Splunk Tech Talks
Deep-dives for technical practitioners.

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

DayaSCanales
Splunk Employee
Splunk Employee

Screenshot 2025-10-31 125708.png

 

Now on-Demand

Are you leveraging automation to its fullest potential in your threat detection strategy?

Find out how Splunk Attack Analyzer can help you quickly and efficiently investigate potential malware and phishing incidents by automatically tracking each stage of complex attack chains and expediting your response efforts.

Hear directly from Product Manager Aditya Raj as he demonstrates how to combine Splunk Attack Analyzer with Splunk Enterprise Security and Splunk SOAR for even greater threat detection and response power.

What you’ll gain from this session:

  • An in-depth look at the automated analysis capabilities of Splunk Attack Analyzer
  • Practical integration scenarios with other Splunk solutions
  • Resources to help you strengthen and streamline your security processes

 

 

DayaSCanales
Splunk Employee
Splunk Employee

Here are a few top of mind questions from the live Tech Talk

 

Q. Do I need to own other Splunk products in order to use Splunk Attack Analyzer?

A. No, Splunk Attack Analyzer can be used on its own; you do not need to own any other Splunk products in order to use it.

DayaSCanales_4-1757347932596.png

Q. How can I get a demo of Splunk Attack Analyzer?

A. You can reach out to your account rep to set up a demo, or if you’re attending .conf25 in September, we’ll also have folks doing product demos in the Pavillion.

DayaSCanales_5-1757347932597.png

Q. Do you have any case studies about how customers use Splunk Attack Analyzer alongside other Splunk products?

A. Yes! One example is a case study featuring Johnson Matthey, which describes their use of Splunk Attack Analyzer alongside Splunk Enterprise Security and Splunk SOAR: https://www.splunk.com/en_us/customers/success-stories/johnson-matthey.html

DayaSCanales_5-1757347932597.png

 

Contributors
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...