Tools to ease the maintenance of correlation searches: peer review and change tracking, simple task management, framework to encourage best practices, morning checks checks stub...
Demonstrated in SEC1441A at .conf21: 'How We Maintain Our Correlations in Splunk Enterprise Security at Thales UK'