Cribl Stream
Cribl Stream is a vendor-agnostic observability pipeline that gives you the flexibility to collect, reduce, enrich, normalize, and route data from any source to any destination within your existing data infrastructure. Achieve full control of your data, empowering you to best support your business goals.
Features
- Collects and indexes log and machine data from any source
- Powerful search, analysis and visualization capabilities empower users
- Real time analysis for operational intelligence and business reporting
- Proactively monitor compliance issues
- Information Assurance and security analysis
- Migration strategy from an existing data-analytics platform into Splunk
- Business Use Case Definition and Implementation
- Business Data Analytics Platform
- Data observability pipeline with enrichment, filtering and stream processing
- Common data source and destination pipeline connectors with replay capability
Benefits
- Cribl and Splunk Accredited Consultants.
- Real-time business intelligence, improving availability and organisational efficiencies
- Observability of data through pipelines driving opportunities for efficiencies
- Increase productivity of SecOps and ITOps data-management platforms
- Analyse and parse data from varying formats into standardised stream
- Consolidate capabilities, reduce platform and application specific tools
- Reduction of data noise, providing focused analystics with actionable results
- Provide effective security compliance and reduce costs
- Detect and reduce internal and external cyber threats/abuse
- Proactively monitor clients/users understand and anticipate their needs
Pricing
£400 a unit a month
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
3 9 2 7 5 0 4 3 2 3 0 3 0 5 8
Contact
4 DATA SOLUTIONS LIMITED
Ian Tinney
Telephone: +44 330 128 9180
Email: ian.tinney@4datasolutions.com
Service scope
- Software add-on or extension
- No
- Cloud deployment model
-
- Public cloud
- Private cloud
- Hybrid cloud
- Service constraints
- Cribl Stream software is a Linux software image which can install either on a public or private cloud or on a physical server. The Client must provide the target environment.
- System requirements
-
- https://docs.cribl.io/stream/deploy-planning
- https://docs.cribl.io/stream/scaling/
- https://docs.cribl.io/stream/deploy-architecture/
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
-
Email support is provided Monday to Friday between 0900hrs and 1700hrs GMT/BST.
Out of hours, weekend and Bank Holiday support can be included at additional cost. - User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- Web chat
- Web chat support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support accessibility standard
- None or don’t know
- How the web chat support is accessible
- Customer have the ability to have a dedicated Slack channel for support from 4Data. This is in addition to the community Slack channel that Cribl offers.
- Web chat accessibility testing
- None.
- Onsite support
- Yes, at extra cost
- Support levels
- We support P1-P4 incidents remotely or on-site at a further cost (varies depending on time required to resolve an issue).
- Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
-
We will guide the customer through the following stages:
1. Design - collect user case, define architecture, timescales and test plan
2. Implementation
3. Test - against test plan, defined in Design phase
4. Training - can be onsite or remote
5. Handover - documentation and project sign-off - Service documentation
- Yes
- Documentation formats
-
- ODF
- End-of-contract data extraction
- You will own all the data and configuration information, so there should be no need of anything for you to extract.
- End-of-contract process
- The contract includes an annual term license for the software.
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Application to install
- Yes
- Compatible operating systems
- Linux or Unix
- Designed for use on mobile devices
- No
- Service interface
- No
- User support accessibility
- None or don’t know
- API
- No
- Customisation available
- Yes
- Description of customisation
-
At 4Data, we offer customisation of Cribl Stream to perform a multitude of routing, reducing and transformation functions that, in turn, can save considerable future spend on expensive data analytics platforms.
We can make these changes via the Stream UI and have them saved to a remote GIT repo for backup.
Alternatively, we can teach the user how to support Stream themselves.
Scaling
- Independence of resources
- There is no shared infrastructure with other customers.
Analytics
- Service usage metrics
- Yes
- Metrics types
- Cribl Stream provides very detailed internal logging.
- Reporting types
-
- Real-time dashboards
- Reports on request
Resellers
- Supplier type
- Reseller providing extra features and support
- Organisation whose services are being resold
- Crowdstrike, Splunk, Cribl, Axiom, Centripetal
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Up to Developed Vetting (DV)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- In-house
- Protecting data at rest
- Other
- Other data at rest protection approach
- No data is stored within Cribl Stream, it simply passes through it, using an encrypted transmission.
- Data sanitisation process
- No
- Equipment disposal approach
- A third-party destruction service
Data importing and exporting
- Data export approach
-
Cribl LogStream processes log data before you pay to analyze it. Helping you discern which data you need to send to an analytics tool to analyze now; which logs can be aggregated into metrics; which data should be stored and analyzed later if needed; and which elements of data should be dropped altogether.
LogStream allows you to implement an observability pipeline which helps you parse, restructure, and enrich data in flight. Get the right data, where you want, in the formats you need. - Data export formats
- CSV
- Data import formats
- CSV
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
- Cribl Stream runs on a customer's cloud infrastructure, which is their responsibility.
- Approach to resilience
- Cribl Stream uses a Leader/Worker distributed architecture, whereby a leader can have many workers for resilience and horizontal scaling. This, along with persistent queueing, protect against data loss should something fail.
- Outage reporting
- Email Alerts
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- 2-factor authentication
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Access restrictions in management interfaces and support channels
- The control of access to the Stream management interface is the responsibility of the customer.
- Access restriction testing frequency
- Never
- Management access authentication
-
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Username or password
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- User-defined
Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- Yes
- Other security certifications
- No
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- No
- Security governance approach
- Cribl Stream is installed on customer infrastructure. 4Data personnels' access to the customer's environment is the customer's responsibility.
- Information security policies and processes
- 4Data has a security director, who is responsible for Security within. 4Data is due to undertake a Cyber Essentials audit in 2022.
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- ITIL.
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- ITIL
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- ITIL
- Incident management type
- Supplier-defined controls
- Incident management approach
- ITIL
Secure development
- Approach to secure software development best practice
- Supplier-defined process
Public sector networks
- Connection to public sector networks
- No
Social Value
- Social Value
-
Social Value
- Fighting climate change
- Tackling economic inequality
- Equal opportunity
Fighting climate change
4 Data Solutions Limited (“4Data”) recognises that it has a responsibility to the environment that goes beyond its legal and regulatory obligations. As such, 4Data is committed to reducing its environmental impact and continually improving its environmental impact as part of a wider business strategy for good.
POLICY GOALS
4Data will endeavour to fulfil the following goals:
- Comply with all relevant regulatory requirements.
- Continually monitor and improve its environmental performance.
- Continually reduce environmental impact.
- Incorporate environmental issues into business decisions.
- Increase training and awareness for employees.
OFFICE IMPROVEMENTS
4Data’s founders made the decision to use a remote-first approach to running their business. There is no permanent office, with most staff working from home. Some of the staff work from carefully selected, shared, and managed workplaces, using a company called Runway East, a certified B Corp (https://www.bcorporation.net/en-us/find-a-b-corp/company/runway-east-limited/).
4Data’s lack of a permanent office means the following environmental benefits:
Paper - no paper is used at 4Data unless an ink signature is absolutely required.
Energy and Water - no energy and water are used outside of normal use at home.
Office Supplies - no office means no office supplies are needed.
TRANSPORTATION
4Data is committed to:
- reduce air travel to the minimum necessary to run our business and to choose direct flights as much as possible.
- promote the use of video conferencing to reduce in-person meetings.
- find the most economical means of travel between cities when necessary.
MONITORING AND IMPROVEMENT
4Data is committed to:
- Monitor our environmental performance
- Have management and employees suggest beneficial changes
- Incorporate environmental impact into business decisions
- Increase employee awareness through training
- Review this policy and any related issues at regular monthly management meetings.Tackling economic inequality
Our Equal Opportunities And Diversity Policy covers economic inequality. Full details of our Equal Opportunities And Diversity Policy can be provided upon request.Equal opportunity
POLICY STATEMENT
4 Data Solutions Limited (“the Company”) is committed to achieving a working environment which provides equality of opportunity and freedom from unlawful discrimination on the grounds of race, sex, pregnancy and maternity, marital or civil partnership status, gender reassignment, disability, religion or beliefs, age or sexual orientation. Our Equal Opportunities And Diversity Policy aims to remove unfair and discriminatory practices within the Company and to encourage full contribution from its diverse community. The Company is committed to actively opposing all forms of discrimination.
The Company also aims to provide a service that does not discriminate against its clients and customers in the means by which they can access the services and goods supplied by the Company. The Company believes that all employees and clients are entitled to be treated with respect and dignity.
Any and all personal data used in connection with this Policy shall be collected, held, and processed in accordance with the Company’s Data Protection Policy.
Full details of our Equal Opportunities And Diversity Policy can be provided upon request.
Pricing
- Price
- £400 a unit a month
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- Upon successfully answering qualification questions, we can offer potential customers with a legitimate interest, a fully-featured, 2-week proof of value.