Security

Aside from Alerts for Admins& Meta Woot! &MC what other Splunk apps are useful for daily chores & Ransomware monitoring?

SamHTexas
Builder

Am looking for top 5-10 Splunk Apps / TAs to help with daily security checks & Watching for UBA behaviors, Ransomware monitoring etc. Thank u in advance

Labels (1)
Tags (1)
0 Karma

General_Talos
Path Finder

This may be subjective 🤣, anyways can be a good discussion

- Splunk Enterprise Security

- InfoSec App for Splunk

- Splunk ES Content Update

- Splunk Security Essentials for Ransomware

SamHTexas
Builder

Thank u for this list. We have ES (Enterprise Security). Is Ent. security update a different app? Let me know if you think of more apps / TAs. Thank u again

Tags (1)
0 Karma

General_Talos
Path Finder

Yes, Splunk ES content update is different app

https://splunkbase.splunk.com/app/3449/

+1

SA-Investigator for Enterprise Security :  https://splunkbase.splunk.com/app/3749/

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...