Splunk SOAR (Security Orchestration, Automation, and Response) executes python-based playbooks to automate responses across dozens of tools.
A playbook can automatically extract a URL from a Notable, send it to VirusTotal, and if malicious, block it on a Palo Alto firewall—taking less than 2 seconds.