icon/x Created with Sketch.

Splunk Cookie Policy

We use our own and third-party cookies to provide you with a great online experience. We also use these cookies to improve our products and services, support our marketing campaigns, and advertise to you on our website and other websites. Some cookies may continue to collect information after you have left our website. Learn more (including how to update your settings) here.
Accept Cookie Policy

We are working on something new...

A Fresh New Splunkbase
We are designing a New Splunkbase to improve search and discoverability of apps. Check out our new and improved features like Categories and Collections. New Splunkbase is currently in preview mode, as it is under active development. We welcome you to navigate New Splunkbase and give us feedback.

Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading Dataminr Pulse for Splunk SOAR
SHA256 checksum (dataminr-pulse-for-splunk-soar_120.tgz) 79620df81c227c5ea0f9d530508d2a2fad2fa11d5c950bd2e904062b3eff1478

Flag As Inappropriate

soar

Dataminr Pulse for Splunk SOAR

Splunk SOAR Cloud
Overview
Details
Pulse's AI-powered real-time intelligence integrates into Splunk SOAR workflows for faster detection and response

Supported Actions Version 1.2.0

  • test connectivity: Validate the asset configuration for connectivity using supplied configuration
  • get lists: Retrieve the list of all the watchlists
  • get alerts: Fetch the details of the alerts from the Dataminr platform for the given List ID or query
  • get related alerts: Fetch the details of the related alert from the Dataminr platform for the given Alert ID
  • on poll: Ingest alerts from Dataminr using Dataminr Pulse API

Supported Actions Version 1.1.0

  • test connectivity: Validate the asset configuration for connectivity using supplied configuration
  • get lists: Retrieve the list of all the watchlists
  • get alerts: Fetch the details of the alerts from the Dataminr platform for the given List ID or query
  • get related alerts: Fetch the details of the related alert from the Dataminr platform for the given Alert ID
  • on poll: Ingest alerts from Dataminr using Dataminr Pulse API

Dataminr Pulse brings the most advanced AI-powered real-time intelligence into Splunk SOAR, easily fitting into your workflows and enabling rapid identification and mitigation of emerging threats so you can deliver faster time to detection and response.

Swiftly Close The Loop From Insight to Response

Effectively detect, prioritize and manage risk to protect your physical and digital assets with the fastest real-time alerting to discover threats as they unfold.

Broad Global Threat Coverage at Unmatched AI Speed

Dataminr has been the global leader in AI for risk detection since 2009. Dataminr Pulse is relied on by two thirds of Fortune 100 companies to inform their physical and cybersecurity operations. Every day, the Dataminr multi-modal AI platform analyzes billions of public data inputs in 105 languages from over 500K global sources including the deep and dark web, enabling you to:

  • Gain real-time visibility into deep and dark web sources including markets, forums, paste sites, and ransomware group sites
  • Get first notice on emerging attacks impacting your network and third parties affecting your business.
  • Detect risk at a global scale and track the emergence and global spread of vulnerabilities so you can proactively mitigate risk.
  • Identify new ransomware groups and track attacks as they happen, giving you visibility of attacks impacting your or third party risk perspective.

Pulse for Cyber Risk Key Use Cases

  • Cyber-Physical Convergence: Gain real-time intelligence on converged cyber and physical threats, including physical threats to IT and OT infrastructure, network and power outages, disasters, and emerging geopolitical risks.
  • Vulnerability Prioritization: Prioritize patching with visibility to the entire lifecycle of a vulnerability, from pre-CVE to exploitation, while surfacing relevant vulnerabilities in your infrastructure.
  • External Attack Intelligence: Mitigate risk by tracking threats to your company, subsidiaries, and 3rd parties across ransomware, APT groups, leaks, breaches, DDoS, defacement, and malware activity.
  • Digital Risk Detection: Get early warnings of risk to digital assets, including leaked credentials and data, account and domain impersonation, and mentions across the surface deep and dark web.

Accelerate and Enrich SOC Workflows

  • Accelerate, enrich and trigger triage with contextual intelligence
  • Activate playbooks
  • Improve incident investigation and response
  • Support analysis and threat hunting workflows
  • Determine threat identification, scoring and classification by type, severity and status

Release Notes

Version 1.2.0
April 10, 2024
  • Added 'application', 'application version' and 'integration version' parameters to the alerts API
  • Removed requests dependency in order to use platform packages [PAPP-30822]

Subscribe Share

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
Splunk, Splunk>,Turn Data Into Doing, Data-to-Everything, and D2E are trademarks or registered trademarks of Splunk Inc. in the United States and other countries. All other brand names,product names,or trademarks belong to their respective owners.