


Search & update notable status in Splunk Enterprise Security
This Story runs when Splunk Correlated Alert fires off in Splunk ES. It will auto-assign a notable event to the progress status, owner, and comment of your choosing.
Tools
Created by
How it works
Import this story to your tenant, from where you can adapt it to meet your unique needs.
ImportWas this story helpful?
Loading story...