mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
1.4 KiB
1.4 KiB
title, last_modified_at, toc, toc_label, tags
| title | last_modified_at | toc | toc_label | tags | ||||
|---|---|---|---|---|---|---|---|---|
| Risk Notable Preprocess | 2021-10-22 | true |
|
Try in Splunk SOAR{: .btn .btn--success}
Description
"This playbook prepares a risk notable for investigation by performing the following tasks: 1. Ensures that a risk notable links back to the original notable event with a card pinned to the HUD. 2. Posts a link to this container in the comment field of Splunk ES. 3. Updates the container name, description, and severity to reflect the data in the notable artifact."
- Type: Investigation
- Product: Splunk SOAR
- Apps: Splunk
- Last Updated: 2021-10-22
- Author: Kelby Shelton, Splunk
- ID: rn0edc96-ff2b-48b0-9f6f-13da3783fd63
Associated Detections
How To Implement
tbd
Playbooks
Required field
Reference
source | version: 1
