Story
Fresenius Uses Splunk SOAR for Security Telemetry
Fresenius, a health care organization in Germany, uses Splunk SOAR from Splunk to support detection engineering for detection engineers.
Value results
| Category | Value result |
|---|---|
| Productivity | Handoffs in detection engineering sit in a shared queue instead of a mailbox trail |
| Risk and compliance | Splunk SOAR is the governed place detection engineers use for detection engineering |
| Capability | New joiners can see how detection engineering actually runs |
Story
Inside Fresenius, detection engineering used to depend on whoever still had the latest file. That pattern is common in health care groups working out of Germany. Detection engineers needed a system that would still make sense after the original project team moved on.
Fresenius uses Splunk SOAR from Splunk as the working layer for security telemetry. Splunk (a Cisco company) is a data platform for security and observability, used to search machine data and investigate incidents. The practical change is simple: detection engineering has a home, and reviews happen there instead of in a forwarded thread.
Nothing in this writeup invents a savings number. What Fresenius gets from Splunk is a durable place to run detection engineering and a way for detection engineers to see the same security telemetry at the same time.