Continuous Data Analysis Translating Data into Knowledge With AI 19.June 2018 meno@geminidata.com
Market Outlook Big Data and Analytics are a huge priority for the enterprise but existing solutions don t fully deliver on the Big Data promise. Gemini applies AI to automate and connect data with context. Source: IDC, 2017
The Problem The Solution: Continuous Data Analysis Data Without Context is Useless Contextualized Data Creates Knowledge and Awareness Analysis Paralysis Faster Investigations Big Data Platforms are Complex Simplified Management
Gemini Enterprise
Big Data Platform Management Automation
Gemini Enterprise Manager Purpose-built OS q Hardened OS (DoD STIG) q Common Criteria q True No-Ops experience q Physical, Virtual, Hybrid q Enterprise scalability q Predictable performance q Optional redundancy at all layers q No SAN architecture - de-centralized storage q No additional OS licenses or VM licenses q Management from a single location q Fast provisioning easy like your home router q LDAP authentication and SSO Integration Center q Splunk Apps and connectors help you solve problems faster. Data Platform Management q Get Splunk installed & configured quickly & easily Purpose-built Appliance q HW chosen specifically to run Splunk
Gemini Enterprise Manager Advanced features q Bulk Provisioning q Central Deployment and management q Create Splunk Indexer and Search Clusters Bulk Provisioning q Deploy multiple Gemini Appliances from a single central node. q Add or Remove nodes q Create node groups q Create environments q Perform upgrades centrally Simplify Splunk Configuration q Create multi-site index clusters q Create search head clusters q Several days work done in mins.
Deployment Options GEMINI ENTERPRISE: MANAGER
AI Driven Analysis: Built for Speed and Accuracy
Context is everything Context: [n] The parts of something written or spoken that immediately precede and follow a word or passage and clarify its meaning. amichaels@layton.geminidata.com Domain Admins layton.geminidata.com Hello their rdobbs@layton.geminidata.com rdobbs (Robert Dobbs) /Users/rdobbs/Desktop/ 2016 Recruitment Plan.html Robbert Dobbs RDOBBS-PC01 Backdoor:W32/Duqu Sales Attachement Blocked (malicious file) Mal/Iframe-W script Today: Unconnected entities with no context are difficult to comprehend Gemini Enterprise: Using CDA we make that same data useful
The Human Brain is Relational Which is easier to work with? Raw data tabular data or data with context?
Graphical Representation of Our Story Robert s computer sent an email to Alice with an attachment called 2016 Recruitment Plan.html. The attachment contained a malware script that is associated with a particular vulnerability related to a Black Hole Exploit Kit that was blocked by McAfee Endpoint. detected vulnerability/identified in event file/installed by Visualization + Context tells a more powerful story Can be saved for future use has attachment/is attached to sent from/sent recipient of/recipient Easy to communicate with others Story can tell itself
Accelerated Analysis with AI Automatically reads IT data and suggests next-steps to root cause AI reveals hidden relationships without complex queries No more tedious search and pivot 13
Designed to Integrate with Leading Platforms
Knowledge Preservation and Transfer
Activate Organizational Awareness with Stories Build Enterprise Knowledge and Awareness Faster Analysis through Collaboration Quickly Understand Impact and Implications 16
Single Solution. Multiple Deployment Options and Customer Success. Gemini Cloud Gemini Software Gemini Appliance Gemini Care
Use Cases Operational Risk Security Compliance ITSM Customer Satisfaction Application Dependency Mapping Multidimensional Transaction Tracing Application Performance Industrial Controls Security Data Loss Prevention Inside Threat Understand Complex Killchains Corporate IT Security HIPAA Sensitive Data Access FISMA Process Transparency IOT Compliance Service Degradation & Outages Predictive Failure Analysis Asset Discovery Service Workflow Optimization
Conclusions
Global Enterprise Customers This is way faster than previous methods for an incident investigation case. The story combined with the elements and relationships is exactly what I need to investigate an incident quickly and share information with my team. - Analyst, National Center for High Performance Computing
Who is Gemini Data? S T R A T E G I C A L L I A N C E S
Thank You
Operational Risk Security Compliance ITSM
Operational Risk home
Security home
Compliance home
ITSM home