Snowflake has launched a new Cybersecurity workload that enables cybersecurity teams to better protect their enterprises with the Data Cloud. Using Snowflake’s platform and an extensive ecosystem of partners delivering security capabilities with connected applications, cybersecurity teams can quickly gain visibility and automation at cloud-scale.
Organisations today are faced with a continuously evolving threat landscape, with 55% of security pros reporting that their organisation experienced an incident or breach involving supply chains or third-party providers in the past 12 months, according to Forrester*. Current security architectures built around legacy security and information management systems (SIEMs) are not designed to handle the volume and variety of data necessary to stay ahead of cyberthreats. With legacy SIEMs imposing restrictive ingest costs, limited retention windows, and proprietary query languages, security teams struggle to gain the visibility they need to protect their organisations.
With Snowflake’s Cybersecurity workload, customers gain access to the power and elasticity of Snowflake’s platform to natively handle structured, semi-structured, and unstructured logs. Customers are able to efficiently store years of high-volume data, search with scalable on-demand compute resources, and gain insights using universal languages like SQL and Python, currently in private preview. With Snowflake, organisations can also unify their security data with enterprise data in a single source of truth, enabling contextual data from HR systems or IT asset inventories to inform detections and investigations for higher fidelity alerts, and running fast queries on massive amounts of data. Teams gain unified visibility across their security posture, eliminating data silos without prohibitive data ingest or retention costs. Beyond threat detection and response, the Cybersecurity workload supports a broad range of use cases including security compliance, cloud security, identity and access, vulnerability management, and more.
TripActions, the leading all-in-one travel, corporate card, and expense management solution, is investing in its long-term cybersecurity data strategy with the Data Cloud.
“With Snowflake as our security data lake, we are able to simplify our security program architecture and remove data management overhead,” said Prabhath Karanth, Sr. Director of Security, Compliance & Trust, TripActions. “Snowflake has been vital in helping us gain a complete picture of our security posture, eliminating blind spots and reducing noise so we can continue to provide user trust where it matters most. Deploying a modern technology stack from Snowflake is a pivotal piece of our cybersecurity strategy.”