Case Study
International Airline Eliminates Mainframe Security Blind Spot with Ironstream for Splunk
Challenge A large international airline uses the Splunk Enterprise platform, along with the Splunk Enterprise Security app, to monitor its systems and applications in real-time for specific security scenarios, such as data leakage, unauthorized access and anomalous activity. However, this solution did not support the company’s critical mainframe assets, causing a significant blind spot that put it at risk. They needed a log data feed for their User and Entity Behavior Analytics (UEBA) system to check for anomalies on the mainframe. Solution After evaluating potential solutions for getting mainframe logs into Splunk, the airline’s Architecture Review Board selected Precisely’s Ironstream for Splunk solution, based on its superior functionality and integration with Splunk, pl