<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>rss.livelink.thread@place:occasion</title>
    <link>https://community.splunk.com/t5/Community-Office-Hours/Security-Splunk-SOAR/ec-p/756471#M195</link>
    <description>&lt;P&gt;&lt;STRONG&gt;Hi everyone! Here are a few questions from the session (get the full Q&amp;amp;A deck and live recording in the&amp;nbsp;&lt;/STRONG&gt;&lt;A href="https://splunkcommunity.slack.com/archives/C0FRVF350" target="_self" rel="nofollow noopener noreferrer"&gt;&lt;SPAN class=""&gt;&lt;STRONG&gt;#office-hours&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;STRONG&gt;&amp;nbsp;Slack channel)&lt;/STRONG&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Q1: What are the applications we can integrate with Splunk for SOAR? other applications integration like virus total?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;A: &amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Splunkbase&lt;/SPAN&gt;&lt;SPAN&gt;!&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Q2: &amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;How to manage real time incidents with Splunk SOAR?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;A: &amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;SOAR, whether used with ES or not, provides a Case Management environment with live updates, the ability to run actions/playbooks, or even have playbooks run automatically.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Q3. &amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Anything I need to consider before upgrade to the latest SOAR version?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;A:&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV&gt;&lt;SPAN&gt;1.&lt;/SPAN&gt;&lt;SPAN&gt;No action required &lt;/SPAN&gt;&lt;SPAN&gt;yet&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;but Python migration is coming!&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;2.&lt;/SPAN&gt;&lt;SPAN&gt;Deprecation of the Splunk Mobile App for Splunk SOAR&lt;/SPAN&gt;&lt;/DIV&gt;</description>
    <pubDate>Fri, 12 Dec 2025 16:46:15 GMT</pubDate>
    <dc:creator>loriexi</dc:creator>
    <dc:date>2025-12-12T16:46:15Z</dc:date>
    <item>
      <title>Security: Splunk SOAR</title>
      <link>https://community.splunk.com/t5/Community-Office-Hours/Security-Splunk-SOAR/ec-p/753182#M177</link>
      <description>&lt;P data-unlink="true"&gt;&lt;STRONG&gt;[&lt;A href="https://discover.splunk.com/Security-Community-Office-Hours-Splunk-SOAR.html" target="_self"&gt;Register Here&lt;/A&gt;]&amp;nbsp;&amp;nbsp;&lt;/STRONG&gt;&lt;SPAN&gt;This thread is for the Community Office Hours session on &amp;nbsp;&lt;STRONG&gt;Security: Splunk SOAR&amp;nbsp;&lt;/STRONG&gt;on &lt;STRONG&gt;Wednesday,&amp;nbsp;Dec 10, 2025 at 11 am PT / 2 pm ET&lt;/STRONG&gt;.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Ask the experts at Community Office Hours! An ongoing series where technical Splunk experts answer questions and provide how-to guidance on various Splunk product and use case topics.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;What can I ask in this AMA?&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;SPAN&gt;What’s new in the latest Splunk SOAR? Should I upgrade to this version, and what’s the easiest way to make the upgrade happen?&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;How does the Splunk Attack Analyzer integration work? And how can playbooks be implemented to automate response processes for the malware and phishing attack?&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;What are the practical ways to modernize legacy SOC workflows with Splunk Enterprise Security and build the TDIR workflow.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;How to use Wayfinder?&amp;nbsp;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;How to measure the value of my SOAR investment? Real-world examples of how SOAR enhancements improved efficiency, security, and ROI?&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;Anything else you’d like to learn!&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Please submit your questions at registration.&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;You can also head to&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;the&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://splunkcommunity.slack.com/archives/C0FRVF350" target="_blank" rel="nofollow noopener noreferrer"&gt;&lt;SPAN&gt;#office-hours&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;user Slack channel to ask questions&amp;nbsp;(sign in with SSO&amp;nbsp;&lt;A href="http://splk.it/slack" target="_blank" rel="nofollow noopener noreferrer"&gt;here&lt;/A&gt;).&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Pre-submitted questions will be prioritized.&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;After that, we will open the floor up to live Q&amp;amp;A with meeting participants.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Look forward to connecting!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 23 Mar 2026 19:59:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Community-Office-Hours/Security-Splunk-SOAR/ec-p/753182#M177</guid>
      <dc:creator>loriexi</dc:creator>
      <dc:date>2026-03-23T19:59:00Z</dc:date>
    </item>
    <item>
      <title>Re: Security: Splunk SOAR</title>
      <link>https://community.splunk.com/t5/Community-Office-Hours/Security-Splunk-SOAR/ec-p/756471#M195</link>
      <description>&lt;P&gt;&lt;STRONG&gt;Hi everyone! Here are a few questions from the session (get the full Q&amp;amp;A deck and live recording in the&amp;nbsp;&lt;/STRONG&gt;&lt;A href="https://splunkcommunity.slack.com/archives/C0FRVF350" target="_self" rel="nofollow noopener noreferrer"&gt;&lt;SPAN class=""&gt;&lt;STRONG&gt;#office-hours&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/A&gt;&lt;STRONG&gt;&amp;nbsp;Slack channel)&lt;/STRONG&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Q1: What are the applications we can integrate with Splunk for SOAR? other applications integration like virus total?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;A: &amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Splunkbase&lt;/SPAN&gt;&lt;SPAN&gt;!&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Q2: &amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;How to manage real time incidents with Splunk SOAR?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;A: &amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;SOAR, whether used with ES or not, provides a Case Management environment with live updates, the ability to run actions/playbooks, or even have playbooks run automatically.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Q3. &amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Anything I need to consider before upgrade to the latest SOAR version?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;A:&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV&gt;&lt;SPAN&gt;1.&lt;/SPAN&gt;&lt;SPAN&gt;No action required &lt;/SPAN&gt;&lt;SPAN&gt;yet&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;but Python migration is coming!&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV&gt;&lt;SPAN&gt;2.&lt;/SPAN&gt;&lt;SPAN&gt;Deprecation of the Splunk Mobile App for Splunk SOAR&lt;/SPAN&gt;&lt;/DIV&gt;</description>
      <pubDate>Fri, 12 Dec 2025 16:46:15 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Community-Office-Hours/Security-Splunk-SOAR/ec-p/756471#M195</guid>
      <dc:creator>loriexi</dc:creator>
      <dc:date>2025-12-12T16:46:15Z</dc:date>
    </item>
  </channel>
</rss>

