Check out the Largest Integration Ecosystem in Cybersecurity and IT and request to be included. 

PARTNER

Splunk Enterprise Security

Splunk | SIEM

About the Splunk Enterprise Security Integration

Splunk Enterprise Security is Splunk’s premium SIEM solution and the industry benchmark for security analytics, providing advanced threat detection, investigation, and response capabilities built on Splunk’s data platform for enterprise security operations centers worldwide. Part of Synqly’s SIEM Unified API, the Splunk Enterprise Security integration enables security teams to route normalized security event data from Synqly-connected tools into Splunk’s correlation and detection engine through a standardized connector. Integrate with Splunk Enterprise Security to centralize security telemetry from across your stack into Splunk ES, powering correlation searches, notable events, and investigations.

Integration Use Cases

add_alert

Get Alert

Retrieves an alert by ID.

event_note

Post Events

Writes a batch of `Event` objects to the SIEM configured with the token used for authentication.

notifications_active

Query Alerts

Queries alerts from the SIEM configured with the token used for authentication.

event_list

Query Events

Queries events from the SIEM configured with the token used for authentication.

data_alert

Query Log Providers

Queries available log providers in the source SIEM

Integration Resources

About Splunk

Splunk is the world's leading data platform for security and IT operations, trusted by enterprises and governments globally to monitor, investigate, and respond to threats at scale across massive volumes of machine data. With a security portfolio spanning SIEM, SOAR, and threat intelligence management that powers security operations centers worldwide, Splunk is the gold standard for security analytics and operational intelligence. Teams looking to integrate with Splunk or build a Splunk integration can use Synqly to route normalized security data, logs, and telemetry from across the security stack into Splunk's analytics platform through a unified connector.

  • Platform
  • Integrations
  • Resources
  • About
  • Blog