Files
splunk-security_content/docs/_playbooks/risk_notable_enrich.md
2021-11-10 14:41:56 -05:00

1.3 KiB

title, last_modified_at, toc, toc_label, tags
title last_modified_at toc toc_label tags
Risk Notable Enrich 2021-10-22 true
Investigation
Splunk SOAR
None

Try in Splunk SOAR{: .btn .btn--success}

Description

This playbook collects the available Indicator data types within the event as well as available investigative playbooks. It will launch any playbooks that meet the filtered criteria.

  • Type: Investigation
  • Product: Splunk SOAR
  • Apps: None
  • Last Updated: 2021-10-22
  • Author: Kelby Shelton, Splunk
  • ID: rn0edc96-ff2b-48b0-9f6f-43da3783fd63

Associated Detections

How To Implement

None

Playbooks

Required field

Reference

source | version: 1