Using Enterprise Security

Using Enterprise Security prepares security practitioners to use Splunk Enterprise Security (ES). Students will use ES to identify and track security incidents, analyze security risks, use predictive analytics, and threat discovery.
splunk> AUTHORIZED TRAINING PROVIDER

Course Topics

  • ES Concepts
  • Security monitoring and Incident investigation
  • Assets and identities
  • Detecting known types of threats
  • Monitoring for new types of threats
  • Using analytical tools
  • Analyze user behavior for insider threats
  • Use risk analysis and threat intelligence tools
  • Use protocol intelligence and live stream data
  • Use investigation timelines and journal tools
  • Build glass tables to display security status

Course Dates

Costs

Standard Fee due no later than 5 day in advance of the course start date: $2250 NZD 
All prices exclude GST. Group pricing is available for dedicated (online or on premise) training courses.

Course Details

Duration: 3 Days
Time:  10 am to 4:00 pm NZT (across 3 days)
Instructor-led lecture with labs.
Delivered via virtual Classroom (physical classroom available) in New Zealand time zone.
For full detail on the topics covered, see the detailed description the course.

Course Prerequisites

All attendees must have completed the Splunk Fundamentals 1, and Splunk Fundamentals 2 courses.

Attendee Requirements

Attendees will need to use GoToTraining to join the session and a Splunk supported browser to complete the labs. A link to the slides will be e-mailed to the attendee (on the address they have been registered for training with) on the day of the course. 

Terms & Conditions

Please see our Training Terms & Conditions before booking.

Get in touch to find out how GKC
can help you know more, do better.