Skip to main content
false

Tag: Splunk Enterprise Security

Latest Articles

Security 5 Min Read

Stitching Notables Together with Event Sequencing

Event Sequencing can take multiple notable events that are created from correlation searches and present them to the analysts as a set of linked notable events and help prioritize response when these chain of events occur.
Security 2 Min Read

Balancing Digital Advances with Security Exposure Takes 2020 Vision

Splunk has joined forces with other IT and OT security firms to charter and evolve the Operational Technology Cyber Security Alliance (OTCSA).
Security 3 Min Read

New: Machine Learning in Splunk Enterprise Security Content Update

Use machine learning techniques to identify outliers in security-related data with a new probability-density function algorithm in Splunk's Machine Learning Toolkit (MLTK)
Security 6 Min Read

Defending Against Common Phishing Frameworks Kits with Splunk Enterprise Security Content Update

Discover how Splunk Enterprise Security Content Update (ESCU) can help you protect your network.
Security 4 Min Read

Monitor for, Investigate, and Respond to Phishing Payloads with Splunk Enterprise Security Content Update

Detect, investigate, and defend signs of phishing payloads in your environment with Splunk Enterprise Security Content Update (ESCU)
Security 6 Min Read

Defending Against Phishing Frameworks with Splunk Enterprise Security Content Updates

Attackers often use phishing framework kits to generate faux websites to trick unwitting users into visiting and/or giving up sensitive information.
Security 3 Min Read

Boss of the SOC (BOTS) Advanced APT Hunting Companion App: Now Available on Splunkbase

If you want to learn more about threat hunting with Splunk, this app in conjunction with the BOTSv2 data set is just the answer!
Security 4 Min Read

Threat Intel and Splunk Enterprise Security Part 2 - Adding Local Intel to Enterprise Security

Splunker John Stoner shares a walkthrough for how to add local threat intelligence into Splunk Enterprise Security
Security 6 Min Read

Service Providers Need More Than a SIEM

If you're a security-focused service provider, we've got good news for you – Splunk is more than just a SIEM solution.