$SPLUNK_HOME/etc/apps/SA-ITSI-AlertCorrelation/bin/command.sh