The Semperis DSP Splunk app contains event data collected via DSP. The DSP Windows Event logs are added to Splunk to provide the SOC information about DSP general operation, DSP Notification Events, and DSP Security Indicators. DSP Active Directory change events are also added to Splunk to provide insights to the SOC.