Splunk SOAR integration (QUX)

Contains

  • Introduction

    • Document and Release Information

  • Terminology

  • Architecture

  • Implementation

    • Vectra Pre-requisites

    • Splunk Pre-requisites

    • Downloading and Installing the App

    • Implementation Checklist

    • Initial Configuration of New Asset

  • Operational Components

    • Events

    • Artifacts

    • Attributes

    • Actions

    • Playbooks

  • Operations

    • Incident Creation Philosophy

    • Orientation

    • Workflow

    • Running Actions - General

    • Running Actions - Resolve Assignment

  • Working with Playbooks

  • Known Limitations

  • Troubleshooting

  • Worldwide Support Contact Information

Attachments

Last updated

Was this helpful?