InfoTechTarget and Informa Tech's Digital Businesses Combine.

Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.

Enrichment: Better Data In, Better Response Times Out

Presented by

Carley Rosato, Staff Solutions Engineer, Cribl and Shawn Canon, Threat Management Consultant, Aflac

About this talk

Context is king–that’s why optimizing your data, enriching it in the stream, and having the ability to see it and tweak it before sending it into analytics tools or storage can be a game changer. When you are reviewing or correlating the data to troubleshoot, run investigations and respond, think how much time your team can save by having the right geolocation, asset, timestamp and even threat intel already associated with the log data? We had a fun time making this work–and you can too. We’ll show how you can set up and use a Redis cache along with Cribl Stream to enhance your data before sending it to its destination. We’ll cover how we imported a 34 million row CSV file into Redis and use the Redis function to match fields to records to add a new field that is used for faster identification of data once it is in Splunk.
Cribl

Cribl

26313 subscribers199 talks
Cribl is the Data Engine for IT and Security
Cribl, the Data Engine for IT and Security, empowers organizations to transform their data strategy. Customers use Cribl to analyze, collect, process, and route all IT and security data, delivering the choice, control, and flexibility required to adapt to their ever-changing needs. Interested in seeing first-hand how Cribl can support your use case? Sign up for Cribl.Cloud and process up to 1TB/day, for free! https://cribl.io/cribl-cloud/try-cribl-cloud/
Related topics