Splunk
208 Case Studies
A Splunk Case Study
Edmunds.com, a long-standing online automotive publisher, needed to manage and learn from massive, fragmented log data to keep its high-performing, revenue-dependent web operations running smoothly. Multiple teams used different tools and storage locations, which made correlating events slow and labor-intensive, delaying answers to routine questions and obscuring security and availability issues.
By deploying Splunk Enterprise to ingest 50,000 events per minute (60–70 GB/day) via syslog and custom agents, Edmunds.com gained real-time alerting, executive dashboards, summary indexing and normalized security logs. The platform enabled faster troubleshooting, cross-application correlation and automated alerts that cut weekly malicious incidents by ~80%, reduced production errors tenfold, lowered MTTR and gave nontechnical users immediate access to actionable insights.
John Martin
Senior Director, Production Engineering