We are offering Splunk customers a Complimentary Enterprise License to monitor your own organization as well as up to 30 vendors, suppliers, or competitors (the choice is yours) for 60 days. Members who are existing customers can leverage their API key to activate this integration.
To access this license, please sign up here: https://securityscorecard.com/splunk
The SecurityScorecard addon for Splunk offers customers the ability to monitor three components of the SecurityScorecard platform:
You can choose to monitor your own scorecard or third party scorecards or both. Once the addon is installed, the addon will begin pulling scores and issue level event information on a daily basis and logging them to Splunk. You can leverage the power of Splunk to search, visualize, create alerts and take action, enabling you to efficiently monitor your own cybersecurity risk as well as the risk posed by your 3rd parties.
For more information, please visit securityscorecard.com
Fixed cloud failure by upgrading the Splunk SDK version to 2.0.2.
SecurityScorecard Addon for Splunk captures, indexes, and correlates real-time data in a searchable
repository from which it can generate graphs, reports, alerts, dashboards, and visualizations. The data is collected
using SecuriytScorecard REST Apis.
This release includes various bug fixes and compatibility improvements. It is compatible with the new Splunk app from SecurityScorecard.
IMPORTANT NOTES FOR UPGRADING FROM ADDON VERSION 1.x and 2.0.x:
Version 1.x and 2.0.x Input configurations are not compatible with version 2.1.1 addon. Please see How do I upgrade from 1.0.x or 2.0.x to 2.0? in Details for instruction on how to migrate your API keys to Accounts.
IMPORTANT NOTES FOR UPGRADING FROM ADDON VERSION 1.x and 2.0.x:
Version 1.x and 2.0.x Input configurations are not compatible with version 2.1.0 addon. Please see How do I upgrade from 1.0.x or 2.0.x to 2.0? in Details for instruction on how to migrate your API keys to Accounts.
-More Comprehensive Data with Issue Level Findings: issue-level data for any company can now be pulled into Splunk
-Support for Splunk Cloud: the latest version of the integration is Splunk Cloud certified
-More Reliable and Efficient Data Importing: the integration automatically tracks when data was last pulled in and will import data from the last day, eliminating the need for manual offsets and making it more resilient to scoring delays
-Compliant with CIM Data Models: integration is CIM compliant for overall and factor score changes and event log data
-Bug fixes: incorporated customer feedback and bug fixes into the latest version
What’s new in version 2.0:
-More Comprehensive Data with Issue Level Findings: issue-level data for any company can now be pulled into Splunk
-Support for Splunk Cloud: the latest version of the integration is Splunk Cloud certified
-More Reliable and Efficient Data Importing: the integration automatically tracks when data was last pulled in and will import data from the last day, eliminating the need for manual offsets and making it more resilient to scoring delays
-Compliant with CIM Data Models: integration is CIM compliant for overall and factor score changes and event log data
-Bug fixes: incorporated customer feedback and bug fixes into the latest version
What’s new in version 2.0:
-More Comprehensive Data with Issue Level Findings: issue-level data for any company can now be pulled into Splunk
-Support for Splunk Cloud: the latest version of the integration is Splunk Cloud certified
-More Reliable and Efficient Data Importing: the integration automatically tracks when data was last pulled in and will import data from the last day, eliminating the need for manual offsets and making it more resilient to scoring delays
-Compliant with CIM Data Models: integration is CIM compliant for overall and factor score changes and event log data
-Bug fixes: incorporated customer feedback and bug fixes into the latest version
What’s new in version 2.0:
-More Comprehensive Data with Issue Level Findings: issue-level data for any company can now be pulled into Splunk
-Support for Splunk Cloud: the latest version of the integration is Splunk Cloud certified
-More Reliable and Efficient Data Importing: the integration automatically tracks when data was last pulled in and will import data from the last day, eliminating the need for manual offsets and making it more resilient to scoring delays
-Compliant with CIM Data Models: integration is CIM compliant for overall and factor score changes and event log data
-Bug fixes: incorporated customer feedback and bug fixes into the latest version
Version 1.0 of the SecurityScorecard Technical Addon for Splunk Enterprise.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.