Splunk® Enterprise Security

Install and Upgrade Splunk Enterprise Security

This documentation does not apply to the most recent version of Splunk® Enterprise Security. For documentation on the most recent version, go to the latest release.

Security Posture dashboard

The Security Posture dashboard is the overview screen for the Splunk App for Enterprise Security. It provides a high-level view into the notable events across all domains in your deployment.

Es-SecurityPostureDashboard 3.0.png

This dashboard shows all events from the past 24 hours, with trends over the past 24 hours, and auto-updates in real time providing real-time information on events.

This dashboard is populated by information from the other domains and dashboards and does not need to be configured.

Key indicators

Key indicators at the top of the Security Posture dashboard show selected notable events in your deployment. Quickly see trends in notable event activity over the past 24 hours. Choose which indicators to include and rearrange them in the order you prefer. See "Key indicators" in this manual for more information.

Last modified on 10 December, 2013
Configure log review settings   Incident Review dashboard

This documentation applies to the following versions of Splunk® Enterprise Security: 3.0, 3.0.1


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters