Overview
Explore
Expertise
Select a tab
1 result found
Basic SIEM Setup and Log Collection using Splunk
In this module, Samantha, a developing SOC analyst, focuses on the foundational steps of setting up a SIEM system using Splunk. With guidance from her senior SOC analyst, she configures log forwarders on both Ubuntu and Windows machines, ensuring real-time log ingestion into the Splunk server. Samantha generates and simulates login events, allowing her to analyze critical logs such as successful and failed login attempts. By completing this module, Samantha will establish a functional SIEM setup, gaining visibility into system logs that are crucial for detecting and responding to potential security incidents.
Foundations Lab
•Fundamentals
•316 launches