Security

Can Splunk be used for Security Event Management ?

SomnathShilimka
Explorer

Hi All,

I would like to know is Splunk right tool for Security Event Management ?

Regards,

Somnath Shilmkar

0 Karma

kristian_kolb
Ultra Champion

Yes. Splunk, with the Enterprise Security app is a SIEM. The ES app is an additional package that is place on top of the core splunk installation. You can read more about it here;

http://www.splunk.com/view/enterprise-security-app/SP-CAAAE8Z
http://apps.splunk.com/app/263
http://docs.splunk.com/Documentation/ES

Hope this helps,

K

Get Updates on the Splunk Community!

Splunk Enterprise Security 8.0.2 Availability: On cloud and On-premise!

A few months ago, we released Splunk Enterprise Security 8.0 for our cloud customers. Today, we are excited to ...

Logs to Metrics

Logs and Metrics Logs are generally unstructured text or structured events emitted by applications and written ...

Developer Spotlight with Paul Stout

Welcome to our very first developer spotlight release series where we'll feature some awesome Splunk ...