Default dashboards
This section covers the dashboards that are visible by default as part of the Splunk App for Enterprise Security. You can modify which dashboards are displayed and the menus in which they appear.
By default, the Splunk App for Enterprise Security dashboards displayed are:
- Security Posture
- Incident Review
- Predictive Analytics
- Entity Investigator dashboards
- Advanced Threat
- Security Domain dashboards: Access, Endpoint, Network,Identity
- Audit
The Search dashboards contain Dashboards, Reports, Pivot, and Search.
For a complete list of available dashboards included with the Splunk App for Enterprise Security, see "Dashboards" in the Splunk App for Enterprise Security Installation and Configuration Manual. The "Navigation editor" topic has information on how to assemble your own dashboards from those supplied with the app and "Create a custom dashboard" shows how to create completely new dashboards.
Add a new threat list | Notable events and incident workflow |
This documentation applies to the following versions of Splunk® Enterprise Security: 3.0, 3.0.1
Feedback submitted, thanks!