Splunk User Behavior Analytics

Use unsupervised machine learning to detect unknown and hidden threats, reducing the need for manual baselining, rule creation, and customization.

Get Data In

Ingest data from the Splunk platform with time-based searches and real-time indexed queries directly to Kafka.

Use Splunk User Behavior Analytics

Explore workflows to investigate threats and anomalies while reviewing batch, security, streaming, and threat models to track user behaviors.

Administer

Perform administrative tasks including customizing functions, user and server management, automated backups, and deployment monitoring.

Develop Custom Content

Learn how to create new content in Splunk UBA by cloning existing data models or creating new models.

Install and Upgrade

Review system requirements and how to install, upgrade, configure, and troubleshoot the app across supported operating systems.

Plan and Scale

Optimize your Splunk UBA deployment and review app compatability across related Splunk apps and products.

Release Notes

Review release notes and resources for Splunk User Behavior Analytics, including known and fixed issues.

Splunk UBA Monitoring App

Install a centralized solution to monitor the health of your deployment and investigate issues from Splunk Enterprise or Splunk Cloud Platform.

Splunk UBA Kafka Ingestion App

Send events and search results directly from your Splunk platform indexers to Splunk UBA if you work with large data sets.