Splunk

Splunk

Security log analysis starter package - A low-cost package that includes everything from new installation servers, log selection, dashboard creation, log monitoring operation, and maintenance support -

In this package, we consistently provide server preparation, dashboard creation, SOC operation service, and maintenance support necessary for advanced security log monitoring using Splunk Enterprise. By using this package, you can easily and quickly start security log analysis operations.

This package includes the following 5 items.

  1. Dedicated server "Gemini appliance" ideal for Splunk
  2. Splunk Enterprise license for log collection and analysis
  3. A dashboard that summarizes alerts and event statistics from collected logs
  4. SIEM operation monitoring service that provides 24/365 security monitoring using Splunk Enterprise in the customer's environment
  5. Annual maintenance support for Splunk licenses
Macnica Splunk related services

feature

  1. Easy deployment of Splunk Enterprise
    Normally, when installing Splunk Enterprise, there are a wide range of items to consider, such as configuration consideration, selection of logs to be acquired, server and license procurement, dashboard (analysis screen) construction, and monitoring system construction. Especially when creating dashboards and building monitoring systems, knowledge of Splunk Enterprise is required in addition to knowledge of security.
    Since this service includes all the elements necessary for installation, security operation can be started simply by determining the scope of log monitoring. In addition, both the license and the Gemini Appliance, which is the server, are subject to maintenance support, so you can use it with confidence even if a problem occurs.
  2. Scope of use can be expanded to include applications other than security
    Splunk Enterprise installed in this service can be used not only for security measures, but also for various purposes such as IT infrastructure management, business process improvement, and remote work management.
    While leaving security log monitoring to this package, it is a tool for discovering new corporate value through data utilization, such as searching raw logs and creating dashboards for other purposes to check statistical information. You can also use it as

Service overview

Service name Security log analysis starter package
Provided Splunk Enterpriseの新規導入を検討している企業様
Offer price 10 million yen (excluding tax)
Package contents Splunk Enterprise license 10GB/day
Gemini Appliance IB-1050D
Splunk Enterprise License Annual Maintenance Support
Gemini Appliance Annual Maintenance Support
SIEM operation monitoring service (SOC App)

Inquiry/Document request

In charge of Macnica Splunk Co., Ltd.

Mon-Fri 8:45-17:30