Splunk Enterprise Security

Does ES have all the features available in Splunk Security Essentials App?

damode
Motivator

Does ES also comes with SSE app features like Analytics Advisor, Content Recommendations, Data inventory, CIM compliance check etc ?

I found these features really useful for data source assessment.

Labels (2)
0 Karma

samin
Engager

In ES I can see use cases from other apps like SA-Threatintelligence, SA-Accessprotection etc. Aren't SSE contents  visible in ES?

0 Karma

richgalloway
SplunkTrust
SplunkTrust

ES and SSE are complimentary products.  If you buy ES you may still need SSE.

---
If this reply helps you, Karma would be appreciated.
0 Karma

SamHTexas
Builder

Rich, / Any one who have used Security Essentials. Do you by any chance have any leads on how to configure the security Essentials? I have spent hours, not able to make it go. When you click on Configure pull down in Sec essentials & try to add an add-on that it asks of integrate it with ES. You just watch the spinning wheel turn & turn. Also the use case are not able to be accessed. Please advise

Tags (1)
Get Updates on the Splunk Community!

Now Available: Cisco Talos Threat Intelligence Integrations for Splunk Security Cloud ...

At .conf24, we shared that we were in the process of integrating Cisco Talos threat intelligence into Splunk ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Easily Improve Agent Saturation with the Splunk Add-on for OpenTelemetry Collector

Agent Saturation What and Whys In application performance monitoring, saturation is defined as the total load ...