Splunk • Check Point • Firewall Visibility
Check Point Security Visibility Dashboard
Problem: Security teams needed a current and historical pane of glass to identify firewall drops, denies, and possible scan-related impact.
Solution: Designed Splunk dashboards using current-window and historical comparison panels.
Outcome: Faster triage and clearer operational visibility.
Azure • Splunk Cloud • Logging Architecture
Azure Logging Architecture for Splunk Cloud
Problem: Azure workloads lacked a consistent logging strategy.
Solution: Created an Azure Collection Tier using Event Hub and forwarder-based collection.
Outcome: Improved scalability and repeatable onboarding.
Tenable • Splunk • Monitoring
Tenable Scan Impact Monitoring
Problem: Teams needed to determine whether vulnerability scans were causing network impact.
Solution: Correlated scan source activity against firewall denies and drops.
Outcome: Faster identification of scan-related issues.
SIEM • Governance • Executive Reporting
SIEM Program Maturity Roadmap
Problem: Leadership needed visibility into SIEM maturity and telemetry gaps.
Solution: Built a phased roadmap covering onboarding, cloud ingestion, detection engineering, and governance.
Outcome: Better executive alignment and measurable improvement path.