Splunk® User Behavior Analytics

Securing against unknown threats through user and entity behavior analytics
Watch the Video

Webinar   |   Learn Ways to Stay Ahead of Advanced and Insider Threats

Detect unknown threats and anomalous behavior using machine learning

Advanced Threat Detection

Discover abnormalities and unknown threats that traditional security tools miss

Higher Productivity

Automate stitching of hundreds of anomalies into a single threat to simplify a security analyst’s life

Accelerate Threat Hunting

Use deep investigative capabilities and powerful behavior baselines on any entity, anomaly or threat

Product Capabilities
Automatically find unknown threats using machine learning
Enhance Visibility and Detection

Automate threat detection using machine learning so you can spend more time hunting with higher fidelity behavior-based alerts for quick review and resolution.

Accelerate Threat Hunting

Rapidly identify anomalous entities without human analysis. Rich set of anomaly types (65+) and threat classifications (25+) across users, accounts, devices and applications.

Augment SOC Resources

Automatically stitch hundreds of anomalies observed across multiple-entities—users, accounts, devices and applications—to a single threat for faster actions.

Better Together: Splunk ES and Splunk UBA

Organizations gain maximum value to detect and resolve threats and anomalies via the power of human and machine-driven solutions by combing Splunk® Enterprise Security and Splunk UBA.

Financial Services

Monitor accounts and deliver the best customer experience
Bank on Data

Public Sector

Create operational excellence that would impress any constituency
Vote for More


Automate compliance auditing and strengthen health IT operations
Boost IT Health


Get Started With Splunk User Behavior Analytics (UBA)

Enjoy a free cloud-based sandbox trial of Splunk UBA and leverage the power of advanced cyber threat detection. Splunk UBA is available as an add-on to Splunk Enterprise Security starting at 500GB/day with flexible perpetual* and term license options. Splunk UBA is also available as a stand-alone offering under the “per monitored account” pricing metric for data ingested from Splunk Enterprise. Contact us for pricing details ›

*As of November 1, 2019, all Splunk products and services will feature term licenses. We will no longer sell any products with perpetual licenses. For more information click here.

What can you do with Splunk?

See how Splunk User Behavior Analytics surfaces anomalous behavior and detects unknown threats.