Skip to main content
Warning
This app is archived. App archiving documentation
Enterprise Threat Monitor for SAP app icon

Enterprise Threat Monitor for SAP

ETM integrates real-time SAP security into Splunk. ETM has over 300 SAP specific threat monitoring cases built-in and preconfigured, which includes 0-day SAP attack signatures, common attacks such using debug/replace on SAP to bypass authorizations, and compliance related issues such as SAP account sharing or download of customer master data.Built by Matthias Zimmermann
splunk product badge

Default Version 3.1.92

August 19, 2018

Compatibility

Splunk Enterprise

Platform Version: 9.4, 9.3, 9.2, 9.1, 9.0

Rating
5
(2)

Log in to rate this app

Support
Archived App

ETM integrates real-time SAP security into Splunk. ETM has over 300 SAP specific threat monitoring cases built-in and preconfigured, which includes 0-day SAP attack signatures, common attacks such using debug/replace on SAP to bypass authorizations, and compliance related issues such as SAP account sharing or download of customer master data. ETM uses machine learning to adapt to your organization's SAP usage patterns and to reduce noise when detecting threats. This allows SOC teams to spend significantly less time in reviewing the events. With Enterprise Threat Monitor, you don't need to send raw SAP security logs to Splunk and build and maintain your own use cases. It just works.