Splunk Enterprise

Sysmon event gathering

omershira
Explorer

Hey all,


We want to start analyzing sysmon information via Splunk (event logs)

We did find applications here but it did not met our expectations

How do you recommend to do this?

Is this is possible to analyze Sysmon information in windows Standard App without a major effort?

We do prefer to use splunk apps and addons suppoted by Splunk inc.

Thanks

Tankwell

Labels (1)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...