BigHugger
sk Skill · mukul975

building-threat-intelligence-enrichment-in-splunk

Build automated IOC enrichment pipelines in Splunk Enterprise Security by ingesting threat feeds into KV Store collections and correlating them against security events via lookup tables, modular inputs, and the Threat Intelligence Framework. Use when wiring threat intel into Splunk correlation searches to flag IOC matches and cut SOC triage time.

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
confsplpythonsiemPythonlookupiocenrichmentthreat-intelligenceenterprise-securitysocsplunk
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Licence
Apache-2.0
Host stars
33k
Host language
Python