Course Overview
Learning Objectives
- Understand different data sources.
- Become familiar with Splunk Processing Language (SPL).
- Learn how to create efficient, well-formed searches with SPL.
- Learn SPL reporting commands and how to analyze results.
- Perform calculations and evaluations on search results.
- Generate reports and charts, and create custom event alerts and dashboards.
- Search for events and create reports using Transactions.
- Understand security, authentication, authorization, and access control in Splunk.
- Become familiar with data models and pivots.
- Perform real world simulation project using Splunk.
Framework Connections
The materials within this course focus on the NICE Framework Task, Knowledge, and Skill statements identified within the indicated NICE Framework component(s):
Specialty Areas
- Cyber Investigation
- Cyber Operational Planning
- Risk Management