Automation Made Easy: What’s New with Splunk Phantom

Security Splunk

The Splunk Security Team is excited to share some of the new and enhanced capabilities of Splunk Phantom, Splunk’s security orchestration, automation and response (SOAR) technology. Phantom’s latest update (v4.10) makes automation implementation, operation and scaling easier than ever for your security team. Using automation, you can more efficiently address the ever-increasing volume of security events your SOC receives each day, reduce mean time to detect (MTTD) and mean time to respond (MTTR), and optimize your security operations.

Let’s Take a Look at Some of the Recent Innovations:

Security automation is now easier than ever — see all of these capabilities in action in this webinar.

To learn more about Splunk Phantom, watch a demo or sign up for the Free Community Edition of Splunk Phantom to begin your automation journey today.

Already a current Phantom user? Check out the 4.10 Release Notes or download Phantom v4.10 to take advantage of the latest updates.

----------------------------------------------------
Thanks!
Olivia Courtney

Related Articles

Detecting HAFNIUM Exchange Server Zero-Day Activity in Splunk
Security
9 Minute Read

Detecting HAFNIUM Exchange Server Zero-Day Activity in Splunk

This blog discusses how to detect HAFNIUM activity around the recent CVEs released affecting Exchange Server using Splunk and Splunk Enterprise Security.
Duqu 2.0 – The cyber war continues on a new level
Security
2 Minute Read

Duqu 2.0 – The cyber war continues on a new level

Automated Clean-up of HAFNIUM Shells and Processes with Splunk Phantom
Security
5 Minute Read

Automated Clean-up of HAFNIUM Shells and Processes with Splunk Phantom

Implement security playbooks to automatically delete Microsoft Exchange Webshells and terminate W3WP spawned processes with Splunk Phantom.