From the course: SIEM: Event Management with Splunk Security

Unlock the full course today

Join today to access over 24,900 courses taught by industry experts.

Determining which events can be automated

Determining which events can be automated - Splunk Tutorial

From the course: SIEM: Event Management with Splunk Security

Determining which events can be automated

- Building automation might sound like a daunting task, but it doesn't have to be. One of the reasons Splunk makes life so much easier for complex tasks like event management is its outstanding variety of templates that can be used for goals like building automation. Templates, when working with software, are amazing, because they allow us to accomplish tasks without having to reinvent wheels. Splunk has amazing templates that can make us look like cyber superheroes in no time! Come test drive Splunk with me over at the app. Let's walk through how to spot the right template that's going to allow us to build an automation. Here we go. Take a look at where Splunk says Automation and Orchestration in your Security Data Journey. Stage five is often referred to as SOAR. SOAR stands for Security, Orchestration, Automation, and Response, which indicates that stage five playbooks can be used for automation and response! Now…

Contents