From the course: SIEM: Event Management with Splunk Security
Unlock the full course today
Join today to access over 24,900 courses taught by industry experts.
How to set a hypothesis and run an experiment - Splunk Tutorial
From the course: SIEM: Event Management with Splunk Security
How to set a hypothesis and run an experiment
- As you know, Splunk is a data science platform, designed to help users accomplish data-driven goals. To begin executing on a goal, we can discover paths to success by conducting experiments. We're going to begin an experiment using the sample data that comes with the Splunk Security Essentials app, but as we all know, we can't run a proper experiment without having a proper hypothesis. This means we need to use our knowledge to produce an educated guess as to what an experiment will show. This is also when the risk assessment that we created in chapter one comes in handy. We can refer to our company's risk assessment information to see if we can find anything out of the ordinary hiding in our data. We can also use compliance standards like PCI DSS to determine what might be important to monitor with our SIEM and help identify potential threats. For the purpose of this experiment, let's take a look at the Splunk provided…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.