Splunk
208 Case Studies
A Splunk Case Study
MBDA Germany, a leading guided-missile and air‑defense systems manufacturer with sites in Schrobenhausen, Aschau am Inn and Ulm, faced advanced, targeted threats and lacked visibility across its infrastructure — roughly 2,500 endpoints, 350 servers and multiple WAN links — making it difficult to identify, investigate and classify attacks quickly.
By deploying Splunk Enterprise and Splunk Enterprise Security to ingest logs from more than 20 system families (network, endpoint, server, switches, gateways and authentication), MBDA’s SOC now gets real‑time alerts, detailed attack tracing and historical analysis; mean time to investigate CERT messages fell from 372 minutes to 15, previously undetected attacks are identified sooner, and the company’s overall security posture and response speed have improved significantly.
Patrick Schwarz
Head of IT and Project Manager Information Technology