Security

Aside from Alerts for Admins& Meta Woot! &MC what other Splunk apps are useful for daily chores & Ransomware monitoring?

SamHTexas
Builder

Am looking for top 5-10 Splunk Apps / TAs to help with daily security checks & Watching for UBA behaviors, Ransomware monitoring etc. Thank u in advance

Labels (1)
Tags (1)
0 Karma

General_Talos
Path Finder

This may be subjective 🤣, anyways can be a good discussion

- Splunk Enterprise Security

- InfoSec App for Splunk

- Splunk ES Content Update

- Splunk Security Essentials for Ransomware

SamHTexas
Builder

Thank u for this list. We have ES (Enterprise Security). Is Ent. security update a different app? Let me know if you think of more apps / TAs. Thank u again

Tags (1)
0 Karma

General_Talos
Path Finder

Yes, Splunk ES content update is different app

https://splunkbase.splunk.com/app/3449/

+1

SA-Investigator for Enterprise Security :  https://splunkbase.splunk.com/app/3749/

0 Karma
Get Updates on the Splunk Community!

Data Preparation Made Easy: SPL2 for Edge Processor

By now, you may have heard the exciting news that Edge Processor, the easy-to-use Splunk data preparation tool ...

Introducing Edge Processor: Next Gen Data Transformation

We get it - not only can it take a lot of time, money and resources to get data into Splunk, but it also takes ...

Tips & Tricks When Using Ingest Actions

Tune in to learn about:Large scale architecture when using Ingest ActionsRegEx performance considerations ...