Case Studies
Home > Case Studies
Technology Domains
Enhancing Security Posture with Snowflake-powered Security Data Lake
Enhancing Security Posture with Snowflake-powered Security Data Lake
NetScout Threat Intelligent App
The Splunk App for Netscout allows the user to gather benefits of Netscout threat intelligence on Splunk data.
Netskope Cloud Exchange Case Study
Crest Data collaborated with Netskope to design and develop a horizontally scalable solution that was easy to deploy on customer premises.
Google Chronicle GOLD Parser
Crest Data helped Google to adopt Chronicle GOLD parser to standardize data onboarding for all log sources and the parsing approaches for massive amounts of data.
IBM QRadar + IntSights TIP: Getting ahead of the Adversaries
Crest developed the QRadar App for IntSights integrating IntSight’s Cyber Threat Intelligence and QRadar to rationalize the threat data and surface the targeted attacks which would otherwise be “noise”.
Mission Control Plugins
We developed a number of closed and open-source Mission Control Plugins using the plugin framework across CASB, Threat Intel, EDR, VAPT, and Cloud solutions.
Databricks: Splunk Integration for Security Use Cases
Crest developed Databricks notebooks to collect and parse AWS Cloud Trail , AWS VPC logs and Syslogs data from S3 buckets into Databricks environment for further processing.
Check Point Integration with ServiceNow SecOps
The Check Point ServiceNow application integrates Security Operations allowing security analyst to create Check Point Block List entries from observables and determined to be malicious in ServiceNow security incidents.
Endgame Integration with ServiceNow
Crest developed the Endgame application to fetch the alerts from the app at regular intervals and report them as NOW Incidents.
Illumio integration with ServiceNow CMDB
Crest Data ServiceNow Experts helped implement ServiceNow CMDB as a single source of truth.
Check Point Adaptive Response Integration
Crest helped Check Point team to achieve their goal by designing Adaptive Response actions in Splunk.
Elastic Case Study
Crest Data developed Elastic integrations for Security, Observability, and Enterprise Search use cases that help the user bring, analyze and correlate their logs across multiple platforms.
Google Chronicle Ingestion Scripts
The Google Chronicle Ingestion Scripts enable customers to ingest security telemetry data from various platforms/sources into the Chronicle.
TruSTAR Integration with IBM Resilient
TruSTAR partnered with Crest to build an integration with IBM’s Resilient Systems to automatically sends Incident information to TruSTAR and in turn enrich security context for the Incident.
Symantec ATP App
Symantec ATP app provides various visualizations for Network, Endpoint and Email threat protection using Splunk.
Digital Shadows App
The Splunk app for Digital Shadows allows Splunk software administrator to collect incident using modular inputs.
Sumo Logic Cloud Connectors
Crest Data wrote multiple C2C connectors to get data into Sumo Logic. Users can collect data by providing the authentication parameters from the UI.
Silver Parsers for Cybereason
The Crest Data team developed standardized parsers for the Cybereason XDR platform to enable swift adoption.
Splunk Professional Services for Retailer
Leading retailer gains competitive advantage by getting deep business insights while reducing Splunk Admin Costs by more than 50%.