Hey!
My team is interested in integration of Splunk (especially ES) and TheHive Project products.
The goal is to provide automated sending Splunk Alerts (Notable Events in case of ES) to TheHive platform for further automatic analysis by Cortex and returning results back to Splunk.
I don't have any experience in stuff like that so I would like to get any ideas of solving this problem.
Maybe anyone have done that before on their project and would like to share any solutions?
Hello @bil151515 we have done it successfully if needed.
Can you expand on how your team did it? Ideally with step-by-step methods.