Course Summary

The Administering Splunk Enterprise Security course focuses on Administrators who manage a Splunk Enterprise Security environment, including ES event processing and normalization, deployment requirements, technology add-ons, settings, risk analysis settings, threat intelligence and protocol intelligence configuration, and customizations.

You will gain skills like:

• Advanced configuration of Splunk Enterprise Security (ES)
• Security monitoring and incident response
• Customizing security dashboards and alerts
• Implementing security data models and correlation searches
• Managing and optimizing security-related data ingestion and indexing

Module 1: Identifying normal ES use cases

Module 2: Examining deployment requirements for typical ES installs

Module 3: Knowing how to install ES and gather information for lookups

Module 4: Knowing the steps to setting up inputs using technology add-ons

Module 5: Creating custom correlation searches

Module 6: Configuring ES risk analysis, threat, and protocol intelligence

Module 7: Fine tuning ES settings and other customizations

There are no prerequisites to this course.

Level: Professional Length: 60 minutes Format: 48 question assessment

Following your booking, a confirmation message will be sent to all participants, ensuring you're well-informed of your successful enrollment. Calendar placeholders will also be dispatched to assist you in scheduling your commitments around the course. Rest assured, all course materials and access to necessary labs or platforms will be provided no later than one week before the course begins, allowing you ample time to prepare and engage fully with the learning experience ahead.

Our comprehensive training package includes all the necessary materials and resources to facilitate a full learning experience. Enrollees will be provided with detailed course content, encompassing a wide array of topics to ensure a thorough understanding of the subject matter. Additionally, participants will receive a certificate of completion to recognize their dedication and hard work. It's important to note that while the course fee covers all training materials and experiences, the examination fee for certification is not included but can be purchased separately.

Questions About This Course?