults: Are we really designing for our future selves?
Nexer Digital
 
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
Neo4j
 

Recently uploaded (20)

Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
 
UiPath Test Automation using UiPath Test Suite series, part 6
UiPath Test Automation using UiPath Test Suite series, part 6UiPath Test Automation using UiPath Test Suite series, part 6
UiPath Test Automation using UiPath Test Suite series, part 6
 
Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !
 
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
 
UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5
 
20240607 QFM018 Elixir Reading List May 2024
20240607 QFM018 Elixir Reading List May 202420240607 QFM018 Elixir Reading List May 2024
20240607 QFM018 Elixir Reading List May 2024
 
Video Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the FutureVideo Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the Future
 
How to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptxHow to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptx
 
Free Complete Python - A step towards Data Science
Free Complete Python - A step towards Data ScienceFree Complete Python - A step towards Data Science
Free Complete Python - A step towards Data Science
 
Essentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FMEEssentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FME
 
Artificial Intelligence for XMLDevelopment
Artificial Intelligence for XMLDevelopmentArtificial Intelligence for XMLDevelopment
Artificial Intelligence for XMLDevelopment
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
 
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdfObservability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
 
Microsoft - Power Platform_G.Aspiotis.pdf
Microsoft - Power Platform_G.Aspiotis.pdfMicrosoft - Power Platform_G.Aspiotis.pdf
Microsoft - Power Platform_G.Aspiotis.pdf
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
 
zkStudyClub - Reef: Fast Succinct Non-Interactive Zero-Knowledge Regex Proofs
zkStudyClub - Reef: Fast Succinct Non-Interactive Zero-Knowledge Regex ProofszkStudyClub - Reef: Fast Succinct Non-Interactive Zero-Knowledge Regex Proofs
zkStudyClub - Reef: Fast Succinct Non-Interactive Zero-Knowledge Regex Proofs
 
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
 
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptxSecstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
 
Elizabeth Buie - Older adults: Are we really designing for our future selves?
Elizabeth Buie - Older adults: Are we really designing for our future selves?Elizabeth Buie - Older adults: Are we really designing for our future selves?
Elizabeth Buie - Older adults: Are we really designing for our future selves?
 
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
 

Gov Day Austin Customer Presentation - Northrop Grumman Information Systems

  • 1. April 9, 2015 Northrop Grumman Information Systems (NGIS) End-to-End Monitoring Unified Performance Dashboard Approved for Public Release #15-0413; Unlimited Distribution UPD E2E Team Calvin Smith Jason Liu Rich Galloway Michael Rodriguez
  • 2. About Northrop Grumman 2 • Global provider of advanced solutions that deliver timely, enabling information to where it is needed most for our military, intelligence, civilian, state and local, and commercial customers. • NGIS Vision/Mission: Our mission is to be at the forefront of technology and innovation, delivering superior capability and performance in tandem with maximized cost efficiencies. • 17,000+ employees, 50 states, 18 countries • Headquarters in McLean, VA Approved for Public Release #15-0413; Unlimited Distribution
  • 3. About Us The End-to-End Monitoring team supports federal, state and local government programs, specializing in cyber and performance monitoring.  Cal - 28+ years in networking & cyber, 10 years in continuous & end-to-end monitoring architectures. In his spare time he is an avid music collector, IT cloud tech enthusiast and road warrior.  Rich – 27 years in fault-tolerant, high-volume computing; 3 years in continuous and end-to-end monitoring. 20-year Habitat for Humanity volunteer.  Michael – 8 years in .com engineering and advanced analytics; 4 years in continuous and end-to-end monitoring. Supporter of Central Texas Dachshund Rescue and member of Extra Life. An organization that raises money through gaming for Dell Children’s Medical Center of Texas. 3
  • 4. Top 3 Agency IT Initiatives 4 • Enterprise Application Reliability and Availability • Visibility into Enterprise Application Performance issues from the End- User Perspective • Dynamic End-to-End Monitoring and Reporting Approved for Public Release #15-0413; Unlimited Distribution
  • 5. Agency IT Challenges 5 Complex IT Environment – State-wide presence – 11 Regions – 1,000+ field sites – Thousands of users – Thousands of infrastructure devices and servers Data Difficulties – Many disparate data sources, highly complex network environment – Siloed information – Hard to aggregate, correlate and analyze information in real time Availability Issues – Impacts end-user productivity within agency – Disrupts delivery of public-facing citizen services Approved for Public Release #15-0413; Unlimited Distribution
  • 6. Solution CONOPS Dynamic Dashboards inside a Correlated Fused Data Environment 6 • Splunk-based dashboard application written in Python using DB-Connect (SQL calls), Splunk forwarders, and custom APIs for data ingest • Currently integrating 15+ vendor tools using Splunk as a correlated event- driven, fused data environment providing contextual visual analytics, dynamic baseline and trending with prediction-based knowledge-base • Agency Data sources:  Syslog and event data from enterprise vendor toolsets used for monitoring of endpoints, network routers and switches, application servers and data center infrastructure  Web or enterprise application transaction data  Agency legacy systems supporting systems and infrastructure management, change management, trouble ticket, change management: CA, BMC, Oracle, EMC, Hitachi, Microsoft, HP, Precise, et.al. • Dashboards unique to Key Stakeholders  Executive – Business insight on citizen service delivery, customer activity  Operations – Real-time KPI tracking, dynamic baseline, trending & prediction  Technical – Device detail of endpoints, network, application & data center Approved for Public Release #15-0413; Unlimited Distribution
  • 7. UPD Application CONOPS • Acceptable Performance Range (APR) – The APR is dynamically determined based on advanced analytics and machine-learning algorithms. It is continuously generated based on historical and real-time data. There are no static, defined thresholds. • Advanced Analytics – A moving average is used to calculate and analyze data points through a series of minute-to-minute averages within a given timeframe. This process is used to create UPD metric baselines and detect hidden performance patterns. • Dynamic Color Coding and Letter Grades – A color scheme using green, yellow and red applied to dashboard metrics and maps based on dynamic changes in the APR. Similarly, letter grades ‘A-B-C-D-F’ are used for easier understanding of complex data. • Predictive Analytics (Machine-Learning) – The dashboard dynamically extracts and learns from application performance information (i.e., historical and real-time) in order to determine patterns and predict future events. • Quality of Experience – A derived metric capturing end-to-end performance across an enterprise network. KPIs are calculated, combined and weighted to measure potential risk factors contributing to application slowness from the end-user perspective. 7
  • 8. 8 “Our dashboards provide integrated visual analytics allowing customers to visually interact with their data to better collaborate and share results” Performance Dashboard Visual Analytics Texas Interactive “Geo-map” drill-down to regions, cities, field-sites, devices
  • 9. Executive Performance Dashboard Business Insight & Intelligence driving service delivery 9 “Provides key insight and intelligence by transforming raw data into visually meaningful & useful information to better manage the business” Approved for Public Release #15-0413; Unlimited Distribution
  • 10. Operations Performance Dashboard Baseline & Trending, Correlated Alerts, Prediction, Capacity Planning 10 “Provides easy access to key information at scale for correlated alerts, dynamic baseline & trending analysis, prediction analysis and capacity planning” Approved for Public Release #15-0413; Unlimited Distribution
  • 11. 11 Technical Performance Dashboard Detailed device and traffic situational awareness “Ability to investigate, correlate and mitigate issues in real-time; comprehensive situational awareness at the device level for proactive response” Approved for Public Release #15-0413; Unlimited Distribution
  • 12. End-to-End Monitoring Capabilities 12 • Visibility into end user issues with the application • Dashboards allow reporting to various agency stakeholders – can determine what’s going on in their network at a glance • Reliability and uptime of the applications – increased availability • State operation centers – teams become more efficient and proactive “Our solution helps Data Center Operations staff to proactively monitor the security, availability and performance of critical applications that provide critical e-gov services.” Approved for Public Release #15-0413; Unlimited Distribution
  • 13. Solution Benefits Bring Immediate Value to Customer 13 • Leverages existing IT Investments • Data consistency & Relevance – All stakeholders view the same enterprise source data – Dashboards present data that is tailored and targeted for different stakeholders • Baseline and Trending Analysis – Baseline, then trend up or down based on configurable time intervals – Predictions based on historical information mapped to current events • Troubleshooting Efficiency – Timely triage – determine root cause and engage right people faster – Decrease MTTR from hours to minutes – Proactive vs. Reactive ability to avoid outages and lessen impact • Interactive Visual Analytics – Situational awareness for cross-team collaboration and increased understanding – Allows stakeholders to visually interact with data to better collaborate and share – Reporting based on role-based access – Hidden pattern detection to discover unknown anomalies and speed remediation Approved for Public Release #15-0413; Unlimited Distribution
  • 14. Next Steps • Continuous Improvement – Data Interfaces and data feeds, Splunk saved searches requires continual maintenance and upkeep • Continue to expand current end-to-monitoring capabilities into other enterprise organizational components to provide complete “end-to-end visibility” to support efficient delivery of key enterprise services • Expand in other areas: – Enhanced Network Monitoring – Security Operations Monitoring – Enterprise Application Performance Monitoring – Extend current monitoring to other key Enterprise Network Environments • Add additional data sources to provide greater Big Data Fidelity & Visual Analytics thereby reducing complexity and improving collaboration 14 Approved for Public Release #15-0413; Unlimited Distribution
  • 15. Points of Contact Karen Wilson Program Manager Office: 512-374-4199 Email: Karen.Wilson@ngc.com Calvin Smith Cyber Technologist, Solutions Architect & Project Lead Office: 512-374-4136 Email: ch.smith@ngc.com Dawn Doyle Senior Consultant, Strategic Partnerships, Inc. Office: 512-531-3943 Email: ddoyle@spartnerships.com 15