Splunk users can get a better handle on overall security posture by correlating Proofpoint Email Protection data with other security and machine-generated data. The Proofpoint Email Security App For Splunk allows users to use the Email data model against filtering and mail logs without further customizations, and eliminates the need to understand PPS filtering data format. • Delivers visibility into today’s advanced attacks such as ransomware, business email compromise (BEC), impostor, and credential phishing attacks • Automates sending of email flter logs from Email Protection to Splunk Enterprise and Splunk Enterprise Security, from one or many sources • Provides visibility into email activity, threats and data exfiltration by attackers and malicious insiders • Consolidates reporting and provides comprehensive visibility by correlating email and other data sources in Splunk
(0)
Categories
Created By
Type
Downloads
Licensing
Splunk Answers
Resources