Splunk Related Exams
SPLK-5001 Exam
Which dashboard in Enterprise Security would an analyst use to generate a report on users who are currently on a watchlist?
Which of the following is the primary benefit of using the CIM in Splunk?
An analyst would like to visualize threat objects across their environment and chronological risk events for a Risk Object in Incident Review. Where would they find this?