PluralSight – Tuning and Creating Correlation Searches in Splunk Enterprise Security

PluralSight – Tuning and Creating Correlation Searches in Splunk Enterprise Security-JGTiSO
English | Size: 473.51 MB
Category: Tutorial

Learn to plan, design, develop, tune, and deploy correlation searches in Splunk Enterprise Security v6. Understand and manage ES-specific lookups as well as setting up the Asset and Identity framework for data enrichment and helping investigations.