Administering Splunk SOAR
Duration : 1 Day (8 Hours)
Overview
Course Details
Prerequisites
Administering Splunk SOAR Course Overview:
This course prepares IT professionals to configure and manage SOAR.
Intended Audience:
- IT Security Analysts
- SOC (Security Operations Center) Analysts
- IT Administrators
- Security Engineers
- Incident Responders
- System Administrators
- IT Operations Teams
- Security Consultants
- DevOps Teams (for integration with development processes)
- Anyone responsible for configuring and managing a Splunk SOAR environment
Learning Objectives of Administering Splunk SOAR:
- SOAR Concepts
- Initial Configuration
- Apps and Assets
- Configuring Automation
- User Management
- Ingesting Data
- Customization and Monitoring
Topic 1 – Initial Configuration:
- Describe SOAR operating concepts
- Identify documentation and community resources
- Explain SOAR & Splunk Architecture
- Configure product settings
- Implement access control
- Set authentication settings
- Define response settings
- Understand roles
- Create users
- Manage user access
- Describe SOAR Automation Broker
Topic 2 – Apps, Assets, and Playbooks:
- Add and configure apps and assets
- Manage playbooks
- Ingest data
- Work with labels and tags
- Configure event settings
Topic 3 – Customization and Monitoring:
- Create custom severity levels
- Create custom status levels
- Add custom fields and CEF settings
- Create custom workbooks
- Run reports
- Use SOAR audit tools
- Monitor system health
Appendix: SOAR Automation Broker
Administering Splunk SOAR Course Prerequisites:
- None
Discover the perfect fit for your learning journey
Choose Learning Modality
Live Online
- Convenience
- Cost-effective
- Self-paced learning
- Scalability
Classroom
- Interaction and collaboration
- Networking opportunities
- Real-time feedback
- Personal attention
Onsite
- Familiar environment
- Confidentiality
- Team building
- Immediate application
Training Exclusives
This course comes with following benefits:
- Practice Labs.
- Get Trained by Certified Trainers.
- Access to the recordings of your class sessions for 90 days.
- Digital courseware
- Experience 24*7 learner support.
Got more questions? We’re all ears and ready to assist!