When an alert is created in Aqua it will also be created in Splunk. There is more than one option for creating this integration.


Splunk Add-On

Install the Splunk Add-On to bring alerts into your instance of Splunk.

The Aqua Add-on for Splunk contains field mappings to make data from Aqua's Splunk integration complaint with the Common Information Model (CIM) standard. 


Splunk App

The Splunk App contains dashboards used for visualizing data provided by the Aqua Add-on for Splunk.

Directions for Integrating the Aqua with a Splunk App are available on the Splunkbase. 



Splunk is one of the leading SIEM solutions.