# Splunk

## Splunk

<https://www.splunk.com/en_us/products.html>

**OVERVIEW**

## **The Unified Security and Observability Platform**

Go from visibility to action, fast and at scale.

![](https://gitlab.com/johnmkane/tech-recipe-book/-/blob/main/Book/Architect/SIEM%20SOC/Splunk/hp-marketecture.png)

**PLATFORM**

## **Designed for the hybrid world you live in**

Improve data accessibility. Access data-driven insights. Remove data silos. Splunk is a single platform designed for the way you work, with the capabilities your business demands.

[**Go to Platform Overview**](https://www.splunk.com/en_us/products/platform.html)

## **3B+**

Monthly searches

## **2,400+**

Unique apps and add-ons

## **1,000+**

Unique data integrations

[**Splunk Cloud Platform**](https://www.splunk.com/en_us/products/splunk-cloud-platform.html)

Get cloud-powered insights for petabyte-scale data analytics across the hybrid cloud.

[**Learn More**](https://www.splunk.com/en_us/products/splunk-cloud-platform.html)

[**Splunk Enterprise**](https://www.splunk.com/en_us/products/splunk-enterprise.html)

Use search, analysis and visualization for actionable insights from all of your data.

[**Learn More**](https://www.splunk.com/en_us/products/splunk-enterprise.html)

**SECURITY**

## **Data-driven security for the modern SOC**

Protect your business and elevate your security operations with a best-in-class data platform, advanced analytics and automated investigations and response.

[**Go to Security Overview**](https://www.splunk.com/en_us/cyber-security.html)

## **80%**

reduction in alert volume

## **30 secs**

to complete processes that once took 30 minutes

## **2x**

improvement in alert fidelity

[**Splunk Attack Analyzer**](https://www.splunk.com/en_us/products/attack-analyzer.html)

Automatically detect and analyze the most complex credential phishing and malware threats.

[**Learn More**](https://www.splunk.com/en_us/products/attack-analyzer.html)

[**Splunk Enterprise Security**](https://www.splunk.com/en_us/products/enterprise-security.html)

Access data-driven insights, combat threats, protect your business and mitigate risk at scale with analytics you can act on.

[**Learn More**](https://www.splunk.com/en_us/products/enterprise-security.html)

### **Splunk Mission Control**

Detect, investigate and respond to threats from one modern and unified work surface.

[**Learn More**](https://www.splunk.com/en_us/products/mission-control.html)

[**Splunk Security Essentials**](https://www.splunk.com/en_us/products/cyber-security-essentials.html)

Extend the power of Splunk Cloud or Splunk Enterprise for enhanced, real-time security visibility and improved threat detection.

[**Learn More**](https://www.splunk.com/en_us/products/cyber-security-essentials.html)

### **Splunk SOAR**

Work smarter by automating repetitive security tasks, respond to incidents in seconds, and increase analyst productivity and accuracy to better protect your business.

[**Learn More**](https://www.splunk.com/en_us/products/splunk-security-orchestration-and-automation.html)

### **Splunk User Behavior Analytics**

Secure against unknown threats through user and entity behavior analytics.

[**Learn More**](https://www.splunk.com/en_us/products/user-behavior-analytics.html)

**OBSERVABILITY**

## **Full-stack visibility at any scale**

Solve problems in seconds with the only full-stack, analytics-powered and OpenTelemetry-native observability solution.

[**Go to Observability Overview**](https://www.splunk.com/en_us/products/observability.html)

## **<2 minutes**

Mean time to acknowledge

## **30%**

Reduction in load time

## **26%**

reduction in average time per incident, saving 140 hours/month

[**Splunk Application Performance Monitoring**](https://www.splunk.com/en_us/products/apm-application-performance-monitoring.html)

Get insight into cloud-native, microservice and monolithic applications, with NoSample distributed tracing and code-level visibility.

[**Learn More**](https://www.splunk.com/en_us/products/apm-application-performance-monitoring.html)

[**Splunk Infrastructure Monitoring**](https://www.splunk.com/en_us/products/infrastructure-monitoring.html)

Improve hybrid cloud performance with instant visibility and real-time alerts.

[**Learn More**](https://www.splunk.com/en_us/products/infrastructure-monitoring.html)

### **Splunk IT Service Intelligence**

Ensure service performance with full visibility, AIOps and incident intelligence.

[**Learn More**](https://www.splunk.com/en_us/products/it-service-intelligence.html)

[**Splunk Real User Monitoring**](https://www.splunk.com/en_us/products/real-user-monitoring.html)

Find and fix customer-facing issues across web and mobile with full visibility into end-user experience.

[**Learn More**](https://www.splunk.com/en_us/products/real-user-monitoring.html)

### **Splunk On-Call**

Make on-call less frustrating and improve business outcomes with automated incident response.

[**Learn More**](https://www.splunk.com/en_us/products/on-call.html)

### **Splunk Synthetic Monitoring**

Proactively find and fix performance issues across user flows, business transactions and APIs.

[**Learn More**](https://www.splunk.com/en_us/products/synthetic-monitoring.html)

## **Splunk Universal Forwarder**

Fast and secure data collection from remote sources. Collect data from various sources, including other forwarders, and send it to a Splunk deployment. Use the universal forwarder to seamlessly send data to Splunk Enterprise, Splunk Cloud or Splunk Light.

[**Learn More**](https://www.splunk.com/en_us/download/universal-forwarder.html)

![](https://gitlab.com/johnmkane/tech-recipe-book/-/blob/main/Book/Architect/SIEM%20SOC/Splunk/generic-hero-promo-card-desktop-bar-chart.jpg)

**EXTENSIBILITY**

## **Expand your Splunk advantages**

* [**Artificial Intelligence**](https://www.splunk.com/en_us/products.html#artificial-intelligence)
* [**Custom Apps**](https://www.splunk.com/en_us/products.html#scma-app)
* [**Partners**](https://www.splunk.com/en_us/products.html#partners)
* [**Splunkbase**](https://www.splunk.com/en_us/products.html#splunkbase)

![](https://gitlab.com/johnmkane/tech-recipe-book/-/blob/main/Book/Architect/SIEM%20SOC/Splunk/ai-ml-b.jpg)

Unlock greater productivity, proactive threat prevention and faster incident response with Splunk artificial intelligence tools and embedded capabilities.

[Splunk — general description](/readme/architect/siem-soc/splunk/splunk-general-description.md)


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://book.konstantinsecurity.com/readme/architect/siem-soc/splunk.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
