Story
Splunk Supports Detection Engineering at Lenovo
Lenovo, an information technology organization in China, uses Splunk Cloud from Splunk to support detection engineering for detection engineers.
Value results
| Category | Value result |
|---|---|
| Risk and compliance | Detection engineers work from the same Splunk Cloud record for security telemetry |
| Risk and compliance | Security telemetry can be reviewed without waiting on a personal export |
| Capability | Detection engineering stays visible to adjacent teams through Splunk Cloud |
Story
Lenovo grew security telemetry faster than the local tools around it. From China, information technology teams still had to serve customers and internal partners who expected a straight answer. Detection engineers were the ones stitching the picture together by hand.
Rolling out Splunk Cloud put detection engineering on Splunk. Splunk (a Cisco company) is a data platform for security and observability, used to search machine data and investigate incidents. Lenovo keeps the product in the path where work already happens, so detection engineers do not context-switch into a graveyard system used only for audits.
The visible result is steadier detection engineering. Security telemetry is easier to inspect, and adjacent groups can join detection engineers without a guided tour of someone's desktop.