About Splunk Enterprise Security

Splunk Enterprise Security provides the security practitioner with visibility into security-relevant threats found in today's enterprise infrastructure. Splunk Enterprise Security is built on the Splunk operational intelligence platform and uses the search and correlation capabilities, allowing users to capture, monitor, and report on data from security devices, systems, and applications. As issues are identified, security analysts can quickly investigate and resolve the security threats across the access, endpoint, and network protection domains.

Access Splunk Enterprise Security

  1. Open a web browser and navigate to Splunk Web.
  2. Log in with your username and password.
  3. From the Apps list, click Enterprise Security.

Get started

Get started with common analyst workflows in Splunk Enterprise Security.

If you are a Splunk Enterprise Security administrator, see Administer Splunk Enterprise Security to access documentation specific to your administrator workflows.