Arctic Wolf processes over 1 trillion security events daily (60+ TB compressed) and needed faster query performance on 3.8+ PB of data. By migrating from date-hour partitioning with z-ordering to liquid clustering with Unity Catalog managed tables, they reduced file counts from 4M to 2M, cut query times by ~50% (90-day queries
•6m read time• From databricks.com
Table of contents
Legacy Bottlenecks: Why Arctic Wolf RebuiltBuilding the Streaming Data Foundation with liquid clusteringSort: