Splunk Enterprise Security

Setup multiple layouts in ES incident review for various users

sumchan
Engager

How to customize the ES Incident Review in a way:
1) Once logged in, users can only see the Incident Review Dashboard but no other collections/views in the layout
2) Different user logged in with a different filtered view
3) Hide the search boxes for some users but not all

Get Updates on the Splunk Community!

Unlock New Opportunities with Splunk Education: Explore Our Latest Courses!

At Splunk Education, we’re dedicated to providing top-tier learning experiences that cater to every skill ...

Technical Workshop Series: Splunk Data Management and SPL2 | Register here!

Hey, Splunk Community! Ready to take your data management skills to the next level? Join us for a 3-part ...

Spotting Financial Fraud in the Haystack: A Guide to Behavioral Analytics with Splunk

In today's digital financial ecosystem, security teams face an unprecedented challenge. The sheer volume of ...