Trellix Add-on for Splunk was developed to solve the data ingest from Trellix MVision EPO API on Splunk to use cases in Splunk Enterprise and Splunk Enterprise Security. Trellix Add-on for Splunk is the Technical Add-on (TA) developed for ingest or map security data collected from Trellix MVision EPO API. Trellix Add-on for Splunk provides common information model (CIM) knowledge, to use with other Splunk Enterprise Apps such Splunk Enterprise Security.