Splunk Tech Talks
Deep-dives for technical practitioners.

Splunk Phantom App Building the Easy Way

melissap
Splunk Employee
Splunk Employee

View our Tech Talk: Security Edition, Splunk Phantom App Building the Easy Way 

Splunk Phantom apps provide a way to extend the Phantom platform by adding connectivity to third party security technologies in order to run actions. Given the broad set of technologies that can be orchestrated during cyber response, apps allow users and partners to add their own custom functionality within Phantom. Apps are written in Python, and in order to automate successfully, you must have at least one person that understands how apps work, how to troubleshoot an app, how to modify an app, and how to build a new app from scratch. 

This talk will walk you through the open source Phantom Test Harness you can use to greatly simplify the Phantom App building/testing process. 

Contributors
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and stall ...

Print, Leak, Repeat: UEBA Insider Threats You Can't Ignore

Are you ready to uncover the threats hiding in plain sight? Join us for "Print, Leak, Repeat: UEBA Insider ...

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...