August 12, 2026
Splunk Add-on for RSA SecurID CAS
The Splunk Add-on for RSA SecurID Cloud Authentication Service allows a Splunk Enterprise administrator to collect user activity, admin activity logs, and risk user lists using the adminlog, usereventlog, and /v2/users/highrisk APIs. You can directly analyze the RSA SecurID Cloud Authentication Service data or use it as a contextual data feed to correlate with other security data in Splunk. This add-on provides the inputs and CIM--compatible knowledge to use with other Splunk Enterprise apps, such as Splunk Enterprise Security and the Splunk App for PCI Compliance.Built by Splunk LLCDefault Version 1.2.3
Compatibility
Splunk Enterprise, Splunk Cloud
Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3
CIM Version: 4.x
Rating
0(0)
Log in to rate this app
Support
Splunk Supported
The Splunk Add-on for RSA SecurID Cloud Authentication Service allows a Splunk Enterprise administrator to collect user activity, admin activity logs, and risk user lists using the adminlog, usereventlog, and /v2/users/highrisk APIs. You can directly analyze the RSA SecurID Cloud Authentication Service data or use it as a contextual data feed to correlate with other security data in Splunk. This add-on provides the inputs and CIM--compatible knowledge to use with other Splunk Enterprise apps, such as Splunk Enterprise Security and the Splunk App for PCI Compliance.
Categories
IT Operations, Security, Fraud & Compliance
Created by
Splunk LLC
Type
addon
Downloads
5,742
Splunk Answers
Resources
Log in to report this app listing.