I work in a very large environment with Splunk Ent. + ES. Use case are forgotten & no one has time to deal with them. So am trying to create a plan to use them to better our environment. Please advise. Thx a million.