icon/x Created with Sketch.

Splunk Cookie Policy

We use our own and third-party cookies to provide you with a great online experience. We also use these cookies to improve our products and services, support our marketing campaigns, and advertise to you on our website and other websites. Some cookies may continue to collect information after you have left our website. Learn more (including how to update your settings) here.
Accept Cookie Policy

We are working on something new...

A Fresh New Splunkbase
We are designing a New Splunkbase to improve search and discoverability of apps. Check out our new and improved features like Categories and Collections. New Splunkbase is currently in preview mode, as it is under active development. We welcome you to navigate New Splunkbase and give us feedback.

Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading Compliance Essentials for Splunk
SHA256 checksum (compliance-essentials-for-splunk_211.tgz) 198b11070438502331a6cbc028828cddede4ceb8d99053ac707a79d5ce04eaf3 SHA256 checksum (compliance-essentials-for-splunk_210.tgz) 6fc13d0f9676cf99461afbae7725463840318540125a751f1efa9629c5cac0b1 SHA256 checksum (compliance-essentials-for-splunk_201.tgz) c68495e7142b5e79b3adb3a10588020a2f7647a50fd80e2dbf77f92bb601ecad SHA256 checksum (compliance-essentials-for-splunk_110.tgz) 1ad12b7eb3586a98472dea6e11b1d31aade21312b405fb8a1648a9c6e20fafd0
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate

splunk

Compliance Essentials for Splunk

Splunk Cloud
Splunk Labs
This app is NOT supported by Splunk. Please read about what that means for you here.
Overview
Details
Customers can utilize Splunk to streamline continuous monitoring efforts, improve cybersecurity posture, and address the requirements of different National Institute of Standards and Technology (NIST)-based control frameworks, including the following: Risk Management Framework **(RMF)**, Cybersecurity Maturity Model Certification **(CMMC)**, Defense Federal Acquisition Regulation Supplement **(DFARS)** , the Office of Management **(OMB M-21-31)** MEMORANDUM, the Australian Information Security Manual **(ISM)**, Essential 8 **(E8)**, the Australian Energy Sector Cyber Security Framework **(AES-CSF)**, and NCSC Cyber Assessment Framework **(CAF)**. The app uses the KVStore to store panels for practices and a mapping that maps multiple panels across frameworks.

The app references CMMC version 1.0, NIST SP 800-53, Revision 5 for RMF and FISMA, NIST SP 800-171 Revision 2 for DFARS, ISM version March 2023 variant, Essential Eight November 2022 variant.

Compliance Essentials for Splunk - Documentation

Introduction

Overview

The Compliance Essentials for Splunk app contains practices and dashboards that align with the Risk Management Framework (RMF), Cybersecurity Maturity Model Certification (CMMC), Defense Federal Acquisition Regulation Supplement (DFARS) , the Office of Management (OMB M-21-31) MEMORANDUM, the Australian Information Security Manual (ISM), Essential 8 (E8), the Australian Energy Sector Cyber Security Framework (AES-CSF), and NCSC Cyber Assessment Framework (CAF). The app uses the KVStore to store panels for practices and a mapping that maps multiple panels across frameworks.

The app references CMMC version 1.0, NIST SP 800-53, Revision 5 for RMF and FISMA, NIST SP 800-171 Revision 2 for DFARS, ISM version March 2023 variant, Essential Eight November 2022 variant.

For Install Steps, navigate to Documentation or the Installation tab in the New Splunkbase.

Documentation

For additional information and configuration on the app, visit further documentation here

Help

This app is not supported by Splunk; however, the developer will use reasonable efforts to respond to queries. You may contact the developer at ssg-sce@splunk.com. Feedback is always welcome and appreciated!

Release Notes

Version 2.1.1
April 29, 2024
  • Bug Fixes
  • User permission not saving after creating a system in System Overview
  • Mismatched ID's in OMB lookup causing incorrect data requirements to appear on some dashboards
  • OMB data requirement entry being displayed throughout multiple dashboards
  • User and role names consisting of only numbers were not properly supported under the permissions configuration for a system
Version 2.1.0
Nov. 10, 2023
  • Added four new frameworks:
  • Australian Information Security Manual (ISM)
    • 800+ ISM Control dashboards
    • ISM Assessment Overview
  • Essential 8 (E8)
    • 130+ Essential Eight Control dashboards
    • Essential Eight Assessment Overview
  • Australian Energy Sector Cyber Security Framework (AES-CSF)
    • AES-CSF Control dashboards.
  • NCSC Cyber Assessment Framework (CAF)
    • 39 CAF Control dashboards
    • CAF IGP Requirements Overview
  • Added ability to add multiple panels to a dashboard at once
  • Added System Health Dashboard
  • Fixed OMB Overview Drilldown bug
  • Updated 'Reviewer Activity' visualization to Timeline in the Executive Overview dashboard
  • Added 100+ new custom content panels
Version 2.0.1
June 30, 2023
  • Supports Multi-system
    • Systems can be split by hosts, index, source, or sourcetype
    • System permissions can be set by user and/or role
    • Practices are hidden/displayed on Practice Overview by System
    • Dashboards can be filtered by systems
  • Split 'OMB Data Inventory' Data Sets into individual Data Models (Deprecated 'OMB Data Inventory' Data Model)
  • Added drilldowns to Practice Dashboards from Executive - Overview and OMB Data Requirements Overview
  • "No Status/Not Yet Reviewed" added on Overview Dashboards
  • Default lookback for Data Models added
  • Documentation Updates
Version 1.1.0
Feb. 17, 2023
  • Supports multiple frameworks
  • 'OMB Data Inventory' Data Model added for Data Introspection panel searches (application no longer dependent on SSE)
  • Data Tracking Requirements capability and Overview Page added for OMB
  • Expanded Guidance now supports Markdown
  • Search Head Cluster Environments now supported

Subscribe Share

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
Splunk, Splunk>,Turn Data Into Doing, Data-to-Everything, and D2E are trademarks or registered trademarks of Splunk Inc. in the United States and other countries. All other brand names,product names,or trademarks belong to their respective owners.