Explore the implementation of the SGACK architecture for security event inspection in this 39-minute conference talk from Docker. Learn how TrendMicro adopted Spark, Docker, Akka, Cassandra, and Kafka to create a platform for APT attack analysis. Discover the benefits of Dockerizing each component, including streamlined development for R&D teams, simplified testing for QA, and efficient product deployment using Docker as a Service. Gain insights into container monitoring, resource management, and Docker security policies. Examine the development of an all-in-one Docker-based data product and its scalability to multi-host clusters for big data challenges. Delve into real-world challenges faced during product development and valuable lessons learned. The talk covers topics such as private data handling, big volume processing, system architecture, deployment strategies, key features, microservice capabilities, security configurations, and open-source components.
Using the SDACK Architecture on Security Event Inspection - Use Case Track