Analyzing Security Logs With Splunk

Leverages Splunk Enterprise Security and SPL (Search Processing Language) to investigate security incidents through log correlation, timeline reconstruction, and anomaly detection. Covers Windows event logs, firewall logs, proxy logs, and authentication data analysis. Activates for requests involving Splunk investigation, SPL queries, SIEM log analysis, security event correlation, or log-based incident investigation.

yanacuti1121 c9e8e4f 4 files · 29.4 KB Updated 2 repo stars

File contents

yanacuti1121/Yana-AI/tree/main/core/skills/analyzing-security-logs-with-splunk commit c9e8e4fcb8

Frequently asked questions

npx skillmds add yanacuti1121/analyzing-security-logs-with-splunk