Company
Date Published
Author
Jocelyn Renouf
Word count
1421
Language
English
Hacker News points
None

Summary

Orange Business Services, a division of Orange Group serving 253 million customers in 26 countries, is modernizing its Security Information and Event Management (SIEM) system using the Elastic Stack to enhance its security monitoring capabilities. By integrating Elastic, the company aims to achieve faster investigation times and simplify data integration, leveraging Elastic's machine learning features to detect anomalies that traditional systems could not. The implementation includes creating a proof of concept within three months, utilizing Elasticsearch, Logstash, Kibana, and Beats across 80 servers to process nearly 100 billion logs. The new system centralizes data, allowing for improved network anomaly detection and efficient data management, and it employs Elastic's Common Schema to facilitate machine learning applications. The company plans to further enhance its security measures by integrating Elastic Security for greater automation and endpoint protection, which is expected to boost productivity and streamline security operations.