Story
Sinch Uses Splunk SOAR for Security Telemetry
Sinch, an information technology organization in Sweden, uses Splunk SOAR from Splunk to support detection engineering for detection engineers.
Value results
| Category | Value result |
|---|---|
| Productivity | Handoffs in detection engineering sit in a shared queue instead of a mailbox trail |
| Risk and compliance | Fewer stalled items because security telemetry has a clear owner |
| Capability | New joiners can see how detection engineering actually runs |
Story
Information Technology work at Sinch spans more than one site, even when headquarters sits in Sweden. Security telemetry was splitting across regional habits. Detection engineers asked for a shared way to run detection engineering without freezing local judgment.
Splunk (Splunk SOAR) is what they standardized on. Splunk (a Cisco company) is a data platform for security and observability, used to search machine data and investigate incidents. Sinch uses it as the system of record for security telemetry, with detection engineers as the primary operators and other groups coming in through the same queue.
Leaders get a picture they can actually walk. Teams get fewer mystery statuses. The story is about operating change, not an unpublished percentage.