Splunk Security Virtual Workshops
Virtual. Interactive. Hands-On

Welcome to the Splunk Security Workshop Wednesday Series. Brought to you by the Splunk team via Zoom.

Learn, connect & interact with Splunk subject matter experts, colleagues and industry peers, and have some fun on the way! Virtual hands-on workshops are a convenient, interactive way to build your Splunk security skills and knowledge – from the comfort of your work or home office.

Upcoming Sessions February

Building Correlation Searches
Date / Time: Wednesday 8 February | 12:00pm AEDT – 3:00pm AEDT

Building Correlation Searches with Splunk Enterprise Security is a modular, hands-on workshop designed to familiarise participants with how to leverage Splunk to develop their own correlation searches. This workshop provides users a way to gain familiarity with building correlation searches in Splunk, as well as introducing data models and the tstats command that can provide a user a method to further optimize their correlation searches. The workshop leverages the popular Boss of the SOC (BOTS) dataset with hands-on exercises that build on one another. Users will come away with a better understanding of how to build their own correlation searches in Splunk as well as how to customize their associated notable events to provide more immediate insights to their analysts.

Prerequisites: Splunk Fundamentals 1 (highly recommended), Enterprise Security hands-on workshop or some ES experience is also recommended.

SOAR Hands-On Workshop
Date / Time: Wednesday 15 February | 12:00pm – 3:00pm AEDT

The SOAR Hands-On workshop is designed to familiarize participants with how to respond to incidents, manage cases and artifacts, as well as automate your incident response and standard operating procedures. This workshop provides users an opportunity to walk through a real-world scenario and see first-hand how Phantom can be used from the creation of a notable event to enriching alerts by automatically gathering data, all the way to managing and resolving the incident.

Prerequisites: None

We look forward to seeing you online soon!