Splunk
Use a Splunk alert action (webhook):
- In your saved search / alert: Trigger actions → Webhook
- URL:
https://skylogs.example.com/api/v1/ingest/splunk/<token>
Useful for SOC workflows: route security alerts to a security team with its own escalation policy, separate from infrastructure alerting.