Default Version 1.6.0
July 27, 2026
July 27, 2026
Splunk Enterprise, Splunk Cloud
Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3, 9.2, 9.1, 9.0
Log in to rate this app
#33 in Threat Intel
The Analyst1 App for Splunk is an add-on designed for use by existing Analyst1 customers. This add-on has two main functions: 1. Brings enrichment data around observables/indicators of compromise from Analyst1 into Splunk, providing lookup tables for correlation data. 2. Sends network/host log data from Splunk to Analyst1, correlating syslogs into hits against IOCs
Log in to report this app listing.