This course is for ES Administrators and Engineers.<br><br>This 13.5-hour instructor-led course enables SOC Engineers to use Splunk’s Enterprise Security SIEM for detection engineering, incident response, automation, asset and identity configuration, and threat intelligence management. Other topics include ES event processing and normalization, managing risk, data models, deployment requirements, technology add-ons,...
Available as Instructor Led Training, Live Online & In Person at your Offices or Ours.
16.00 hours
13.0 CPD hours
No scheduled classes available at this time.
When you organise training, we understand that there is a risk that some people may fall ill, become unavailable.
To mitigate the risk we include training insurance for each delegate enrolled on our public schedule, they are welcome to sit on the same Public class within 6 months at no charge, if the case arises.