Security incident - can we aggregate events coming from 2 SIEM tools?
Hi Everyone We have a discussion going on for enabling Splunk ES & Sentinal OOB plugin for SIR creation The question now is whether aggregation will occur for SIRs created from different sources. I mean if an SIR is created by Splunk and if the same ...