Splunk Enterprise Security

Symantec MSS integration with Splunk for orchestration and Incident Management

sonin
New Member

Dear ALL ,

I am searching a procedure to pull and update the incidents from Symantec MSS created by their SOC

they have SWS(secure web service) and API defined with SOAP messages to access tickets and incident.

I know I can fetch it through Rest API with SOAP over HTTPS which require python script.

If anybody know about this type pf integration please help for scripting and rest configuration

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...