Abstract illustration

Enhance Incident Response with the DomainTools App for Splunk Phantom

Cybersecurity as an industry is seeing an ever-widening skills gap. As roles go unfilled, practitioners find themselves increasingly unable to meet the needs of their organizations in terms of security posture and maturity. Security Orchestration, Automation, and Response has the ability to help organizations with security processes, automation of specific actions, and intelligently inform teams, with the end goal of efficiency.

With the features that the DomainTools App for Splunk Phantom supports, organizations are able to leverage this integration for purpose-built work with the Iris Investigate API. The rich Iris dataset is available not only for ad-hoc research on specific incidents in Splunk Phantom, but also for automated actions in Splunk Phantom playbooks.

In this webinar you will learn:

  • How organizations are leveraging the DomainTools App for Splunk Phantom for Incident Response, IoC Hunting, Network Access Control, and Intelligence Sharing
  • How to get the Single Pane of Glass in Splunk Phantom with DomainTools’ Domain and DNS-based adversary intelligence
  • Where to leverage DomainTools Risk Score to automate workflows

Join Wissam Ali-Ahmad, Splunk Global Strategic Alliances – Technical Services and Taylor Wilkes-Pierce, Senior Sales Engineer at DomainTools for this 30 minute webinar.