splunk-asset-risk-intelligence-setup

Community

Install and validate Splunk ARI readiness

Authorchambear2809
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Enables rapid, reliable onboarding of Splunk Asset and Risk Intelligence (ARI) by automating app installation, index creation, and readiness validation, reducing manual setup time and risk of misconfiguration.

Core Features & Use Cases

  • Install ARI from Splunkbase or local package, create required ARI indexes (ari_staging, ari_asset, ari_internal, ari_ta), validate app presence and version, and ensure KV Store readiness.
  • Validate ARI roles and capabilities, verify app-owned saved searches, ARI data visibility, and prepare handoffs for Enterprise Security integration and Exposure Analytics.
  • Use cases include enterprise SHC deployments, preflight planning, and end-to-end ARI readiness handoffs (admin, risk/compliance, investigation, add-ons, and Echo).

Quick Start

Install ARI, run a dry-run preview of the handoff plan, and validate prerequisites before applying changes.

Dependency Matrix

Required Modules

python3

Components

scripts

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: splunk-asset-risk-intelligence-setup
Download link: https://github.com/chambear2809/splunk-cisco-skills/archive/main.zip#splunk-asset-risk-intelligence-setup

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 510,000+ vetted skills library on demand.