Veeam & Splunk enhance backup security with new integration
Veeam Software has announced a new extension for Splunk, designed to enable its Data Platform customers to utilise Splunk's capabilities to monitor the health and security status of their Veeam backup infrastructure. This extension is available free of charge for enterprises with Veeam Data Platform Advanced or Premium licences.
The new app allows Splunk users to analyse Veeam events, monitor backup environments, and access a variety of features including alerts, dashboards, and reports. It aims to reduce organisational risk and ensure business continuity in the event of cyber-attacks.
A Veeam Data Protection Trends Report states that 76% of organisations suffered a ransomware attack in the last year, with 93% of those attacks targeting data backups. The integration with Splunk is intended to enhance security by allowing SIEM solutions to detect cyberthreats within backup systems. It enables security professionals to monitor Veeam backup environments alongside other source environments through a unified interface.
John Jester, Chief Revenue Officer at Veeam, commented on the integration: "Veeam is focused on powering data resilience for every customer, and this includes tight integration with the leading security platforms. Now security professionals can use Splunk to closely monitor their Veeam backup environments through detailed dashboards, reports, and alerts. Combatting cyber-attacks requires integration across your infrastructure, and the Veeam App for Splunk brings Veeam event data into Splunk, enabling customers to monitor security events like ransomware, accidental deletion, malware, and other cyber threats using their current tools."
The app provides several features to enhance security monitoring. It includes built-in dashboards for monitoring job statuses and security events daily, built-in reports and alerts, severity level management for events and alerts, support for multiple Veeam Backup & Replication servers and data source locations, role-based permissions, and app configuration backup.
Christophe Bertrand, Principal Analyst at SiliconANGLE Media | theCUBE Research & Advisory, highlighted the importance of securing backup infrastructure. "In the constant fight against cyber-criminals and ransomware, it is key to 'protect the protector,' which means securing the backup apparatus to make it impenetrable to hacking, adulteration, deletion, etc. There can be no recovery if there are no backups. This requires a robust set of tools and controls to deliver a truly secure backup infrastructure."
Bertrand continues, "This is why the addition of the Veeam App for Splunk to the already comprehensive set of tools Veeam offers is key. With robust monitoring and security features and full integration with Splunk user roles and location management, end-users will be able to deliver dashboards, alerts, and reports. With this new integration, we expect that Veeam users will not only improve their cyber-recovery posture but also be in a great position to deliver on cyber-recovery SLAs."
The Veeam App for Splunk supports Splunk Enterprise 9.1.0 and later as well as Splunk Cloud Platform 9.1.2308 and later. It is available via Splunkbase.