logo

NJP

Splunk Search Integration for Security Operations

Splunk Search Integration for Security Operations

by Service-now.com

Adds sightings information to your security incidents.

0 installs 0 reviews v10.5.0 Scoped Application Free
Developer Instance Sub-Production

Install Trend

First tracked: 2024-10-30 Latest: 2026-09-09 (0 installs)
View Install Data
Date Install Count Change
2026-09-09 0 -
134 days of no change
2026-04-27 81 -81
19 days of no change
2026-04-07 82 -1
7 days of no change
2026-03-30 83 -1
3 days of no change
2026-03-26 84 -1
2 days of no change
2026-03-23 85 -1
51 days of no change
2026-01-30 87 -2
5 days of no change
2026-01-24 88 -1
4 days of no change
2026-01-19 89 -1
18 days of no change
2025-12-31 90 -1
14 days of no change
2025-12-16 91 -1
3 days of no change
2025-12-12 92 -1
29 days of no change
2025-11-12 91 +1
20 days of no change
2025-10-22 90 +1
7 days of no change
2025-10-14 89 +1
13 days of no change
2025-09-30 88 +1
74 days of no change
2025-07-17 87 +1
83 days of no change
2025-04-24 86 +1
16 days of no change
2025-04-07 85 +1
6 days of no change
2025-03-31 84 +1
151 days of no change
2024-10-30 82 +2

About

Splunk Search integration for Security Operations aids in the investigation of a security incident by querying logs in your Splunk deployment for potentially malicious indicators. This integration is compatible with Splunk Enterprise and Splunk for Enterprise Security.

Splunk Search Integration for Security Operations is now available only on the ServiceNow® Store. 

Key Features

The integration provides the ability to use Splunk to run a Sightings Search on observables to determine the prevalence of a threat over time or test remediation efforts. The search can specify one or more observables and a date range.   

Version History (3)
v10.5.0 2025-07-31 15:36:43
New: Enhance SIR sighting search functionality by integrating saved searches into sighting links, streamlining navigation to associated Splunk que...
v10.4.11 2025-03-12 12:22:20
Fixed: During the integration configuration if the user leaves the Link URL field blank, Splunk fails to authenticate even though the field is opt...
v10.4.10 2024-11-07 15:23:56
Changed: Migration of Workflows to Flow Designer flows.
ID: 9c6741f10b12220069d7ea7885673a52 · Published: Jul 2025 · Updated: Sep 09, 2026