Analyzing Security Logs With Splunk

Leverages Splunk Enterprise Security and SPL (Search Processing Language) to investigate security incidents through log correlation, timeline reconstruction, and anomaly detection. Covers Windows event logs, firewall logs, proxy logs, and authentication data analysis. Activates for requests involving Splunk investigation, SPL queries, SIEM log analysis, security event correlation, or log-based incident investigation.

Njones17 Updated

File contents

Njones17/AI-agent-master-cyber-skills-list/tree/main/skills/detection/analyzing-security-logs-with-splunk commit f3e5d01c28

Frequently asked questions

npx skillmds@latest add njones17/analyzing-security-logs-with-splunk