New Cybersecurity workload for the Snowflake Data Cloud

Snowflake, the data cloud company, has launched a new Cybersecurity workload that enables cybersecurity teams to better protect their enterprises with their Data Cloud. Using Snowflake’s platform and an extensive ecosystem of partners delivering security capabilities with connected applications, cybersecurity teams can quickly gain visibility and automation at cloud-scale.

Source: Snowflake. The new Cybersecurity workload offers storage, compute, and software protection.
Source: Snowflake. The new Cybersecurity workload offers storage, compute, and software protection.

The threat landscape has been evolving, with 55% of security pros reporting that their organisation experienced an incident or breach involving supply chains or third-party providers in the past 12 months, according to Forrester*. 

Current security architectures built around legacy security and information management systems (SIEMs) are not designed to handle the volume and variety of data necessary to stay ahead of cyberthreats, Snowflake explained. With legacy SIEMs imposing restrictive ingest costs, limited retention windows, and proprietary query languages, security teams struggle to gain the visibility they need to protect their organisations.

Snowflake’s Cybersecurity workload gives access to natively handling of structured, semi-structured, and unstructured logs via Snowflake’s platform. Customers can store years of high-volume data, search with scalable on-demand compute resources, and gain insights using universal languages like SQL and Python (currently in private preview). With Snowflake, organisations can also unify their security data with enterprise data in a single source of truth, enabling contextual data from HR systems or IT asset inventories to inform detections and investigations for higher-fidelity alerts, and running fast queries on massive amounts of data.

Teams then gain unified visibility across their security posture, eliminating data silos without prohibitive data ingest or retention costs. Beyond threat detection and response, the Cybersecurity workload supports a broad range of use cases including security compliance, cloud security, identity and access, vulnerability management, and more.

TripActions, the all-in-one travel, corporate card, and expense management solution, is investing in its long-term cybersecurity data strategy with the Data Cloud.

“With Snowflake as our security data lake, we are able to simplify our security programme architecture and remove data management overhead,” said Prabhath Karanth, Sr Director of Security, Compliance & Trust, TripActions.

“Snowflake has been vital in helping us gain a complete picture of our security posture, eliminating blind spots and reducing noise so we can continue to provide user trust where it matters most. Deploying a modern technology stack from Snowflake is a pivotal piece of our cybersecurity strategy.”

Snowflake’s modern security architecture allows customers to gain control of their data, leverage prebuilt content and security capabilities on top of their existing Snowflake environments, and utilise a single copy of data across cybersecurity use cases. With Snowflake’s Data Cloud, tightly integrated connected applications, and data from providers on Snowflake Data Marketplace, Snowflake is pioneering a new standard architecture for security teams looking to achieve their security goals.

Snowflake Ventures, which focuses on investing in companies that help accelerate and augment the growth and adoption of the Snowflake Data Cloud, has already invested in Hunters.ai, Lacework, Panther, and Securonix. These investments have helped drive product alignment to further eliminate security data silos and enable data-driven strategies for joint customers.

“Snowflake is leading the security data lake movement, helping defenders bring their data and analytics together in a unified, secure, and scalable data platform,” said Omer Singer, Head of Cybersecurity Strategy, Snowflake.

“With Snowflake’s Cybersecurity workload, we further empower security teams in the Data Cloud so that they can collaborate with diverse stakeholders and succeed in their vital mission to protect the enterprise.”

“Snowflake’s Cybersecurity workload is a natural fit for Securonix’s open approach to security analytics, enabling joint customers to respond to cyberthreats faster, at cloud-scale,” said Sachin Nayyar, CEO, Securonix.

“Supporting Snowflake as a connected application and partner allows us to give customers the control and cost-efficiency they want, coupled with the advanced threat detection and response capabilities they need.”

“With access to all of the data sources in Snowflake as our security data lake, we have better correlations across multiple attack surfaces and analytics are automatically actionable,” said Pallavi Damle, VP of Enterprise Cybersecurity, Netgear.

“And as a result, it has led to faster incident response from our side.”

*Predictions 2022: Cybersecurity, Risk, and Privacy by Forrester published on October 28, 2021.

Comments

Popular posts from this blog

Fortinet enhances FortiRecon to align with CTEM framework

SentinelOne recognised as a 2025 Gartner Peer Insights Customers’ Choice for XDR

AWS: AI adoption grows 20% in Singapore