Story
6sense Extends Splunk Observability Across Incident Response
6sense, an information technology organization in the United States, uses Splunk Observability from Splunk to support incident response for on-call engineers.
Value results
| Category | Value result |
|---|---|
| Capability | Incident response stays visible to adjacent teams through Splunk Observability |
| Capability | On-call engineers work from the same Splunk Observability record for log investigation |
| Capability | Log investigation can be reviewed without waiting on a personal export |
Story
Inside 6sense, incident response used to depend on whoever still had the latest file. That pattern is common in information technology groups working out of the United States. On-call engineers needed a system that would still make sense after the original project team moved on.
6sense uses Splunk Observability from Splunk as the working layer for log investigation. Splunk (a Cisco company) is a data platform for security and observability, used to search machine data and investigate incidents. The practical change is simple: incident response has a home, and reviews happen there instead of in a forwarded thread.
Nothing in this writeup invents a savings number. What 6sense gets from Splunk is a durable place to run incident response and a way for on-call engineers to see the same log investigation at the same time.