From the course: SIEM: Event Management with Splunk Security

Unlock the full course today

Join today to access over 24,900 courses taught by industry experts.

How to set a hypothesis and run an experiment

How to set a hypothesis and run an experiment - Splunk Tutorial

From the course: SIEM: Event Management with Splunk Security

How to set a hypothesis and run an experiment

- As you know, Splunk is a data science platform, designed to help users accomplish data-driven goals. To begin executing on a goal, we can discover paths to success by conducting experiments. We're going to begin an experiment using the sample data that comes with the Splunk Security Essentials app, but as we all know, we can't run a proper experiment without having a proper hypothesis. This means we need to use our knowledge to produce an educated guess as to what an experiment will show. This is also when the risk assessment that we created in chapter one comes in handy. We can refer to our company's risk assessment information to see if we can find anything out of the ordinary hiding in our data. We can also use compliance standards like PCI DSS to determine what might be important to monitor with our SIEM and help identify potential threats. For the purpose of this experiment, let's take a look at the Splunk provided…

Contents