GITN

Data Lake (MyGovServ 2.0)

Network Intelligence | Data Sovereignty | Cyber Security

The Challenge

As part of the national MyGovServ 2.0 initiative, GITN (a subsidiary of Telekom Malaysia) was tasked with ensuring connectivity and security for over 15,000 government sites, spanningdomestic locations and international embassies.

The complexity of this massive infrastructure created a “Tower of Babel” scenario.

GITN needed a way to harvest forward logs from every site—regardless of hardware brand—and ingest them into a centralized platform for real-time analysis, moving beyond traditional monitoringto actionable intelligence.

The Gap

  • Siloed Data:
    Critical security logs were trapped within local firewall appliances.
  • Hardware Fragmentation:
    Sites utilized a mix of top-tier firewall brands, resulting ininconsistent data formats that made centralized analysis impossible.
  • Zero Real-Time Insight:
    Central command lacked immediate visibility into traffic flows,bandwidth utilization, or emerging threats across the agency network.

The Goal

To transform a reactive, fragmented network into a proactive, data-driven defense system. The ability to harvest logs in real-time and store themp ersistently will redefine how we manage national connectivity.

Unified Data Observability

The Strategy

One Console to See It All

Unified traffic observability and security insights into a singlesecured platform, breaking down barriers between operations and security teams.

Intelligent Normalization

Instantly converts unstructured data into a unified schema for real-time analysis.

Sovereign Control

Full on-premise deployment to meet strict national security and data sovereignty standards.

The DL Engine

Architecture

Kubernetes (K8s)

Orchestrates data services for high availability and scalability

Real-Time Ingestion

Processes unstructured logs instantly upon arrival

Persistent Data Lake

Stores data securely for long-term auditing, compliance, andhistorical trend analysis

Multi-Vendor Integration

Works seamlessly with major ecosystems (Splunk, PaloAlto Networks, Fortinet, Cisco, Check Point, and CrowdStrike)

Scale & Performance

What We Delivered

7 TB Daily

Network logs handled daily with high-performance ingestion

100% Visibility

Across all 15,000+ sites with unified security posture

1 Console

A unified dashboard for traffic observability and security insights

The Stacks

Orchestration

VueJS

Analytics & SIEM

Splunk

Security Sources

Palo Alto

Fortinet

Cisco