Services
Architectures
Every customer environment is different. Keos works with you to see the big picture before you need to commit to infrastructure changes or large capital expenditures.
Security Architecture Services. Migrating from one SIEM to another SIEM. Or plans for a fresh install. Or needed improvements to an existing security stack.
IT Operations Architecture Services. Getting the needed data into Cisco/Splunk’s products and accurately reporting issues before they become problematic.


Subject Matter Experts - Security
Splunk ES. Splunk’s SIEM. Risk based alerting with machine learning for higher fidelity incidents.
Splunk SOAR. Use case and playbook development. SOAR communication with a wide variety of 3rd party and proprietary systems.
Splunk UEBA. Splunk’s User and Entity Behavioral Analytics. Model training and tuning for fantastic outcomes.
Cisco XDR. Cisco’s pre-packaged black-box SIEM and SOAR. Services available for migration to/from XDR as well as ES and XDR communications.
Subject Matter Experts - IT
Splunk ITSI: Splunk’s first premium product to focus on IT Operations. This product has been overhauled if not completely re-written in recent years. Today it is full-featured and very capable. And complicated to setup and use.
Splunk Observability: Splunk Observability is Splunk’s second premium product focusing on IT Operations. More Keos PS training hours go into this product than any other Splunk product. It is remarkably full featured and can do things that Splunk ITSI was not designed to do. Also, Observability is very complicated to setup and use. Professional services are not an option.
