Splunk App for Enterprise Security
The Splunk App for Enterprise Security helps customers identify and address emerging security threats through the use of continuous monitoring, alerting and analytics. Suitable for a small security team or an enterprise security operations center, the app is the primary data interface for the analytics enabled security operation. * Situational awareness dashboards give custom views of risk per domain, asset, or identity * Incident Review provide analysis workflows that reveal the priority of the incident, incident context, and impact on assets and identities * Analysis centers provide indicators of unknown threats from traffic abnormalities * Correlation tools enable monitoring for new attackers by correlating new domain registration with web activity * Statistical outlier detection tools aid anomaly detection * Unified Threat Intelligence from many sources * Data inputs provided for NetFlow, logs, RDBMS, APIs, & more
Splunk App for Microsoft Exchange
Splunk App for Microsoft Exchange gathers performance metrics, log files, and PowerShell data from all aspects of Microsoft Exchange and its underlying infrastructure, including Active Directory, Windows, POP3, IMAP4, ActiveSync, Exchange Audit Logs, Outlook Web Access, and IIS, and presents the data in a series of operational dashboards covering IT Operations, Security Operations, Capacity Planning, and Helpdesk functionalities. IT and Security professionals can now use at-a-glance dashboards for their services, users and infrastructure. Splunk App for Microsoft Exchange comes with over fifty out-of-the-box dashboards and reports. By bundling the Exchange, Active Directory, and Windows apps together, the experience provides correlation opportunities across the three components. A unique First Time Run experience detects data you may have already to highlight areas for your specific environment. Host Monitoring, Print Monitoring, and Network Monitoring also light up new possibilities.
Google Maps for Splunk adds a geo-visualization module based on the Google Maps API and allows you to quickly plot geographical information on a map. Furthermore maps can be embedded in advanced dashboards.