DiscoverDetection Engineering DispatchSIEMs & Data Lakes can be friends...it isn't Either/Or, It’s Yes, And.
SIEMs & Data Lakes can be friends...it isn't Either/Or, It’s Yes, And.

SIEMs & Data Lakes can be friends...it isn't Either/Or, It’s Yes, And.

Update: 2025-10-08
Share

Description

On this Detection Dispatch, host Alex Hurtado sits down with Jake Berkowsky CTO at Snowflake to crack open one of the hottest and often misunderstood topics in modern SecOps: the rise of the security data lake x security data lakes as your SIEM.

Modern detection architecture isn’t about choosing SIEM or lake, it's about interoperability, orchestration, and strategic flow. We cover federation hype and data silo upkeep fatigue and take a brutally honest look at why standalone SIEMs aren’t cutting it, what’s actually driving data lake adoption, and how teams can shift from buying more platforms to building better data flows. Along the way, they unpack the new Snowflake x Splunk integration, AI governance headaches, and the myth of the “one platform to rule them all.

If you're wrestling with detection silos, debating SIEM retirement, considering data lake modernization or just trying to make sense of the evolving detection-to-response pipeline, this episode is your signal.

Detection Engineering Dispatch features candid conversations with security teams at top companies on how they build, measure, and scale world-class detection programs.

Comments 
loading
00:00
00:00
1.0x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

SIEMs & Data Lakes can be friends...it isn't Either/Or, It’s Yes, And.

SIEMs & Data Lakes can be friends...it isn't Either/Or, It’s Yes, And.

Anvilogic