Skip to content

401 Class 11: Setting up Splunk SIEM

Nathalie Abdallah edited this page Jan 23, 2024 · 2 revisions

Home | README.md | Portfolio | |

Reading Is Cybersecurity Automation the Future?

Automated Incident Response Explained

How would a security team benefit from implementing a SOAR solution?

SOAR (Security automation and organization) products automate something that would take a person to have to sort through and manually stop and active attack,

Explain how a SOAR solution fits into the Incident Response process.

an automation can detect and isolate the server it infected and stop it from spreading to other servers, before the person can wipe their glazed covered eyes after be awoken to an alert their servers were under attack.

Additional Resources

Splunk offers its own proprietary set of certifications you can pursue to demonstrate proficiency in its products. A free LMS is available for self-paced learning which includes videos, documentation, labs and quizzes. Students wishing to add SIEM expertise to their resumes are encouraged to study these materials.

Clone this wiki locally