UBA

Splunk UBA uses behavior-based threat detection which relies on machine-learning methods that require no signatures or human analysis, enabling multi-entity behavior profiling and peer group analytics for users, devices services accounts, and applications.

Following are the features of Splunk UBA:

  • Streamlined Threat Workflow
  • Threat Review and Exploration
  • User Feedback Learning
  • Kill Chain Detection and Attack Vector Discovery