
Incident Review shows the details of all notable events identified in your environment.Identify the security domains with the most incidents, and the most recent activity. Security Posture provides a high-level overview of the notable events in your environment over the last 24 hours.Splunk Enterprise Security uses correlation searches to identify notable events in your environment that represent security incidents. You can identify and investigate security incidents with a suite of dashboards and workflows.

Identify and investigate security incidents The specific dashboards that will be most useful to you depend on how you plan to use Splunk Enterprise Security. Splunk Enterprise Security includes more than 100 dashboards to identify and investigate security incidents, reveal insights in your events, accelerate incident investigations, monitor the status of various security domains, and audit your incident investigations and your ES deployment.


Introduction to the dashboards available in Splunk Enterprise Security
