Analyzing Security Logs With Splunk

Leverages Splunk Enterprise Security and SPL (Search Processing Language) to investigate security incidents through log correlation, timeline reconstruction, and anomaly detection. Covers Windows event logs, firewall logs, proxy logs, and authentication data analysis. Activates for requests involving Splunk investigation, SPL queries, SIEM log analysis, security event correlation, or log-based incident investigation.

26zl e2e0861 4 files · 29.2 KB Updated

File contents

26zl/cybersec-toolkit/tree/main/.claude/skills/analyzing-security-logs-with-splunk commit e2e086170c

Frequently asked questions

npx skillmds@latest add 26zl/analyzing-security-logs-with-splunk