← Go back to library

Search & update notable status in Splunk Enterprise Security

This Story runs when Splunk Correlated Alert fires off in Splunk ES. It will auto-assign a notable event to the progress status, owner, and comment of your choosing.

Tools

Splunk

Created by

Tines

How it works

Import this story to your tenant, from where you can adapt it to meet your unique needs.

Import
Was this story helpful?