The number of cyberattacks launched on organizations continues to rise every year. More attacks means more security alerts that security analysts have to triage each day. Many security teams have turned to a security orchestration, automation and response (SOAR) tool to help them automate the ever-increasing volume of security alerts, and respond to threats faster and more comprehensively.
But as your organization grows, and the number of security events and alerts increase as well, your SOAR tool needs to keep up. It needs to be an automation workhorse — today and into the future. It needs to be able to automate a majority of (if not all) alerts daily and not allow a backlog to develop, no matter how many security events you’re hit with each day. It also needs to make automation simple and easy. Playbooks should be versatile and easy to build — repeatable and usable across a multitude of security use cases.
That’s why the Splunk Phantom Team is excited to share that Splunk Phantom version 4.9 is generally available. This release enhances Phantom’s performance, scalability and speed to automate the ever-increasing volume of security events your SOC must contend with each day. It also improves the usability and simplicity of automation features within Phantom, making the security analyst experience easier than ever.
Let’s dive in. Some of the new and enhanced capabilities in this release include:
Other enhancements include Python 3 support, UI streamlining and more. For a full list of new features and upgrades, be sure to read our release notes.
Are you ready for a supercharged SOAR? Join the Splunk Phantom Community today to see how Splunk Phantom can supercharge your security operations.
The Splunk platform removes the barriers between data and action, empowering observability, IT and security teams to ensure their organizations are secure, resilient and innovative.
Founded in 2003, Splunk is a global company — with over 7,500 employees, Splunkers have received over 1,020 patents to date and availability in 21 regions around the world — and offers an open, extensible data platform that supports shared data across any environment so that all teams in an organization can get end-to-end visibility, with context, for every interaction and business process. Build a strong data foundation with Splunk.