splunklive! stockholm 2015 - klarna

22
Copyright © 2015 Splunk Inc. Klarna Security Opera<ons

Upload: splunk

Post on 23-Jan-2018

2.364 views

Category:

Technology


0 download

TRANSCRIPT

Page 1: SplunkLive! Stockholm 2015 - Klarna

Copyright  ©  2015  Splunk  Inc.  

Klarna  Security  Opera<ons  

Page 2: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Agenda  !   Klarna  intro  !   Short  info  about  me  !   Splunk  at  Klarna  !   Splunk  at  Security  Opera<ons  

Page 3: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Klarna  Group  

•  Founded in 2005 in Stockholm, with focus on simplifying buying  •  World market leader in after-delivery payments  •  Our goal is to become the world’s favourite way to buy  •  Present in 18 countries  •  Supported by investments from Sequoia Capital, Atomico, DST and

General Atlantic  •  50,000 online merchants across Europe, including  

ASOS, Spotify and Zara  •  35 million consumers  •  250,000 transactions per day  

Page 4: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Sequoia Capital: The world’s leading tech investor

1995 Yahoo David Filo, Jerry Yang

1983 Oracle Larry Ellison

1978 Apple Steve Jobs

1999 Google Larry Page, Sergey Brin

2000 Rackspace Lanham Napier, Graham Weston

2003 LinkedIn Jeff Weiner, Reid Hoffman

2005 YouTube Stephen Chen Chad Hurley

2007 DropBox Arash Ferdowski, Drew Houston

2011 WhatsApp Jan Koum, Brian Acton

2012 Instagram Mike Kreiger, Kevin Systrom

Page 5: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Standard  Slide  2  nd  something  something  malwares…  

18 Markets

Page 6: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Standard  Slide  2  nd  something  something  malwares…  

1,200 Employees

Page 7: SplunkLive! Stockholm 2015 - Klarna

‹#›  

250,000 Purchases on an average day

Page 8: SplunkLive! Stockholm 2015 - Klarna

‹#›  

35 million Users

Page 9: SplunkLive! Stockholm 2015 - Klarna

‹#›  

So why do people drop out?

1. Hidden charges: 71% 2. Security: 58% 3. Technical problems: 44% 4. Takes too long: 37% 5. Lack of contact details: 33% 6. Security features (e.g. “Verified by Visa”): 23%

Source: Econsultancy, Why do consumers abandon online purchases? (2011)

1 2 3 4 5 6

Why people drop out of/cancel purchases:

Page 10: SplunkLive! Stockholm 2015 - Klarna

This is how you shop with Klarna Checkout

Page 11: SplunkLive! Stockholm 2015 - Klarna

‹#›  

This is how you shop with Klarna Checkout

1. You use only top of mind information

2. Purchases are made with one click

3. You can change payment method

Page 12: SplunkLive! Stockholm 2015 - Klarna

Henrik  Skantz  Team  Lead  -­‐  Security  Opera<ons    

Page 13: SplunkLive! Stockholm 2015 - Klarna

‹#›  

How  We  Got  Started  !   First  engineering  use  case  for  Splunk  

–  Engineering  ê  Distributed  payment  system  

–  Security  Opera<ons    ê  Correla<on  of  events  

Page 14: SplunkLive! Stockholm 2015 - Klarna

‹#›  

History  –  2013  ê  100GB  ê  40  users  ê  30  Deployment  clients  

–  2015  ê  ?Gb  ê  700  users  ê  1300  Deployment  clients  

0  

5  

10  

15  

20  

25  

Usage  

Usage  

Page 15: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Splunk  Enterprise  at  Klarna  

Search  

Page 16: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Users  

•  IT  Opera<ons  –  Live  Opera<ons  –  Monitoring    –  Core  services  –  Network  Opera<ons  –  Security  Opera<ons  

•  Dev  teams  

•  Technical  sales  •  Merchant  support  

•  Business  intelligence  •  Opera<on  analy<cs    More  than  50%  of  all  employees  have  

access  to  Splunk.  

Page 17: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Opera<onal  intelligence  

!   Monitoring  of  cri<cal  systems  !   Incident  management  !   Opera<onal  analy<cs  

Page 18: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Inputs  Opera*onal  Intelligence  

HA  Indexes  and  Storage  

Search  and  Inves*ga*on  

Proac*ve  Monitoring  

Opera*onal  Visibility  

Real-­‐*me  Business  Insights  

Commodity  Servers  

Online  Services   Web  

Services  

Servers  Security  

Storage  Desktops  

Networks  

Packaged  Applica<ons  

Custom  Applica<ons  

Databases  

Smartphones  and  Devices  

Page 19: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Security  Opera<ons  Example  of  correla<on  sources  

!   Authen<ca<on  events  !   Address  alloca<on  !   Malware  events  !   Firewall/Net  flow  !   Vulnerability  management  

Applying  CIM  to  these  kind  of  sources  and  correla<on  gives  us  knowledge  such  as  who/when/where  about  usage  of  our  assets.  

Page 20: SplunkLive! Stockholm 2015 - Klarna

‹#›  

What’s  Next  

!   Enterprise  Security    !   Architectural  changes      !   Staffing  up  

Page 21: SplunkLive! Stockholm 2015 - Klarna

‹#›  

Top  Takeaways  Know  the  product  

•  Enable  the  developers  •  Educate  users  •  Keep  it  simple  •  CIM  •  Context  

Page 22: SplunkLive! Stockholm 2015 - Klarna

Thank  You