Financial ServicesSecurity Operations

How Bank Leumi Cuts Security Detection Time 60% with Elastic

Bank Leumi, Israel’s leading bank with more than 7,000 employees and $195 billion in assets, replaced its aging SIEM with Elastic Security to gain unified visibility across a cloud-and-on-premises infrastructure generating vast volumes of semi-structured data. By deploying Elastic Security alongside Kibana dashboards and MITRE ATT&CK-aligned detection rules, the bank cut log detection and analysis time by 60%, reduced security incident resolution time by 50%, and lowered total cost of ownership by 40%.

Outcomes

-60%Log detection and analysis time
-40%Total cost of ownership
-50%Time resolving security issues

Tools & Technologies

1ES
Elastic Security
SIEM and security analytics platform for threat detection, investigation, and response at scale.
2E
Elasticsearch
Search and analytics engine by Elastic offering full-text, vector, and hybrid search capabilities.

AI Categories

Challenge

Bank Leumi’s incumbent SIEM struggled to handle the semi-structured data generated by a growing cloud infrastructure, leaving SOC analysts spending hours — sometimes with external support — to track down logs for forensic investigation, while lacking self-service analytics capabilities for distributed security teams.

Solution

Bank Leumi deployed Elastic Security as its core SIEM, building on an existing Elasticsearch data lake foundation with Kibana dashboards, MITRE ATT&CK detection rules, ML-based threat detection, and ES|QL for ad hoc forensic analysis — giving every security team member self-service access to log analytics and threat investigation.

Full Story

Bank Leumi, founded in 1902, is Israel’s largest bank by assets, with more than 7,000 employees and over $195 billion in assets under management. Its operations span consumer, corporate, and investment banking, as well as a growing suite of digital banking services. The scale and diversity of those activities generate a continuous stream of data flowing between disparate systems — cloud and on-premises alike — all of which must remain secure, auditable, and available to a demanding security operations center (SOC).

Access 442+ AI use cases, 407+ tools, and adoption signal rankings.

Source

Similar Cases

1K
How Klarna’s AI Assistant Resolves 80% of Queries in Under 2 Minutes
Klarna
80%Reduction in average customer query resolution time
2S
How Stripe Deploys Claude Code to 1,370 Engineers with Zero-Configuration Rollout
Stripe
1,370Engineers Deployed
3A
How Airtree Uses Claude Cowork to Automate VC Research & Reporting
Airtree
Reduced from 2 days to minutesMarket & competitor research time
4W
How WEX Achieved 30% Developer Productivity Gains with GitHub Copilot
WEX
~30%Developer productivity increase with GitHub Copilot
5C
How CACI's DarkBlue Uses Elasticsearch and Claude to Accelerate Dark Web Criminal Investigations
CACI
Seconds per query regardless of data age or volumeCriminal investigation acceleration
6NB
How NBIM Uses Claude Enterprise to Save 20% Time on Investment Analysis
Norges Bank Investment Management
20%Weekly time savings per employee
7B
How Block Gives 4,000 Employees AI-Powered Data Access via Claude and Databricks
Block
75% saving 8-10+ hoursEngineers saving time weekly
8C
How Cypris Uses Elasticsearch to Power AI R&D Research Across 500 Million Data Points
Cypris
Weeks → 15 minutesResearch report generation time
9F
How Fireblocks Uses Snowflake AI Agents to Handle 40-50% of Data Queries
Fireblocks
40–50%Share of data queries handled by AI agent
10N
How N26 Uses Claude on AWS Bedrock to Automate 70% of Customer Operations
N26
70%Task automation in targeted processes
See all use cases →