AWS Agility + Splunk Visibility = Cloud Success. Splunk App for AWS Demo. Laura Ripans, AWS Alliance Manager

Similar documents
Splunk & Amazon Web Services

Manage AWS Services. Cost, Security, Best Practice and Troubleshooting. Principal Software Engineer. September 2017 Washington, DC

AWS Well Architected Framework

AWS Solution Architect Associate

Splunk & AWS. Gain real-time insights from your data at scale. Ray Zhu Product Manager, AWS Elias Haddad Product Manager, Splunk

PrepAwayExam. High-efficient Exam Materials are the best high pass-rate Exam Dumps

What s New at AWS? looking at just a few new things for Enterprise. Philipp Behre, Enterprise Solutions Architect, Amazon Web Services

Enroll Now to Take online Course Contact: Demo video By Chandra sir

Security Aspekts on Services for Serverless Architectures. Bertram Dorn EMEA Specialized Solutions Architect Security and Compliance

Werden Sie ein Teil von Internet der Dinge auf AWS. AWS Enterprise Summit 2015 Dr. Markus Schmidberger -

Automate best practices and operational health for your AWS resources with Trusted Advisor and AWS Health

Training on Amazon AWS Cloud Computing. Course Content

Certificate of Registration

Amazon Web Services (AWS) Solutions Architect Intermediate Level Course Content

AWS 101. Patrick Pierson, IonChannel

LINUX, WINDOWS(MCSE),

Security & Compliance in the AWS Cloud. Amazon Web Services

Serverless Computing. Redefining the Cloud. Roger S. Barga, Ph.D. General Manager Amazon Web Services

Energy Management with AWS

What s New at AWS? A selection of some new stuff. Constantin Gonzalez, Principal Solutions Architect, Amazon Web Services

Security & Compliance in the AWS Cloud. Vijay Rangarajan Senior Cloud Architect, ASEAN Amazon Web

AWS IoT Overview. July 2016 Thomas Jones, Partner Solutions Architect

Introduction to Cloud Computing

AWS Administration. Suggested Pre-requisites Basic IT Knowledge

Amazon Web Services Training. Training Topics:

About Intellipaat. About the Course. Why Take This Course?

ActiveNET. #202, Manjeera Plaza, Opp: Aditya Park Inn, Ameerpetet HYD

IBM Cloud Security for the Cloud. Amr Ismail Security Solutions Sales Leader Middle East & Pakistan

At Course Completion Prepares you as per certification requirements for AWS Developer Associate.

AWS Solutions Architect Associate (SAA-C01) Sample Exam Questions

ARCHITECTING WEB APPLICATIONS FOR THE CLOUD: DESIGN PRINCIPLES AND PRACTICAL GUIDANCE FOR AWS

Network Security & Access Control in AWS

Amazon Web Services (AWS) Training Course Content

Amazon Web Services 101 April 17 th, 2014 Joel Williams Solutions Architect. Amazon.com, Inc. and its affiliates. All rights reserved.

Grischa Baelden AWS Public Sector Account Manager, DACH. Brendan Bouffler. Worldwide Research and Technical Computing Lead

Architecting for Greater Security in AWS

Amazon Web Services. Block 402, 4 th Floor, Saptagiri Towers, Above Pantaloons, Begumpet Main Road, Hyderabad Telangana India

Who done it: Gaining visibility and accountability in the cloud

Cloud Security Strategy - Adapt to Changes with Security Automation -

HPE Digital Learner AWS Certified SysOps Administrator (Intermediate) Content Pack

AWS Security. Stephen E. Schmidt, Directeur de la Sécurité

Troubleshooting AWS App

Getting Started with AWS Security

AWS Storage Gateway. Not your father s hybrid storage. University of Arizona IT Summit October 23, Jay Vagalatos, AWS Solutions Architect

Additional Security Services on AWS

CLOUD AND AWS TECHNICAL ESSENTIALS PLUS

SAA-C01. AWS Solutions Architect Associate. Exam Summary Syllabus Questions

Amazon Linux: Operating System of the Cloud

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme

Cloud security 2.0: Joko nyt pilveen voi luottaa?

Cloud Computing. Amazon Web Services (AWS)

Best Practices for Cloud Security at Scale. Phil Rodrigues Security Solutions Architect Amazon Web Services, ANZ

Amazon Web Services. For Government, Education, and Nonprofit Organizations

Hardening AWS Environments. Automating Incident Response. AWS Compromises

AWS Certifications. Columbus Amazon Web Services Meetup - February 2018

CLOUD ECONOMICS: HOW TO QUANTIFY THE BENEFITS OF MOVING TO THE CLOUD

Minfy MS Workloads Use Case

Adopting Modern Practices for Improved Cloud Security. Cox Automotive - Enterprise Risk & Security

INTRODUCING CISCO SECURITY FOR AWS

What to expect from the session Technical recap VMware Cloud on AWS {Sample} Integration use case Services introduction & solution designs Solution su

Securing Microservices Containerized Security in AWS

Emulating Lambda to speed up development. Kevin Epstein CTO CorpInfo AWS Premier Partner

Automating Elasticity. March 2018

VMware Cloud on AWS. A Closer Look. Frank Denneman Senior Staff Architect Cloud Platform BU

Mid-Atlantic CIO Forum

The Orion Papers. AWS Solutions Architect (Associate) Exam Course Manual. Enter

High School Technology Services myhsts.org Certification Courses

NGF0502 AWS Student Slides

AWS Services for Data Migration Luke Anderson Head of Storage, AWS APAC

How to go serverless with AWS Lambda

Store, Protect, Optimize Your Healthcare Data in AWS

AWS Solution Architecture Patterns

AWS Data Security Security Update

VMware Cloud on AWS The Next Generation Hybrid Cloud Architecture

Hackproof Your Cloud: Preventing 2017 Threats for a New Security Paradigm

2013 AWS Worldwide Public Sector Summit Washington, D.C.

Managing IoT and Time Series Data with Amazon ElastiCache for Redis

Building a Self-Defending Border. Shane Baldacchino, Solutions Architect, AWS Marcus Santos, Solutions Architect, AWS

Expected Learning Outcomes Introduction To AWS

Mapping traditional security technologies to AWS Dave Walker Specialised Solutions Architect Security and Compliance Amazon Web Services UK Ltd

Cloud Computing /AWS Course Content

Managing and Auditing Organizational Migration to the Cloud TELASA SECURITY

Amazon Search Services. Christoph Schmitter

AWS Storage Gateway. Amazon S3. Amazon EFS. Amazon Glacier. Amazon EBS. Amazon EC2 Instance. storage. File Block Object. Hybrid integrated.

Lean & Mean on AWS: Cost-Effective Architectures. Constantin Gonzalez, Solutions Architect, AWS

CASE STUDY Application Migration and optimization on AWS

Deliver High- quality Streaming Media Globally with AWS and Wowza

AWS Certified Solutions Architect - Associate 2018 (SAA-001)

Microservices on AWS. Matthias Jung, Solutions Architect AWS

Lambda Architecture for Batch and Stream Processing. October 2018

VMware Cloud on AWS Technical Deck VMware, Inc.

Splunk Enterprise on the AWS Cloud

Matrix IT work Copyright Do not remove source or Attribution from any graphic or portion of graphic

Securely Access Services Over AWS PrivateLink. January 2019

Cisco Cloud Services Router 1000V and Amazon Web Services CASE STUDY

Monitoring Serverless Architectures in AWS

What is Cloud Computing? What are the Private and Public Clouds? What are IaaS, PaaS, and SaaS? What is the Amazon Web Services (AWS)?

INTRO TO AWS: SECURITY

BERLIN. 2015, Amazon Web Services, Inc. or its affiliates. All rights reserved

Simple Security for Startups. Mark Bate, AWS Solutions Architect

Transcription:

AWS Agility + Splunk Visibility = Cloud Success Splunk App for AWS Demo Laura Ripans, AWS Alliance Manager

Disruptive innovation and business transformation starts with data

I HAVE BEEN GIVEN AN AWS ACCOUNT!!! 3

Why is Splunk Important For AWS Customers? You can t protect what you can t see. Security monitoring will make or break a technology risk management program. Security requires visibility. Best Practices for Securing Workloads in Amazon Web Services Gartner, April 2015 Neil MacDonald, Greg Young Assessing the Risk: Yes, the Cloud Can Be More Secure Than Your On-Premises Environment IDC, July 2015 Pete Lindstrom Amazon Web Services Intro to AWS Security 2015 AWS Summit Series 4

Extrapolating You can t operate what you can t see. You can t manage cost for what you can t see. You can t gain business analytics for what you can t see. 5

Detailed Use Cases IT Operations What is my EBS footprint and posture across all my accounts and all my regions? Who started/stopped/restarted what instances and when? What EC2 instances are underutilized and perhaps overprovisioned? What is the traffic volume into my VPC and where is it originating from? Why are certain resources unreachable from certain subnets/vpcs? List resources with missing or nonconforming tags Security Who added that rule in the security group that protects our application servers? Where is the blocked traffic into that VPC coming from? What was the activity trail of a particular user before and after that incident? Alert me when a user imports key-pairs or when a security group allows all ports What instances are provisioned outside of a VPC, by whom and when? What security groups are defined but not attached to any resource? Cost Management How many instances am I running? What reserved instances have I purchased in the past? What is my reserved instance utilization? How much am I paying per account? How much am I using per service across all accounts? How many reserved instances should I buy based on usage? Is this account within budget this month, and how has it tracked in the last year?

True End State: Complete Hybrid Visibility Index Untapped Data: Any Source, Type, Volume End-to-End Visibility On- Premises Private Cloud Public Cloud Containers Servers Storage Online Shopping Cart Lambda Online Services Security Desktops Telecoms Web Clickstreams Web Services Networks RFID GPS Location CloudTrail Messaging Databases Config Energy Meters EC2 Application Delivery IT Operations Security, Compliance, and Fraud Business Analytics Industrial Data and the Internet of Things 7

End State: Comprehensive AWS Visibility AWS Data Sources Explore Analyze Dashboard Alert Act EC2 S3 Splunk App for AWS EMR Kinesis ELB RDS CF SNS API Gateway Redshift CloudFront Lambda CloudWatch VPC Config CloudTrail IAM R53 8

Name Brief Description Notes CloudTrail API activity audit trail Low Volume/High Value Config Change management data Low Volume/High Value Config Rules Configuration rule check/evaluation Low Volume/High Value CloudWatch Metrics System/Service metrics data High Volume Supported* List of AWS Services ad Splunk Data Sources *Non-inclusive list. More services may be supported via in-direct ingest method CloudWatch Logs Service or application logs High Volume VPC Flow Logs VPC/ Firewall logs High Volume Detailed Billing 9 Spending information for each service and account High Value ELB Elastic Load balancer logs High Volume CloudFront Content delivery network access logs High Volume S3 S3 bucket access logs High Volume S3 (ANY) Any service or application that logs into S3 High Volume Lambda Event driven computation framework High Volume Inspector Security scan/assessment Low Volume/High Value Kinesis Streams Generic streaming data High Volume IoT IoT device data High Volume SQS Simple queuing service High Volume Metadata Custom Splunk-side collector of metadata about AWS environment High Volume

Splunk App for AWS: The Value Security Topology Timeline View user activity Gain a full audit trail Detect anomalous behavior Visualize your AWS Environment View resource relationships Gain playback history Compare and correlate events View in a time-series ribbon Accelerate investigations Usage Insights Billing View EC2 utilization metrics View by account, region, instance Supports numerous AWS services Leverage machine learning toolkit Gain billing recommendations Detect security and billing anomalies Gain view into resource cost Improve RI planning / utilization Monitor actual spend vs. forecast 10

Enhance AWS Security with Splunk 11

AWS Well Architected Framework Stop guessing your capacity needs Test systems at production scale Automate to make architectural experimentation easier Allow for evolutionary architectures Data-Driven architectures Improve through game days 12

Splunk s AWS Credentials AWS Advanced Technology Partner AWS Big Data Competency AWS Security Competency AWS Government Competency AWS IoT Competency AWS MSP Technology Provider AWS Marketplace BYOL & Private Pricing Partner AWS IoT Launch partner for IoT analytics AWS Security by Design Program Partner 1 st partner with published Blueprints for AWS Lambda 1 st partner to pass SaaS extension for Well Architected framework

Demo

Thank You