Splunk SOAR

SOAR Automation

sankar_admin
New Member

we have Splunk ES for security monitoring & ITSI for system monitoring. Now alerts and incidents are manual process it consumes lot of time due to involving different teams. 

so incident management we are using BMC helix, now i am planning to implement SOAR platform to reduce human error & resolution time.

my question is

1. SOAR platform configuration Prerequisites (single & multi-site)

2.  security & non-security PoC's using SOAR.

3. compatibility matrix SOAR platform with different vendors.

Much Appreciated if anyone share your knowledge & guidance.

Labels (2)
0 Karma
Get Updates on the Splunk Community!

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...

Splunk App Developers | .conf25 Recap & What’s Next

If you stopped by the Builder Bar at .conf25 this year, thank you! The retro tech beer garden vibes were ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...