The VMware Carbon Black Cloud App for Splunk is a single application to integrate your endpoint and workload security features and telemetry directly into Splunk dashboards, workflows and alert streams.
This application connects with any Carbon Black Cloud offering and replaces the existing product-specific Carbon Black apps for Splunk. This app provides a unified solution to integrate Carbon Black Cloud Endpoint and Workload offerings with Splunk Enterprise, Splunk Cloud, and Splunk Enterprise Security (ES). Out-of-the-box, this app provides holistic visibility into the state of your endpoints and workloads through customizable dashboards and alert feeds in Splunk.
For distributed Splunk environments, please use the Input Add-on (https://splunkbase.splunk.com/app/5333/) and the Technology Add-on (https://splunkbase.splunk.com/app/5334/).
Categories
IT Operations, Security, Fraud & Compliance
Created By
Carbon Black Developer Network
Resources
Log in to report this app listing