Explore OpenCTI or OpenAEV platform with 30 days Free Trial!
XTM Hub by Filigran
Sign Up
Splunk SOAR  logo

Splunk SOAR

Detection & Response Enablement
A picture of RG9jdW1lbnQ6Y2JiMmI4OGQtN2FlMy00MzMzLWE2ODYtZTFkNTJkZmE2YTYw

Overview

Integrates OpenCTI Threat Intelligence Platform with Splunk SOAR for threat intelligence management and incident response

The OpenCTI Integration for Splunk SOAR bridges OpenCTI's threat intelligence platform with your security orchestration workflows. It enables analysts to enrich artifacts (IPs, domains, hashes, URLs), search and create STIX observables and indicators, manage threat entities (threat actors, malware, intrusion sets, campaigns, vulnerabilities), and handle cases (Incident, RFI, RFT) — all without leaving Splunk SOAR. Bulk operations and relationship creation keep your OpenCTI knowledge base in sync with active investigations.

Basic information

Filigran
Romain Guignard
Third party integrations
SOAR & Security Automation
August 19, 2026
6.9.0
0

    We use cookies to run XTM Hub. Necessary cookies are always on, optional cookies (functionality, analytics, marketing) are used with your consent. Accept all, reject all, or manage your choices anytime in "Cookie settings".