Introducing Our New SOAR Integrations: Why Panorama and FortiManager Users Should Be Excited

Security Coty Sugg
Hello there, cybersecurity aficionados! We're thrilled to unveil our latest and greatest Splunk SOAR apps, tailored for the giants of the firewall space: Panorama and FortiManager. These sophisticated apps help us deliver the most compelling automation for our community, no matter the tools they have deployed. Much like our playbooks packs from earlier this year, these integrations are another great way for users to align their incident response approach to MITRE D3FEND.

The Splunk SOAR team has heard your requests for integration options with these titans of the firewall market and we are excited to add them to our growing roster of apps. Users of these platforms can now revel in a suite of advanced automation and orchestration actions enhanced with the power of Splunk SOAR.

๐Ÿ” Panorama Users, Hereโ€™s Your Power List:

๐Ÿ›ก FortiManager Enthusiasts, Get Ready For:

For those safeguarding their digital fortresses with Panorama or FortiManager, life just got a tad simpler, more efficient, and definitely more automated. Dive in, explore the depths, and amplify your security game.

Stay tuned, and as always, keep those digital bastions secure!

Feel free to share, comment, or reach out if you've got any feedback or queries. If you have any new ideas or requests for updates that you'd like to see in future versions of Splunk SOAR, let us know over on Splunk Ideas. We're here, excited, and ready to support your journey with our enriched SOAR apps!

In the next and final blog in our deep dive into the newest features for Splunk SOAR 6.2, we'll take a look at our new CyberARK integration. If you haven't done so already, please be sure to also read our previous blog on logic loops and watch our Tech Talk session where we go over the newest information on Splunk SOAR 6.2.

Related Articles

Get Started with Splunk for Security: Splunk Security Essentials
Security
2 Minute Read

Get Started with Splunk for Security: Splunk Security Essentials

Splunk Security Essentials (SSE) is now part of the Splunk security portfolio and fully supported with an active Splunk Cloud or Splunk Enterprise license. Start using SSE and apply prescriptive guidance and deploy pre-built security detections in your Splunk environment.
Detecting HAFNIUM Exchange Server Zero-Day Activity in Splunk
Security
9 Minute Read

Detecting HAFNIUM Exchange Server Zero-Day Activity in Splunk

This blog discusses how to detect HAFNIUM activity around the recent CVEs released affecting Exchange Server using Splunk and Splunk Enterprise Security.
Using Splunk Attack Range to Test and Detect Data Destruction (ATT&CK 1485)
Security
2 Minute Read

Using Splunk Attack Range to Test and Detect Data Destruction (ATT&CK 1485)

Using Splunk Attack Range to test and detect Data Destruction techniques