Splunk
The SailPoint Splunk integrations provide real-time analysis of security and task alerts generated in IdentityIQ and IdentityNow within the Splunk application. IdentityIQ can then take actions to disable relevant accounts, initiate a certification, or flag an identity for additional security based on pre-defined rules.
Support Level:
These integrations are developed and supported by SailPoint. For assistance with these integrations please email Support.IDPlusA@SailPoint.com or support@splunk.com
Supported Versions
- IdentityIQ 8.0+
- IdentityNow
Documentation
SailPoint Adaptive Response (IIQ)
IdentityIQ and Splunk Enterprise Security Integration - Overview
SailPoint IdentityIQ and Splunk Enterprise Integration - Installation and User Guide
SailPoint AuditEvent Add-on (IDN)
Comments
Sep 01, 2021
07:25 AM
- Mark as Read
- Mark as New
- Bookmark
- Permalink
- Report Content to Moderator
Sep 01, 2021
07:25 AM
Hi ,
We have an interesting query from SIEM team. i.e. They want me to build the business use case "How this integration is going to add value to Business".
Any one can provide real value out of this integration.
Thanks,
Usman
Version history