
Case Studies
Home > Case Studies
Technology Domains
Google SecOps (Google Chronicle) GOLD Parser
Crest Data helped Google to adopt Chronicle GOLD parser to standardize data onboarding for all log sources and the parsing approaches for massive amounts of data.
LinkedIn Cloud Security Case Study
Built various automated workflows using Azure DevOps based CICD pipelines for the LinkedIn Information Security Team.
Moogsoft Case Study
Crest Engineering team helps maintain and evolve the tools to address the market’s ever-changing needs and expand their customer base.
SentinelOne Portable Scanner
This application has capabilities like scanning files and detecting malicious files from a given location.
Sonicwall Productivity Reports
Crest implemented a UI feature of Category groups for Sonicwall Content Filter Service on Firewalls. Using groups, network activity can be mapped with a group using categories.
Vertica-as-a-service
Significantly reduced the database management time for their customers, increasing Vertica's footprint on the market.
Trustar: Trustash integrations
Crest helped the Splunk Cloud operations team in creating the next-generation automation system at scale.
IBM QRadar + IntSights TIP: Getting ahead of the Adversaries
Crest developed the QRadar App for IntSights integrating IntSight’s Cyber Threat Intelligence and QRadar to rationalize the threat data and surface the targeted attacks which would otherwise be “noise”.
Mission Control Plugins
We developed a number of closed and open-source Mission Control Plugins using the plugin framework across CASB, Threat Intel, EDR, VAPT, and Cloud solutions.
Scale Cloud Infrastructure with Automation
Crest helped the Splunk Cloud operations team in creating the next-generation automation system at scale.
Risk IQ: Splunk App Development for PassiveTotal
Crest built integrations of RiskIQ Passivetotal into Splunk and provided a consistent user experience to enable monitoring from a single source for security teams.
Databricks: Splunk Integration for Security Use Cases
Crest developed Databricks notebooks to collect and parse AWS Cloud Trail , AWS VPC logs and Syslogs data from S3 buckets into Databricks environment for further processing.
Cisco ACI App ServiceNow
Built integration with ServiceNow and ACI platform so that the user can pull various IT assets and create a relationship between the modules internally as well as with the ServiceNow CMDB table.
Check Point Integration with ServiceNow SecOps
The Check Point ServiceNow application integrates Security Operations allowing security analyst to create Check Point Block List entries from observables and determined to be malicious in ServiceNow security incidents.
Endgame Integration with ServiceNow
Crest developed the Endgame application to fetch the alerts from the app at regular intervals and report them as NOW Incidents.
Illumio integration with ServiceNow CMDB
Crest Data ServiceNow Experts helped implement ServiceNow CMDB as a single source of truth.
Check Point Adaptive Response Integration
Crest helped Check Point team to achieve their goal by designing Adaptive Response actions in Splunk.
Elastic Case Study
Crest Data developed Elastic integrations for Security, Observability, and Enterprise Search use cases that help the user bring, analyze and correlate their logs across multiple platforms.
Google SecOps (Google Chronicle) Ingestion Scripts
The Google Chronicle Ingestion Scripts enable customers to ingest security telemetry data from various platforms/sources into the Chronicle.
Symantec ATP Automates Security Incident with Phantom
Symantec ATP team partnered with Crest to create playbooks for Phantom’s SOAR platform that provides incident response for out of the box actions and flexibility to customize incident response to fit end-customer’s needs.