Splunk reveals new AI tools to improve your security workflow

Splunk .conf23 product keynote
(Image credit: Future)

Splunk has introduced several enhancements to its products, including increased AI capabilities to improve threat detection, investigation and response times.

Like almost every company in the post-ChatGPT world, Splunk has been developing its AI integration even further, with new AI-powered tools that span its portfolio of security and observability solutions.

These include the new Splunk AI Assistant, which makes use of generative AI to allow users to deal with threats by querying the tool with prompts in natural language, a la ChatGPT. 

Saving time

Available now in preview, the AI Assistant can write in the Search Processing Language (SPL), the company's proprietary programming language that can be used with its software to find, filter and modify data. 

During its product keynote at Splunk .conf23 announcing the new tools, the company was keen to point out that the AI tools are there to assist human decision making, and not replace it, as it concedes that the latest technological trend can be error prone when left completely to its own devices.

However, it maintains that its new AI offerings will greatly speed up the process of taking care of threats, making them easier for IT teams to deal with and get on with more important and less tedious manual tasks.

Another important factor for Splunk is to allow its customers to have control on how they deploy the new AI tools, by offering domain-specific insights. Dr. Min Wang, Splunk's new CTO, took to the stage to explain that Splunk's AI models are fine-tuned to be conducive to this kind of specificity.

Other new products that are getting the AI treatment include Splunk App for Anomaly Detection, which allows SecOps teams to simplify and automate anomaly detection within their environments. 

And ML-Assisted Thresholding, as the name suggests, makes use of machine learning to find patterns in historical data to create thresholds with a single click, in the pursuit of making alerts more accurate and reducing false positive rates. This is now available in preview.

The Splunk App for Data Science and Deep Learning (DSDL) 5.1 is also now available on Splunkbase, and allows customers to leverage LLMs to build and train models.

"We leverage Splunk's Machine Learning Toolkit to detect anomalies in extensive datasets that may have otherwise remained undetected with traditional signature-based methods,” said Matt Snyder, Program Lead - Advanced Security Analytics at VMWare.

“By incorporating robust machine learning models within Splunk, we eliminate the need for a separate infrastructure for advanced analytics, saving us time and resources." 

Lewis Maddison
Reviews Writer

Lewis Maddison is a Reviews Writer for TechRadar. He previously worked as a Staff Writer for our business section, TechRadar Pro, where he had experience with productivity-enhancing hardware, ranging from keyboards to standing desks. His area of expertise lies in computer peripherals and audio hardware, having spent over a decade exploring the murky depths of both PC building and music production. He also revels in picking up on the finest details and niggles that ultimately make a big difference to the user experience.

Read more
Cartoon Phishing
Hackers use GenAI to attack more frequently and effectively
Half man, half AI.
Generative AI has a long way to go as siloed data and abuse of its capacity remain a downside – but it does change the game for security teams
An abstract image of a lock against a digital background, denoting cybersecurity.
Why AI is playing a growing role in helping SOC teams keep up with cyber threats
Microsoft
"Another pair of eyes" - Microsoft launches all-new Security Copilot Agents to give security teams the upper hand
A hand reaching out to touch a futuristic rendering of an AI processor.
Google Cloud unveils new AI Protection security tools, no matter which model you use
IT
Cisco wants to utilize AI to keep your new applications and data safe
Latest in Pro
Branch office chairs next to a TechRadar-branded badge that reads Big Savings.
This office chair deal wins the Amazon Spring Sale for me and it's so good I don't expect it to last
Saily eSIM by Nord Security
"Much more than just an eSIM service" - I spoke to the CEO of Saily about the future of travel and its impact on secure eSIM technology
NetSuite EVP Evan Goldberg at SuiteConnect London 2025
"It's our job to deliver constant innovation” - NetSuite head on why it wants to be the operating system for your whole business
FlexiSpot office furniture next to a TechRadar-branded badge that reads Big Savings.
Upgrade your home office for under $500 in the Amazon Spring Sale: My top picks and biggest savings
Beelink EQi 12 mini PC
I’ve never seen a PC with an Intel Core i3 CPU, 24GB RAM, 500GB SSD and two Gb LAN ports sell for so cheap
cybersecurity
Chinese government hackers allegedly spent years undetected in foreign phone networks
Latest in News
DeepSeek
Deepseek’s new AI is smarter, faster, cheaper, and a real rival to OpenAI's models
Open AI
OpenAI unveiled image generation for 4o – here's everything you need to know about the ChatGPT upgrade
Apple WWDC 2025 announced
Apple just announced WWDC 2025 starts on June 9, and we'll all be watching the opening event
Hornet swings their weapon in mid air
Hollow Knight: Silksong gets new Steam metadata changes, convincing everyone and their mother that the game is finally releasing this year
OpenAI logo
OpenAI just launched a free ChatGPT bible that will help you master the AI chatbot and Sora
An aerial view of an Instavolt Superhub for charging electric vehicles
Forget gas stations – EV charging Superhubs are using solar power to solve the most annoying thing about electric motoring