splunk-enterprise-security-config

Community

Configure and validate Splunk ES post-install.

Authorchambear2809
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This Skill helps teams configure and validate Splunk Enterprise Security after installation, ensuring consistent setup across indexes, CIM data models, users and roles, threat intelligence, detections, risk-based alerting, Mission Control, and UEBA readiness.

Core Features & Use Cases

  • Declarative configuration for ES components such as indexes, roles, data models, threat intelligence, detections, asset/identity management, and Mission Control settings.
  • End-to-end validation workflow including preflight checks, preview/inventory/export modes, and safe apply guards to maintain production safety.
  • Real-world use: configure a stand-alone ES deployment, validate health signals, and apply baseline settings to enable standardized security data pipelines.

Quick Start

Run the ES configuration workflow to declaratively apply and validate Splunk Enterprise Security post-install readiness.

Dependency Matrix

Required Modules

None required

Components

scripts

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: splunk-enterprise-security-config
Download link: https://github.com/chambear2809/splunk-cisco-skills/archive/main.zip#splunk-enterprise-security-config

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 510,000+ vetted skills library on demand.