Welcome to the new Splunkbase! To return to the old Splunkbase, click here.
CrowdStrike Scheduled Search Technical Add-on app icon

CrowdStrike Scheduled Search Technical Add-on

The CrowdStrike Falcon Platform provides customers with extensive visibility into the configuration of and events taking place on endpoints and workloads. While triggered detections are an important part of endpoint security, CrowdStrike also provides the ability to search the raw event data. Scheduled searches can be used to automate the recurrence of those searches. This technical add-on allows CrowdStrike Falcon customers to retrieve successful scheduled searched from the Falcon platform via public APIs and have the events indexed into Splunk.

Built by CrowdStrike
splunk product badge

Latest Version 2.3.0
November 26, 2024
Compatibility
Not Available
Platform Version: 9.4, 9.3, 9.2, 9.1
CIM Version: 6.x, 5.x
Rating

0

(0)

Log in to rate this app
Support
CrowdStrike Scheduled Search Technical Add-on support icon
Developer Supported addon
Learn more
Ranking

#29

in SIEM
The CrowdStrike Falcon Platform provides customers with extensive visibility into the configuration of and events taking place on endpoints and workloads. While triggered detections are an important part of endpoint security, CrowdStrike also provides the ability to search the raw event data. Scheduled searches can be used to automate the recurrence of those searches. This technical add-on allows CrowdStrike Falcon customers to retrieve successful scheduled searched from the Falcon platform via public APIs and have the events indexed into Splunk.

Categories

Created By

CrowdStrike

Type

addon

Downloads

871

Resources

Login to report this app listing