The CyberX ICS Threat Monitoring application for Splunk makes it easier for industrial and critical infrastructure organizations to detect, investigate, and act on cyber threats to their industrial networks. By continuously monitoring wire data from industrial networks and applying patented behavioral analytics to it, CyberX enables joint customers to obtain real-time intelligence about OT risk and correlate it with other risk information in their Splunk repositories.
CyberX’s agentless, non-intrusive OT security platform enables joint customers to auto-discover their
assets and network topology, identify critical vulnerabilities and attack vectors, and continuously monitor their OT networks for destructive cyberattacks such as WannaCry, NotPetya, and TRITON.
CyberX’s agentless, non-intrusive OT security platform enables customers to auto-discover their
assets and network topology, identify critical vulnerabilities and attack vectors, and continuously monitor their OT networks for destructive cyberattacks such as WannaCry, NotPetya, and TRITON.
Combined with the Splunk API, the CyberX client application adds OT wire-data to Splunk’s logging capabilities in order extend detection and of OT alerts. The graphical interface in the CyberX app allows Splunk administrators to analyze the OT alerts that CyberX sends and monitor the entire OT security deployment, including details such as:
- Which of our 5 analytics engines detected the alert
- Which protocol generated the alert
- Which CyberX appliance generated the alert
- Severity level of the alert
- Source/destination of the communication
With the Splunk and CyberX integration, joint customers can reliably implement solutions and gain benefits such as ICS threat detection and real-time OT visibility.
Splunk AppInspect evaluates Splunk apps against a set of Splunk-defined criteria to assess the validity and security of an app package and components.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.