Featured: Edge Processor
Scaling Edge Processor infrastructure
This series looks at scaling Splunk Edge Processor using Amazon EKS. The goal is to help alleviate horizontal scaling challenges and provide a fast on-ramp for growing your Edge Processor footprint in a rapid and easily supported way.
Featured: Splunk Platform
Leveraging Splunk MCP and AI for enhanced IT operations and security investigations
The Splunk Model Context Protocol server for Splunk Cloud Platform is a fully-managed service that acts as a secure bridge, allowing AI agents and applications to interact with your Splunk environment. This enables you to query your data, get information about your environment, and automate tasks using natural language.
Featured: Splunk Platform
Leveraging MLTK's new generative AI capability in security operations
The Splunk Machine Learning Tookit version 5.6.0 introduces a capability to connect to large language models natively to enable seamless integration with external LLM services. Users can connect to on-premises LLMs via the LLM connectors in MLTK. By utilizing the AI SPL command, LLMs can be prompted directly from Splunk searches.
Resources for Splunk Program Managers
The Splunk Success Framework
Accelerate and increase the value you derive from your data with Splunk software using the Splunk Success Framework (SSF), a flexible collection of best practices for setting up Splunk Enterprise or Splunk Cloud Platform as a program.
Data Ingestion and Application
Data Descriptors
Bring data to every question, decision, and action across your organization with comprehensive guidance for getting data in and applying data to your key use cases.
Get the latest
New Articles
- Platform
- Turn data into doing to unlock innovation, enhance security and drive resilience.
- Security
- Protect your business and modernize your security operations with a best-in-class data platform.
- Observability
- Solve problems in seconds with the only full-stack, analytics-powered, and OpenTelemetry-native observability solution.
- Splunk Success Framework
- The Splunk Success Framework (SSF) is a flexible collection of best practices for setting up your Splunk software implementation as a program.
- Data Descriptors
- The data sources in use at your organization can all be linked to common use cases. Get recommendations from Splunk experts and then start getting answers from your data.
- Malware data
- Application data
- Application server data
- Authentication data
- Backup data
- Vendor-specific data
- Endpoint detection and response (EDR) data
- Intrusion detection data
- Load balancer data
- Email data
- Network communication data
- Patch management data
- Physical security data
- Web proxy data
- Change data
- Configuration management data
- IP address assignment data
- Vulnerability detection data
- Web server data
- Network resolution data
- Linux and Unix
- Okta
- SAP
- Zscaler
- Zoom
- Zeek
- Websense
- VMware
- CrowdStrike
- Carbon Black
- Kubernetes
- Check Point
- Fortinet
- Salesforce
- Symantec
- Palo Alto Networks
- Trend Micro
- Tenable
- GitHub
- Atlassian
- AppDynamics
- Dell
- Syslog
- Apache
- Amazon
- Cisco
- Microsoft
- GitLab
- Mac OS
- Docker
- Network firewall data
- Skyhigh Security
- OpenAI
- Adobe
- NETSCOUT
- Nagios
- Tanium
- Gigamon
- Fabrix.ai
- Financial data
- Medical device data
- Mobile device data
- User activity log data
- Network sessions data
- Electronic data interchange data
- Operational technology data
- IoT and industrial IoT data
- Network switch data
- Network router data
- Supplier and procurement data
- Network traffic data
- Web application firewall data
- Call detail record data
- Physical card reader data
- Content delivery network data
- Video conferencing and communication data
- Inventory data
- Storage data
- Database data
- Customer relationship management data
- Certificates data
- OpenTelemetry data
- Cloud services data
- Performance data
- Update data
- Personally identifiable information
- SNMP data
- Event signatures data
- Cloud productivity suite data
- Compliance and governance data
- Alerts data
- Binary repositories data
- Virtualization data
- Printer data
- Real user monitoring data
- Data access data
- Network access control data
- Data loss prevention data
- Insider threat data
- Threat intelligence data
- Synthetic monitoring data
- OpenLLMetry data
- Security orchestration, automation, and response data
- Network VPN data
- Law enforcement data
- Deep packet inspection data