Splunk Phantom
Información general
The Okta + Splunk Phantom integration orchestrates response for credential-based threats, using identity as the security control point to enable adaptive, automated response actions like step-up authentication. When suspicious account activity is detected, like a log-in from a new device or location, security teams can mitigate the threat automatically by clearing active sessions or forcing multi-factor authentication (MFA) with Okta. If a legitimate user's credentials have been compromised, security teams can take additional remediation actions against the bad actor by suspending the compromised account and conducting a password reset.
Securely enable access for your users from anywhere with Splunk Phantom
Última actualización: Aug. 23 2019
Functionality
Add this integration to enable authentication and provisioning capabilities.
Authentication (SSO) |
|
|---|---|
Provisioning |
|