Splunk for Misuse

The old way: Reactive, slow tools allow misuse to continue.

Misuse of the web, network access and other resources drives up IT costs and exposes organizations to significant HR and legal risks. Every tool that can track user policy compliance, from web proxies to firewalls, has its own reporting interface and nearly all of them are slow, inflexible and hard to learn. There's no way to alert on many key policy violations without developing homegrown scripts. Most organizations just operate in reactive mode and manually pull activity when absolutely necessary, such as when an obviously disgruntled employee is terminated or one employee complains about another's Internet use.

The new way: IT Search reveals any policy violation.

Splunk indexes massive volumes of data from web proxies, firewalls, servers and any other application so you can finally see everything that users of your network are doing in real time. Instantly search for all web usage for a given user or every hit to a prohibited domain. Save and schedule searches to find any kind of policy violation proactively and get alerted via email, RSS or even trigger scripts to integrate with HR policy management workflow applications.

Talk to a Security Expert

Alex Raitz, CISSP, CCNA Expertise: Information and system security in global infrastructures

Raffael Marty, GCIA, CISSP Expertise: Risk management, network security, insider threat, fraud detection and security visualization

Ray Carney Expertise: Fraud detection, insider threat and security reporting

close

Flash required to play this video.

Click here to download the free Flash Player.

Description:

Permalink: