Analyzing Security Logs With Splunk

Leverages Splunk Enterprise Security and SPL (Search Processing Language) to investigate security incidents through log correlation, timeline reconstruction, and anomaly detection. Covers Windows event logs, firewall logs, proxy logs, and authentication data analysis. Activates for requests involving Splunk investigation, SPL queries, SIEM log analysis, security event correlation, or log-based incident investigation.

theheavenlyd3mon f96f529 4 files · 29.4 KB Updated 28 repo stars

File contents

theheavenlyd3mon/hermes-profiles/tree/main/profiles/cyber-blue-soc/skills/Anthropic-Cybersecurity-Skills/skills/analyzing-security-logs-with-splunk commit f96f5291be

Frequently asked questions

npx skillmds add theheavenlyd3mon/analyzing-security-logs-with-splunk