From the course: Splunk for Security Analytics and Monitoring

Splunk explained

- [Instructor] So what exactly is Splunk? Splunk is a software solution that falls into the category of security information and event management, SIEM. When you configure Splunk in your enterprise, you configure it to ingest data from a wide variety of sources, which then allows you to search through it. You can also create visualizations such as dashboards. Splunk has a number of server components that run on different platforms. You can also work with Splunk as a managed cloud service. Splunk also allows you to automate alert notifications. So Splunk then is a SIEM solution that's designed for data ingestion to give Splunk admins insights about the data that they've collected.

Contents