The Torq Add-on for Splunk enables security teams to integrate Torq's HyperAutomation platform with Splunk Enterprise and Splunk Enterprise Security. Trigger Torq workflows directly from your Splunk alert actions, or ad-hoc using Adaptive Response actions (when used with Enterprise Security). Features: * Alert Action Integration - Trigger Torq workflows from any Splunk alert or saved search * Enterprise Security Support - Launch workflows as Adaptive Response actions from correlation searches and notable events * Secure Configuration - Built-in credential management for Torq webhook integrations with authentication header support * Customizable Payloads - Flexible JSON payload formatting to send relevant Splunk context (search results, metadata, links) to Torq workflows
(0)
Categories
Created By
Type
Downloads
Licensing
Splunk Answers
Resources