Splunk Webinar Series: To the Basics and Beyond (There's An App for That)



Curious about how Splunk can help your organization?
 
Join us for this informative on demand webcast series where we will discuss a variety of topics ranging from Splunk 101, machine data, IT operations, security, and more. This series will provide a wide overview of how you can leverage your machine data, gain real-time insights, and make smarter business decisions within your agency. 
 
There's An App for That: Splunk Security Essentials
 
Your organization has just installed Splunk Enterprise and you and your security team are excited to get started with it, but now what? What's your next step? Where do you start looking? What security use cases make sense for your environment?
 
How do you search your data within Splunk to find answers to those tough security questions?
 
Have no fear - Splunk Security Essentials is here! Detect insiders and advanced attackers in your environment with the free Splunk Security Essentials app. This app uses Splunk Enterprise and the power of our Search Processing Language (SPL) to showcase 55+ working examples of anomaly detection related to User Entity Behavior Analysis (UEBA). Each use case includes sample data and actionable searches that can immediately be put to use in your environment.
 
The use cases leverage analytics to give analysts the ability to detect unusual activities like users who print more pages than usual (spike detection) or logon to new servers (first seen behavior), the ability to see when adversaries change file names to evade detection, and more. Each use case includes the expected alert volume, an explanation of how the search works, description of the security impact, and allows you to save searches directly from the app to leverage any alert actions you have installed such as creating a Notable Event or Risk Indicator in ES, an External Alarm in UBA, or sending email for review.
 
Join us for an in-depth look into the Splunk Security Essentials app and see how it can jump start your security team's ability to:
  • Use Splunk
  • Drive greater Splunk adoption through your enterprise
  • Enhance your organization's overall security posture

Relevant Government Agencies

Intelligence Agencies, DOD & Military, Other Federal Agencies, Federal Government, State & Local Government


Register


Event Type
On-Demand Webcast


This event has no exhibitor/sponsor opportunities


Cost
Complimentary:    $ 0.00


Website
Click here to visit event website


Event Sponsors

Splunk


Organizer
Splunk Government Team at Carahsoft


Contact Event Organizer



Return to search results